Logo
Semper Valens Solutions

Hunt Analyst -- CROWBAR

Semper Valens Solutions, Washington, District of Columbia, us, 20022

Save Job

Overview

Hunt Analyst -- CROWBAR role at Semper Valens Solutions. Top Secret required. Location: Washington, D.C. On-Site. Full-Time. Semper Valens Solutions is seeking a motivated Hunt Analyst to join our team in Washington, D.C. This position supports the HEITS Contract as part of the Department of Homeland Security (DHS) Insider Threat Program (ITP). The ITP mission is to identify insider threats to the department by utilizing advanced analytics, monitoring, and data correlation to identify and eliminate potential threat actors from compromising the DHS mission. Responsibilities

Normal business hours defined as a schedule that includes weekdays 2pm-10pm and weekends 6am-6pm; candidate will have 2-3 days off based on schedule and the work week should not exceed 40 hours. This position is expected to eventually move to shift work to meet 24x7 operations at an undetermined later date. Examine, analyze, and search insider threat data to identify trends, patterns, and insights of potential insider threat indicators. Provide analytical, program support services related to the operation of UAM/UEBA tools. Monitor UAM platform to identify emerging requirements related to insider threat events and coordinate across the enterprise to ensure timely response. Conduct further research on the UAM platform to identify patterns of concerning behavior related to a potential insider threat risk to the DHS enterprise. Provide proactive insider threat-based hunting across the DHS enterprise network, leveraging methodologies and behavioral analytics to detect, investigate, and mitigate anomalous activity and policy violations indicative of malicious insider behavior. Conduct continuous hunt operations across data and log sources, DHS platforms, EDR tools, and network traffic to identify patterns of insider threat behavior. Identify mitigation strategies to assist the investigative team in effectively reducing insider threat risk. Utilize UEBA (User and Entity Behavior Analytics) platforms and techniques to baseline user activity and detect deviations. Provide timely response to critical/high UAM alerts (within 4 hours during normal business hours). Qualifications

Bachelors degree and (12)+ years of prior relevant insider threat experience or Masters with (10)+ years of prior relevant experience. Additional years of experience with requisite certifications will be considered in lieu of degree Minimum of 4 years demonstrated knowledge of the intelligence cycle, analytic techniques, systems, processes, and organizations Minimum of 4 years demonstrated knowledge of Threat Assessment & Mitigation Strategies Excellent written and verbal skills with ability to deliver briefings to a diverse group of audiences Knowledge of current domestic and international threats to U.S. national security interests Adept at establishing networks with relevant security, personnel, and prevention stakeholders to foster program utilization Self-starter capable of working independently to promote program goals Working knowledge of User Activity Monitoring Software (UAM) and related solutions Working knowledge of Cybersecurity toolsets to support ITP mission activities Working knowledge of Open-Source toolsets Working knowledge of Insider Threat Frameworks; Pathway to Violence & Critical Pathway Current TS/SCI and US Citizenship required Ability to obtain DHS EOD SCI and willingness to undergo CI Polygraph Preferred Qualifications

Master's degree in Criminal Justice, Homeland Security, Cyber Security, or related field 10+ years of intelligence analysis experience Experience with User Activity Monitoring products and platforms 4+ years of Threat Assessment & Mitigation experience Certified Counter-Insider Threat Professional - Fundamentals (CCITP-F) Certified Counter-Insider Threat Professional - Analysis (CCITP-A) CDSE ITDAC or related insider threat course completions CDSE curriculums INT311.CU/INT312.CU/CI201.CU completions Equal Opportunity Employer

Semper Valens Solutions is an Equal Opportunity Employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital/parental status, pregnancy/childbirth, or related conditions, physical or mental disability, genetic information, veteran status, or other protected characteristics. If you require a reasonable accommodation to apply for a position, please contact Semper Valens Solutions Human Resources. Semper Valens Solutions is an affirmative action/equal opportunity employer. Applicants have rights under Federal Employment Laws.

#J-18808-Ljbffr