AOUSC - Insider Threat Analyst

cFocus Software Incorporated

Washington

Hybrid

USD 110,000 - 150,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

cFocus Software Incorporated seeks an Insider Threat Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). The role is hybrid with the onsite location in Washington, DC, and requires a Public Trust clearance.

The ideal candidate will bring 3+ years in IR/Insider Threat, hands-on work with Velociraptor, Splunk ES, and Sentinel, plus familiarity with NIST CSWP-29 CSF and SP-800-61 incident handling guidelines.

Qualifications

  • Active Public Trust clearance.
  • B.S. Computer Science, Information Technology, or a related field.
  • 3+ years in an IR or Insider Threat role.
  • 2+ years of experience in performing live triage, log correlation, detection rule refinement, to include usage of Velociraptor, Splunk ES and Sentinel.
  • 1 year of experience in federal incident handling guidelines as specified in NIST CSWP-29: CSF, and NIST SP-800-61 Computer Security Incident Handling Guide.

Skills

IR/Insider Threat experience
NIST CSWP-29/CSF familiarity

Education

Public Trust clearance
B.S. Computer Science or related field

Tools

Velociraptor
Splunk ES
Sentinel

Job description

cFocus Software seeks a Insider Threat Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance.

Qualifications:
  • Active Public Trust clearance
  • B.S. Computer Science, Information Technology, or a related field
  • 3+ years in an IR or Insider Threat role.
  • 2+ years of experience in performing live triage, log correlation, detection rule refinement, to include usage of Velociraptor, Splunk ES and Sentinel.
  • 1 year of experience in federal incident handling guidelines as specified in NIST CSWP-29: CSF, and NIST SP-800-61 Computer Security Incident Handling Guide.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Hybrid Insider Threat Analyst — DC | Public Trust
Hybrid Insider Threat Analyst — DC | Public Trust

cFocus Software Incorporated • Washington

Hybrid
USD 110,000 - 150,000
AOUSC - Incident Response Analyst
AOUSC - Incident Response Analyst

cFocus Software Incorporated • Washington

On-site
USD 110,000 - 135,000
AOUSC - Cybersecurity Triage Analyst
AOUSC - Cybersecurity Triage Analyst

cFocus Software Incorporated • Washington

On-site
USD 70,000 - 100,000
AOUSC - CTI Analyst
AOUSC - CTI Analyst

cFocus Software Incorporated • Washington

On-site
USD 90,000 - 120,000
AOUSC - Cybersecurity Shift Lead
AOUSC - Cybersecurity Shift Lead

cFocus Software Incorporated • Washington

On-site
USD 110,000 - 150,000
AOUSC - Detection Engineer
AOUSC - Detection Engineer

cFocus Software Incorporated • Washington

On-site
USD 110,000 - 140,000
AOUSC - Threat Hunt Analyst
AOUSC - Threat Hunt Analyst

cFocus Software Incorporated • Washington

On-site
USD 110,000 - 160,000
AOUSC - Threat Hunt Lead
AOUSC - Threat Hunt Lead

cFocus Software Incorporated • Washington

On-site
USD 140,000 - 170,000
AOUSC - SOC Manager
AOUSC - SOC Manager

cFocus Software Incorporated • Washington

On-site
USD 140,000 - 190,000
AOUSC - Digital Forensics Analyst
AOUSC - Digital Forensics Analyst

cFocus Software Incorporated • Washington

On-site
USD 90,000 - 120,000