Senior Integrated Assessment / Malware Analyst

Sentar

United States

On-site

USD 120,000 - 170,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Voluntary MedicalDentalVision options
Generous 401k match
Competitive PTO

Job summary

Sentar is seeking a Senior Integrated Assessment Malware Analyst for the Fort Bragg, NC area. You will perform malware and artifact analysis in an isolated lab, own tooling lifecycle, and support DoD cyber defense missions across network and web assessment activities.

The role requires DoD clearance, DoD 8140-03 qualifications, and US citizenship. Responsibilities include planning and executing Network Assistance Visits, managing incident response workflows, and delivering formal NDA/POA&M

Qualifications

  • Bachelors degree and 5 years of experience or AA with 7 years Army Penetration Testing experience.
  • DoD 8140-03 qualification for various cyber defense roles is required before production work.
  • US Citizenship and DoD clearance requirements apply; interim SECRET acceptable at start; final SECRET within 120 days.
  • Ability to obtain DoD CAC and access to USARC installation; DoD cyber awareness training mandatory.

Responsibilities

  • Plan and execute Network Assistance Visits and Network Damage Assessments with ROE compliance.
  • Lead malware/artifact analysis in isolated lab and package findings for CTI and signatures.
  • Oversee tooling lifecycle, configuration management, and tool authorization processes.
  • Provide watch relief on 24/7 rotation and deliver on-site reports within deadlines.
  • Perform web assessments of public-facing sites and validate remediation through re-tests.

Skills

DoD requirements understanding
Incident response
Malware analysis
Network assessment
Vulnerability assessment
Forensic artifacts handling
Threat intelligence
Communication with stakeholders

Education

Bachelor's degree
AA with 7 years experience

Tools

ACAS
Nessus
Nessus Web App
Metasploit Framework
Cobalt Strike
Burp Suite Pro
OWASP ZAP
BloodHound
Impacket
Wireshark
Kali Linux

Job description

Introduction

Sentar is proud to be an employee owned company fostering a culture of empowerment collaboration and innovation Sentar is dedicated to developing the critical talent that the connected world demands to create solutions to address the convergence of cybersecurity intelligence analytics and systems engineering We invite you to join the team where you can build innovate and secure your career Sentar is seeking a Senior Integrated Assessment Malware Analyst in Ft Bragg NC to form the standing assessment cell for Computer Defense Assistance Program missions share the annual web assessment portfolio perform malware and artifact analysis in the isolated lab own tooling lifecycle and configuration management and provide first line planned watch relief Both positions are configured as broad senior cross domain practitioners with mutual backup rather than a primary specialist and a junior alternate

Role Description

Network Assistance Visits and Network Damage Assessments Plan and execute Network Assistance Visits average one per month under Government approved Rules of Engagement pre coordination and in brief; network survey technical assistance and organizational repairs; executive summary out brief and final report on encrypted media within 30 calendar days Deploy within four hours of notification for Network Damage Assessments; validate compromise determine depth of intrusion gather host logs and forensic artifacts conduct on site anomaly detection scans and incident handling provide leadership updates every two hours and deliver the formal NDA report within five business days Manage the engagement lifecycle signed scope authorization ROE kickoff daily situational reports written scope change requests immediate notification of active adversary or data spill findings 24 hour hot wash and draft report within seven business days Web Assessments and Remediation Validation Execute annual web assessments of all registered public facing websites in the AOR approximately 920 per year using approved tools OWASP ZAP Burp Suite Pro Nessus Web App; cover at minimum XSS SQL injection embedded credentials and common port vulnerabilities; rule out false positives before delivery; assist site owners with remediation Validate remediation through 306090 day re tests by severity; provide closure certification to the ISSO for eMASS POA&M entry; elevate failed re tests within five business days; produce quarterly finding closure trend reports Malware Analysis and Tooling Lifecycle Perform malware and artifact analysis in the isolated DCO test lab and package findings for incident CTI and signature use Serve as primary or backup owner of tooling lifecycle and configuration management CNFERVB tool authorization Tool Authorization Register STIGSRG baselines ACASTenable scanning and IAVM remediation upgrade test and rollback lab isolation and egress control and the semiannual Technology Refresh Plan Watch Relief and Mission Support Provide planned watch relief on the 247365 rotation to cover training leave and surge without consuming Key Personnel capacity Support exercises hunts and signature testing as scheduled by the Blue Team Lead Work Environment Onsite presence at USARC Headquarters Fort Bragg NC required Core hours with on call rotation and planned watch relief including occasional nights and weekends CONUSOCONUS travel with four hour deployment readiness for Network Damage Assessments

Qualifications

Bachelors degree and 5 years of experience or AA with 7 years Army Penetration Testing Course APTC completion or Government accepted equivalent required before conducting any production assessment activity DoDM 814003 qualification for the DCWF Vulnerability Assessment Analyst work role at Intermediate proficiency PWS cites 512; current catalog indicates 541; verify at hire and DCWF 511 Cyber Defense Analyst at Intermediate proficiency watch relief DoDM 814003 qualification for DCWF 521 Cyber Defense Infrastructure Support Specialist at Intermediate proficiency for toollab ownership duties; DCWF 531 Cyber Defense Incident Responder at Intermediate where assigned NDA incident response duties Favorably adjudicated Tier 3 investigation; Tier 5 required prior to any privileged access US Citizenship required Current DoD SECRET clearance required interim SECRET acceptable at start; final SECRET required within 120 days of award Ability to obtain and maintain a DoD Common Access Card and USARC installation access Completion of DoD Cyber Awareness training prior to system access and annually thereafter; AT Level I OPSEC Level I TARP and CUI training within 30 days of start

Specific Knowledge, Skills & Abilities

Demonstrated experience executing authorized network and web application assessments in a DoD environment under formal Rules of Engagement Hands on proficiency with o ACAS Nessus and Nessus Web App o Metasploit Framework and Cobalt Strike or approved adversary emulation equivalent o Burp Suite Pro and OWASP ZAP o BloodHound Impacket Wireshark and Kali Linux Experience collecting and preserving forensic artifacts and maintaining chain of custody Proficiency with CVSSv3 scoring and with translating technical findings into prioritized actionable remediation guidance Hands on static and dynamic malware analysis skills including disassemblerdebugger use Windows internals and Win32 API knowledge assembly code interpretation and documentation of malware behavior indicators and mitigation recommendations Hands on experience configuring patching troubleshooting and validating security tools and isolated WindowsLinux lab environments including STIGSRG baselines IAVM remediation controlled connectivity and tested rollback procedures Ability to stand watch on an enterprise SIEM when assigned relief Working knowledge of CJCSM 651001B incident categories and DoDArmy cyber incident reporting requirements Excellent interpersonal and written communication skills to interact effectively with Government stakeholders ARCYBER and Regional Cyber Center counterparts and team members The ability to communicate complex technical findings clearly to non technical audiences A willingness to uncover document and communicate deviations from planned outcomes in order to improve processes and prevent recurrence A passion for continuous learning and a commitment to stay current with emerging threats adversary tradecraft and defensive technologies

Clearance Level

Secret Education Bachelors degree and 5 years of experience or Associates degree and 7 years experience Certifications APTC or Government accepted equivalent before any production assessment work; DoDM 814003 qualified for Vulnerability Assessment Analyst Intermediate 511 Intermediate for watch relief and 521 Intermediate for tool and lab ownership

Benefits
  • Voluntary Medical Dental Vision with Flexible Spending Plan options
  • Voluntary Life Critical Illness Accident and Long Term Care insurance options
  • Group Term Life Short Term and Long Term Disability is provided by Sentar to all qualifying employees
  • Generous 401k match
  • Competitive PTO plan that graduates quickly with years of service
  • Other leave programs; holiday schedule along with bereavement maternity jury and military duty
  • Tuition reimbursement
  • Professional development reimbursement
  • Recognition and Awards programs
Equal Opportunity & EEO Statement

Sentar is an Affir ...

Please indicate the specifics of the assistance needed Thank you for considering Sentar in your employment search

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Integrated Assessment / Malware Analyst
Senior Integrated Assessment / Malware Analyst

Sentar • Fort Bragg (NC)

On-site
USD 120,000 - 170,000
Medical/Dental/Vision coverage
Life insurance
Group 401(k) match
+1
SOC Tier 2 Watch Analyst
SOC Tier 2 Watch Analyst

Sentar • United States

On-site
USD 95,000 - 125,000
Employee ownership
401k match
PTO & holidays
+2
SOC Tier 2 Watch Analyst
SOC Tier 2 Watch Analyst

Sentar • Fort Bragg (NC)

On-site
USD 95,000 - 135,000
401(k) match
Generous PTO
Medical/Dental/Vision
Red Team Operator (Hybrid)
Red Team Operator (Hybrid)

Sentar • Quantico (VA)

On-site
USD 150,000 - 210,000
Voluntary Medical Dental Vision
401k match
Professional development reimbursement
+3
Cybersecurity Systems Analyst (TS/SCI) - RMF/A&A Expert
Cybersecurity Systems Analyst (TS/SCI) - RMF/A&A Expert

TJ Consulting Group • Fort Bragg (NC)

On-site
USD 70,000 - 85,000
PTO
401K with a 4% Match
Medical Insurance
+4
Purple Team Lead/Sr Vulnerability Assessment Analyst
Purple Team Lead/Sr Vulnerability Assessment Analyst

Sentar • Fort Bragg (NC)

On-site
USD 150,000 - 190,000
Health benefits
401(k) match
Paid time off
+1
Malware Analyst
Malware Analyst

Indigo IT LLC • Fort Bragg (NC)

On-site
USD 110,000 - 150,000
Medical, Dental, Vision coverage
401(k) with company match
Group life and disability
+5
Blue Team Lead / Sr Cyber Defense Analyst
Blue Team Lead / Sr Cyber Defense Analyst

Sentar • Northern (KY)

On-site
USD 120,000 - 180,000
Voluntary Medical, Dental, Vision
Flexible Spending Plan options
Group Term Life, Disability
+3
Red Team Operator (Hybrid)
Red Team Operator (Hybrid)

Sentar Inc. • Quantico (VA)

On-site
USD 120,000 - 180,000
Voluntary Medical, Dental, Vision
Health Savings or Flexible Spending
Group Term Life & Disability
+4
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

TJ Consulting Group • Fort Bragg (NC)

On-site
USD 70,000 - 85,000
PTO
401K with a 4% Match
Medical Insurance
+4