General Dynamics Information Technology

Cyber Threat Hunter

  • General Dynamics Information Technology
  • Falls Church, VA
  • 27 days ago

Job Description

We are GDIT. We stay at the forefront of innovation to solve complex technical challenges.

GDIT is your place. Make it your own by discovering new ways to apply the latest technologies securely and expertly. Own your opportunity at GDIT and you'll be a meaningful part of improving how agencies operate. Our work depends on a Cyber Threat Hunter joining our team to support the Guard Enterprise Cyber Operations Support (GECOS) program in Falls Church, VA.

At GDIT, we foster a people-centric environment. As a Cyber Threat Hunter, you will help ensure today is safe and tomorrow is smarter. Our success depends on a Cyber Threat Hunter joining our team to continually improve the cyber defensive posture of the DoDIN-A(NG), in accordance with applicable DoD and Army cybersecurity guidance and regulations.

This is an IT Service Management contract in support of the operation, modernization, expansion, and further evolution of the Army National Guard's (ARNG's) global Information Technology (IT) services including networking, compute, storage, infrastructure, applications, hosting, and program management services. The GECOS program supports the ARNG enterprise IT infrastructure, its Wide Area Network (WAN), authentication and directory services, cybersecurity, application hosting, and associated services. GECOS uses ITIL best practices framework as the basis for its IT Service Management (ITSM) model.

To be successful in this position, you need to be collaborative and willing to work within a team. While you will need to be a self-starter completing tasks on your own, working together is critical in this role. You will be interfacing with the client and senior staff. Therefore, you should be articulate in your communications because your opinion matters. You will need to explain technical intricacies in a way that is easily understood.

How the Cyber Threat Hunter will make an impact:
  • Conduct proactive hunts throughout the ARNG's enterprise networks, endpoints, or datasets to detect malicious, suspicious, or risky activities that have evaded detection by existing tools
  • Incorporate agile, threat intelligence-driven or hypothesis-based threat hunting, and the MITRE ATT&CK framework to identify and prioritize development of missing or ineffective detection capabilities
  • Evaluate risks directed towards ARNG's technologies and workforce
  • Experience with logging platforms such as Elastic or Splunk
  • Conduct analyses of host, network, and application logs in order to detect perpetrators of a network intrusion
  • Be knowledgeable about a variety of different malware functionality and operations, and possess the ability to explain them to non-technical individuals
  • Demonstrate experience writing reports related to risk analysis and threat findings for senior leadership
  • Author, update and maintain SOPs, playbooks SOPs, playbooks and work instructions

WHAT YOU'LL NEED TO BE SUCCESSFUL:

Education/Equivalent Training Required:
  • 6 yrs of experience and a Bachelor's degree in cybersecurity, information assurance, computer science or a related technical discipline, or the equivalent combination of education, technical certifications or training, or work experience.

Unique/Additional Requirements:
  • Excellent problem solving, analytical, and decision-making capabilities, including understanding user requirements, troubleshooting technical issues, successfully resolving issues and challenges, and developing creative solutions for process improvement.
  • Dependability, in that the individual is consistently at work and on time, follows instructions, responds to management direction, and solicits feedback to improve.
  • Must have customer service experience, as this position will require candidate to engage with senior military and government leadership.
  • Must be able to present your ideas clearly through briefings, meetings and interaction with leadership of different skill sets.
  • Must be able to provide training sessions as required
  • Must be able to engage with stakeholders to ensure tasks are progressing and meeting timelines
  • Familiar with DD Form 2875 account request processes
  • Familiar with the Army's ATCTS training tracking system
  • Excellent communication skills
  • Excellent documentation skills
  • Strong organizational and collaborative skills
  • Strong teamwork and engagement as a project team member
  • Ability to assimilate information rapidly, motivated to self-study new requirements
  • Maintain current industry knowledge of relevant concepts, practices, and procedures
  • Ability to work under time constraints
  • Adapt to changes in requirements and new projects
  • Maintain and upgrade cyber certifications
  • Other duties may be assigned, directed, or requested

Certification Requirements:
  • Must possess the appropriate baseline certification(s) to achieve DoD 8570.01-M Information Assurance Technical (IAT) Level II compliance, such as CompTIA Security+ CE or EC-Council Certified Ethical Hacker (CEH).
  • Will need to obtain an additional certification within six months of hire, to include one of the CSSP sections certifications (e.g., CEH, CCNA Security, CND, etc.). Candidate may have further discussions with the program's Cyber Security Manager for more details.

Clearance Requirements:
  • Must hold a minimum of an active Secret clearance at time of interview, and candidate must maintain active clearance. Top Secret Clearance is preferred.

Work Location:
  • Fairview Park, Falls Church, VA. 3 days on-site with up to 2 days telework. Onboarding period requires on-site presence for up to first 60 days; if performance is good, telework can be considered part-time, but no more than 2 days a week. Could change to full-time on-site upon direction by management or government.
  • Requires the ability to work any combination of hours (1st, 2nd, 3rd shift, weekends and holidays as requested).

Travel:
  • Less than 10%.

GDIT is Your Place:
  • 401K with company match
  • Comprehensive health and wellness packages
  • Internal mobility team dedicated to helping you own your career
  • Professional growth opportunities including paid education and certifications
  • Cutting-edge technology you can learn from
  • Rest and recharge with paid vacation and holidays

#GECOS

#GDITArmy

Work Requirements

.cls-1{fill:none;stroke:#5b6670;stroke-miterlimit:10;stroke-width:2px}
Years of Experience
3 + years of related experience

  • may vary based on technical training, certification(s), or degree

.cls-2{fill:none;stroke:#5b6670;stroke-miterlimit:10;stroke-width:2px}
Certification
Cisco Certified Network Associate (CCNA) Security - Cisco

Certified Network Defender (CND) - EC-Council

Certified Ethical Hacker (CEH) - EC-Council - EC- Council

CompTIA - Security+ - CompTIA

Travel Required
Less than 10%

.cls-3{fill:none;stroke:#5d666f;stroke-miterlimit:10}
Citizenship
U.S. Citizenship Required

About Our Work

We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.

GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.

Jobs of Interest