Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
Sentar is seeking a Senior Integrated Assessment Malware Analyst for the Fort Bragg, NC area. You will perform malware and artifact analysis in an isolated lab, own tooling lifecycle, and support DoD cyber defense missions across network and web assessment activities.
The role requires DoD clearance, DoD 8140-03 qualifications, and US citizenship. Responsibilities include planning and executing Network Assistance Visits, managing incident response workflows, and delivering formal NDA/POA&M
Sentar is proud to be an employee owned company fostering a culture of empowerment collaboration and innovation Sentar is dedicated to developing the critical talent that the connected world demands to create solutions to address the convergence of cybersecurity intelligence analytics and systems engineering We invite you to join the team where you can build innovate and secure your career Sentar is seeking a Senior Integrated Assessment Malware Analyst in Ft Bragg NC to form the standing assessment cell for Computer Defense Assistance Program missions share the annual web assessment portfolio perform malware and artifact analysis in the isolated lab own tooling lifecycle and configuration management and provide first line planned watch relief Both positions are configured as broad senior cross domain practitioners with mutual backup rather than a primary specialist and a junior alternate
Network Assistance Visits and Network Damage Assessments Plan and execute Network Assistance Visits average one per month under Government approved Rules of Engagement pre coordination and in brief; network survey technical assistance and organizational repairs; executive summary out brief and final report on encrypted media within 30 calendar days Deploy within four hours of notification for Network Damage Assessments; validate compromise determine depth of intrusion gather host logs and forensic artifacts conduct on site anomaly detection scans and incident handling provide leadership updates every two hours and deliver the formal NDA report within five business days Manage the engagement lifecycle signed scope authorization ROE kickoff daily situational reports written scope change requests immediate notification of active adversary or data spill findings 24 hour hot wash and draft report within seven business days Web Assessments and Remediation Validation Execute annual web assessments of all registered public facing websites in the AOR approximately 920 per year using approved tools OWASP ZAP Burp Suite Pro Nessus Web App; cover at minimum XSS SQL injection embedded credentials and common port vulnerabilities; rule out false positives before delivery; assist site owners with remediation Validate remediation through 306090 day re tests by severity; provide closure certification to the ISSO for eMASS POA&M entry; elevate failed re tests within five business days; produce quarterly finding closure trend reports Malware Analysis and Tooling Lifecycle Perform malware and artifact analysis in the isolated DCO test lab and package findings for incident CTI and signature use Serve as primary or backup owner of tooling lifecycle and configuration management CNFERVB tool authorization Tool Authorization Register STIGSRG baselines ACASTenable scanning and IAVM remediation upgrade test and rollback lab isolation and egress control and the semiannual Technology Refresh Plan Watch Relief and Mission Support Provide planned watch relief on the 247365 rotation to cover training leave and surge without consuming Key Personnel capacity Support exercises hunts and signature testing as scheduled by the Blue Team Lead Work Environment Onsite presence at USARC Headquarters Fort Bragg NC required Core hours with on call rotation and planned watch relief including occasional nights and weekends CONUSOCONUS travel with four hour deployment readiness for Network Damage Assessments
Bachelors degree and 5 years of experience or AA with 7 years Army Penetration Testing Course APTC completion or Government accepted equivalent required before conducting any production assessment activity DoDM 814003 qualification for the DCWF Vulnerability Assessment Analyst work role at Intermediate proficiency PWS cites 512; current catalog indicates 541; verify at hire and DCWF 511 Cyber Defense Analyst at Intermediate proficiency watch relief DoDM 814003 qualification for DCWF 521 Cyber Defense Infrastructure Support Specialist at Intermediate proficiency for toollab ownership duties; DCWF 531 Cyber Defense Incident Responder at Intermediate where assigned NDA incident response duties Favorably adjudicated Tier 3 investigation; Tier 5 required prior to any privileged access US Citizenship required Current DoD SECRET clearance required interim SECRET acceptable at start; final SECRET required within 120 days of award Ability to obtain and maintain a DoD Common Access Card and USARC installation access Completion of DoD Cyber Awareness training prior to system access and annually thereafter; AT Level I OPSEC Level I TARP and CUI training within 30 days of start
Demonstrated experience executing authorized network and web application assessments in a DoD environment under formal Rules of Engagement Hands on proficiency with o ACAS Nessus and Nessus Web App o Metasploit Framework and Cobalt Strike or approved adversary emulation equivalent o Burp Suite Pro and OWASP ZAP o BloodHound Impacket Wireshark and Kali Linux Experience collecting and preserving forensic artifacts and maintaining chain of custody Proficiency with CVSSv3 scoring and with translating technical findings into prioritized actionable remediation guidance Hands on static and dynamic malware analysis skills including disassemblerdebugger use Windows internals and Win32 API knowledge assembly code interpretation and documentation of malware behavior indicators and mitigation recommendations Hands on experience configuring patching troubleshooting and validating security tools and isolated WindowsLinux lab environments including STIGSRG baselines IAVM remediation controlled connectivity and tested rollback procedures Ability to stand watch on an enterprise SIEM when assigned relief Working knowledge of CJCSM 651001B incident categories and DoDArmy cyber incident reporting requirements Excellent interpersonal and written communication skills to interact effectively with Government stakeholders ARCYBER and Regional Cyber Center counterparts and team members The ability to communicate complex technical findings clearly to non technical audiences A willingness to uncover document and communicate deviations from planned outcomes in order to improve processes and prevent recurrence A passion for continuous learning and a commitment to stay current with emerging threats adversary tradecraft and defensive technologies
Secret Education Bachelors degree and 5 years of experience or Associates degree and 7 years experience Certifications APTC or Government accepted equivalent before any production assessment work; DoDM 814003 qualified for Vulnerability Assessment Analyst Intermediate 511 Intermediate for watch relief and 521 Intermediate for tool and lab ownership
Sentar is an Affir ...
Please indicate the specifics of the assistance needed Thank you for considering Sentar in your employment search