NHS Human Services, Inc.

Mobile nhs-human-services Logo

Job Information

Chenega Corporation Senior Cyber Threat Intelligence Analyst (Lead) in Washington, District Of Columbia

Req ID: 31187

Summary

Senior Cyber Threat Intelligence Analyst (Lead)

Hybrid Schedule: In person, in the Washington, DC office twice a pay period.

Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded in your employer’s core culture? If so, Chenega Military, Intelligence & Operations Support (MIOS) could be the place for you! Join our team of professionals who support large-scale government operations by leveraging cutting-edge technology and take your career to the next level!

Chenega Systems (CS) provides federal agencies empowered solutions in Cybersecurity and Data Visualization. Our Subject Matter Experts offer decades of experience working in the federal marketplace and the data visualization environment.

The Senior Cyber Threat Intelligence Analyst (Lead) identifies potential and real threats to computing infrastructure and data and provides risk mitigation strategies and recommendations; providing valuable insights that inform and shape risk by enabling the external threat to be analyzed with the internal vulnerability for appropriate prioritization.

Responsibilities

  • Provide assessments of the intentions of adversary groups to conduct computer network exploitation (CNE) and computer network attack (CNA) against the customer, U.S. private sector/industry networks, and information systems

  • Monitor and consume both domestic and international / government and commercial open source, industry-sector, and classified Cyber Threat Intelligence sources to include tactical, operational, and strategic types to assess and manage potential cyber threats to IT and information assets

  • Review the ingest of cyber news feeds, signature updates, incident reports, threat briefs, and vulnerability alerts from external sources to identify threats facing the environment, the environment’s exposure and attack surface, and aid in constructing attack vectors specific to the scope of the assessment

  • Monitor common social media platforms and assist in the investigation of any posts that raise cybersecurity or reputational concerns

  • Monitor common code-sharing platforms and developer collaboration forums for risks related to IT systems or code

  • Integrate activities and product development with relevant intelligence programs from the Department of Homeland Security (DHS) and Intelligence Community (IC), as appropriate

  • Identify and create strategic and operational threat intelligence products that provide insight into malicious cyber actors’ motives and attempts to infiltrate, exploit, or exfiltrate data from networks and systems

  • Review Open-Source Intelligence (OSINT) on the target environment.

  • Obtain Closed-Source Intelligence to identify threat history and closed-source reporting on threats

  • Provide the customer with reports (both a classified and unclassified version, if necessary, and determined by the relevant classification guides) synthesizing the cyber threat intelligence derived from OSINT and closed-source reporting, as well as a listing of adversaries of interest, and a listing of their known TTPs

  • Recommend CTI program and policy changes, perform risk assessments and analysis, and inform leadership of risk and risk mitigation strategies

  • Identify and track Advanced Persistent Threats (APT), Cybercriminals, and Hacktivists

  • Create and deliver cyber threat briefings to key cybersecurity stakeholders and senior SBA leadership

  • Use current threat data, industry best practices, and advanced tools and practices to conduct assessments and analysis of the IT systems and report any findings and recommendations for mitigating risks and threats and improving the cybersecurity posture with minimal impact on system performance

  • Provide Indicator of Compromise (IOC) and Tactics, Techniques, and Procedures (TTPs) related to these threats for analysis and execution by applicable functional areas

  • Create initial and ongoing Prioritized Intelligence Requirements (PIR) Reports based on information released concerning current and future threats (to include threat actors) that have an impact on the customer

  • Respond to leadership-identified Prioritized Intelligence Requirements (PIR), produce an Analysis Report, and provide feedback on PIR activities observed, intelligence report, and other support services to internal and external stakeholders (CIO, CISO, SBA SOC, and SBA)

  • Create, monitor, and present weekly Advanced Persistent Threat (APT) and Cybercriminal Tracker Report detailing the status of the request

  • Create and maintain the Cyber Threat Intel SOP and continuously update the processes

  • Provide results of analysis in the Cyber Threat Intelligence Report to include the Vulnerability and Mitigation Report, Incident and Malware Analysis Report, Ad hoc Ongoing Alert Reports, and the Intelligence Community Directives (ICDs) established by the Director of National Intelligence (DNI)

  • Enable synchronization of intelligence support plans across partner organizations as required

  • Coordinate with outside intelligence planners to ensure collection managers receive information requirements

  • Establish relationships and cooperation with intelligence Teams from other federal agencies

  • Develop a working relationship with law enforcement

  • Develop a proactive method of monitoring the darknet for any information indicating a potential threat to IT systems, information assets, or employees

  • Draft Intelligence Collection and Production Requirements to submit to the intelligence community

  • Analysis of incidents and confirmed data breaches derived from internal and external sources and leverage for the benefit of the customer

  • Analysis of all known cyber threat actors, actions, and intentions to develop and maintain a prioritized list of those most likely to target the customer and the small business community

  • Analysis of internal and external sources of Threat Intelligence to determine impact and proactively deploy mitigations.

  • Threat Intelligence reporting to provide situational awareness derived from internal and external sources

  • Delivery of cyber threat briefings to stakeholders, including agency leadership, IT stakeholders, ISSOs as well as general user awareness of active and emerging IT threats.

  • Develop, maintain, and update the Cyber Threat Intelligence Concept of Operations and Internal Operating Procedures (IOP)

  • Other duties as assigned

Qualifications

  • BS degree in Cybersecurity, Intelligence, or a related discipline

  • 10+ years of experience in cyber threat intelligence

  • ISC(2) CISSP, ISC(2) CCSP, EC-Council CEH or equivalent certification

  • Background check

Knowledge, Skills, and Abilities

  • Knowledge of well-known APTs and their TTP

  • Experience with open-source and closed-source intelligence

How you’ll grow

At Chenega MIOS, our professional development plan focuses on helping our team members at every level of their career to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there’s always room to learn.

We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their careers.

Benefits

At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits.

Learn more about what working at Chenega MIOS can mean for you.

Chenega MIOS’s culture

Our positive and supportive culture encourages our team members to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them be healthy, centered, confident, and aware. We offer well-being programs and continuously look for new ways to maintain a culture where we excel and lead healthy, happy lives.

Corporate citizenship

Chenega MIOS is led by a purpose to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our team members, and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill-based volunteerism, and leadership to help drive positive social impact in our communities.

Learn more about Chenega’s impact on the world.

Chenega MIOS News- https://chenegamios.com/news/

Tips from your Talent Acquisition team

We want job seekers exploring opportunities at Chenega MIOS to feel prepared and confident. To help you with your research, we suggest you review the following links:

Chenega MIOS web site - www.chenegamios.com

Glassdoor - https://www.glassdoor.com/Overview/Working-at-Chenega-MIOS-EI_IE369514.11,23.htm

LinkedIn - https://www.linkedin.com/company/1472684/

Facebook - https://www.facebook.com/chenegamios/

#DICE

#Chenega Systems, LLC

Chenega Corporation and family of companies is an EOE.

Equal Opportunity Employer/Veterans/Disabled

Native preference under PL 93-638.

We participate in the E-Verify Employment Verification Program

DirectEmployers