Advanced Threat Detection & Hunt Engineer - Counter Measures - Military Veterans
at Leidos
Description
Leidos' Digital Modernization sector has a current job opportunity for a Defensive Cyber Operations (DCO) Counter-Measures Engineer to perform advanced threat detection and hunt engineering at Scott AFB, IL.
This position will support the GSM-O II program, which provides network operations and cyber defense support to the Defense Information Systems Agency (DISA) in support of the DoD and COCOMs. The selected candidate will provide support for defensive cyber operations activities and will be expected to actively engage with a variety of customers and mission partners.
PRIMARY RESPONSIBILITIES:
- Author and deploy novel countermeasures to eliminate threats and illuminate their activities.
- Assess the effectiveness of countermeasures on an ongoing basis and revector actions as needed.
- Design and develop solutions to deliver automated cybersecurity services, conduct agile development & maintenance of automation script/tools to scale cybersecurity work across the enterprise.
- Develop custom integrations, data correlation, and processing strategies to reduce cybersecurity risk and act as a Subject Matter Expert for the automation team.
- Maintain situational awareness of cyber activity by reviewing DoD, Intelligence Community and open-source reporting for new vulnerabilities, malware or other threats that have the potential to impact the DoDIN.
BASIC QUALIFICATIONS:
- Must have an active DoD Secret clearance and be eligible to obtain TS/SCI
- Bachelor's degree in a related discipline with 4+ years of applicable experience; additional related years of experience is accepted in lieu of a degree.
- DoD-8570 IAT Level 2 baseline certification (Sec+ CE or equivalent) is required to start and CSSP-A certification must be obtained within 180 days of start date
- Proficiency in programming in at least one modern language (Java, Python, Ruby, C++).
- Custom malware detection development experience.
- Understanding of TCP/IP, networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
- Understand the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).
- UNIX Administrative skills.
PREFERRED SKILLS:
- Experience with DISA and DoD Networks.
- Experience countering APTs or emergent threats to DOD networks.
- Skilled in developing extended cyber security analytics.
- Experience in developing and supporting a development environment.
- Experience automating tasks via Bash, Python, PowerShell, or other scripting tools.
- Experience in Linux and Windows-based systems administration in a cloud or virtualized environment.
- Experience with API development and integration.
- Experience with Git, Sigma, Yara, Snort, and Suricata.
- Experience with Detection-as-a-Code.
- Experience with malware analysis concepts and methods.
- Advanced Certifications such as GREM, OSCP, CISSP or CASP.
Original Posting Date:
2025-01-28While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $85,150.00 - $153,925.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Scott Air Force Base, IL
At Leidos, quality performance means two things:
- Satisfying our customers by delivering the products and services they need on time and in budget.
- Continuously improving our processes so that our work meets requirements and is done right the first time.
Our proprietary EngineeringEdge® solution gives us a consistent, company-wide approach to planning, designing, developing, and delivering solutions that achieve our customers’ goals. Comprehensive and customizable, EngineeringEdge is based on industry standards and best practices from:
- CMMI®, the CMMI Institute.
- Project Management, the Project Management Institute.
- the International Organization for Standardization (ISO®).
- the International Council on Systems Engineering/INCOSE Corporation.
- Electronic Industries Alliance.
- Our four decades experience on a wide range of programs.
Many Leidos organizations have been able to earn coveted CMMI maturity level 3 and higher, as well as ISO 9001 organizational designations.
In addition, we have our own high standards for ethics and performance. Investors : Employee Code of Conduct
What does this mean to our clients? High quality products and services, developed in an environment committed to continuously improving processes and uncompromising ethics.