About the Role
The Defensive Cyber Operations (DCO) division within the USARCC-SWA is seeking a Cyber Threat Analyst candidate who possesses strong scripting abilities, experience in systems security administration, and expertise in network security technologies. The Cyber Threat Analyst will be responsible for designing, implementing, automating, maintaining, and optimizing measures to protect systems, networks, and information.
This position offers company-paid housing and transportation, a completion bonus, and a tuition reimbursement program.
You must fulfill all host country requirements to legally work in the host country, including the ability to obtain and maintain a host nation visa and host nation driver’s license.
Ready to apply for roles like this?
Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.
Unlock employer & apply directly
Responsibilities
- Monitor, detect, analyze, and correlate events for potential threat activity using Security Information Event Management (SIEM) systems, Big Data Analytics, and other supporting platforms or applications.
- Investigate and identify the cause, source, and methodology of compromises or incidents.
- Initiate computer incident handling procedures to isolate and investigate potential network information system compromises.
- Perform trend analysis on events and incidents to identify and characterize threats.
- Conduct open-source research to identify commercial exploits or vulnerabilities (i.e., Zero-Day) requiring response actions.
- Prepare formal comprehensive reports and presentations for both technical and executive audiences.
- Configure and optimize software and hardware detection and prevention capabilities.
- Perform host and network-based signature development and standardization for implementation on end-point products or sensor grid.
- Develop, document, and refine Tactics, Techniques, and Procedures (TTP).
- Provide support to the Computer Defense Assistance Program (CDAP).
- Collaborate on continuous improvement and optimization of DCO strategies and countermeasures.
- Stay informed about the latest cybersecurity threats, technologies, and best practices.
- Collaborate with cross-functional teams to enhance overall DCO posture.
- Maintain up-to-date knowledge of relevant compliance requirements and ensure adherence.
- Assist in incident response planning, coordination, execution, and reporting.
- Collaborate with external organizations and agencies to share threat intelligence and enhance DCO capabilities.
- Perform other duties and assignments as required.
Qualifications
- Security Clearance:
- Requires an active Top Secret Clearance with SCI.
- Education / Certifications:
- Bachelor’s Degree or equivalent experience preferably in Computer Science, Management Information Systems (MIS), Information Systems (IS), Engineering, or a related field. This position requires candidates to adhere to DoD 8570.01M.
- All candidates are required to maintain at least one (1) baseline certification and one (1) computing environment (CE) certification. Baseline Environment (BE) certifications cannot also be used as a Computing Environment (CE) certification.
- The authorized certifications for this job title are listed as follows:
- Baseline:
- Cisco: CCNA: Certified Network Associate – Security
- Cisco: CyberOps Professional
- Cisco: SCYBER: Cybersecurity Specialist
- CompTIA: Cloud+ ce
- CompTIA: CySA+ ce: Cybersecurity Analyst
- CompTIA: PenTest+ ce
- CyberSec: CFR: First Responder
- EC-Council: CEH: Certified Ethical Hacker
- GIAC: GCIA: Certified Intrusion Analyst
- GIAC: GCIH: Certified Incident Handler
- GIAC: GICSP: Industrial Cyber Security Professional
- Computer Environment (CE):
- Cisco: CCNP: Certified Network Professional (Any)
- EC Council: ECIH: Certified Incident Handler
- EC-Council: CHFI: Certified Hacking Forensic Investigator
- GIAC: GCDA: Certified Detection Analyst (Preferred)
- GIAC: GCFA: Certified Forensic Analyst
- GIAC: GCIA: Certified Intrusion Analyst
- GIAC: GCIH: Certified Incident Handler
- GIAC: GCWN: Certified Windows Security Administrator
- GIAC: GDAT: Defending Advanced Threats
- GIAC: GREM: Reverse Engineering Malware
- GIAC: GSEC: Security Essentials
- Offensive Security: Certified Expert
- Offensive Security: Certified Professional
- Experience:
- At least five (5) years of practical experience working with various data (network and system) technologies, with a minimum of two of those years focused on information systems security, cyber threats, and SIEM event analysis.
- Experience with a customer service-oriented company.
- Skills & Technology Used:
- Ability to troubleshoot servers and infrastructure equipment.
- Ability to assess networking requirements and provide solutions.
- Ability to make accurate and independent decisions under pressure.
- Ability to perform comfortably in a fast-paced, deadline-oriented work environment.
- Ability to successfully execute many complex tasks simultaneously.
- Visualization of quantitative (numerical) or qualitative information.
- Excellent interpersonal, organizational, written and verbal communication, and briefing skills.
- Excellent analytical and problem-solving skills.
- Threat Intelligence and visualization technologies.
- Security enclave engineering.
Commitment to Diversity and Inclusion
At the company, we are committed to providing equal employment opportunities, including protection for Veterans and individuals with disabilities, while fostering an inclusive and diverse workplace. We treat all individuals with fairness, respect, and dignity, recognizing the strength gained from a workforce rich in diverse experiences, perspectives, and skills. This commitment, aligned with our core vision and values of Integrity, Respect, and Responsibility, empowers us to leverage differences, encourage innovation, and expand our success in the global marketplace, ultimately allowing us to best serve our clients.