NexThreat · 5 months ago
Cyber Capability Developer (Senior) - FBI
NexThreat is seeking a Cyber Capability Developer (Senior). The Cyber Capability Developer (Senior) is a pivotal member of the Watch Floor Team within our Security Operations Center (SOC), responsible for enhancing incident detection and response capabilities while mentoring junior team members.
Cyber SecurityInformation TechnologySecurity
Responsibilities
Lead the development and implementation of advanced cybersecurity strategies and procedures to enhance incident detection and response capabilities
Collaborate with the Watch Floor Team to improve operational processes and incident handling efficiency
Utilize Splunk Enterprise Security and Microsoft Sentinel for comprehensive monitoring and analysis of security events
Conduct in-depth investigations of security incidents, providing expert analysis and actionable recommendations
Mentor and train junior team members on cybersecurity best practices and incident response techniques
Perform threat assessments and vulnerability analyses to identify and mitigate potential risks
Stay informed about the latest cybersecurity trends, threats, and technologies, integrating relevant findings into operational practices
Contribute to the development and maintenance of incident response plans and playbooks
Qualification
Required
Current TS/SCI Clearance required
Must pass FBI security suitability
Must pass an FBI-administered Counterintelligence polygraph if one has not been conducted within the last five years
US Citizen, no Dual Citizenship
Expertise in Splunk Enterprise Security
Bachelor's degree in Cybersecurity, Information Technology, or a related field (or equivalent experience)
Minimum 5 years of experience in cybersecurity, with a focus on incident response and monitoring
Proven track record of leading security operations and threat detection initiatives
Strong analytical, problem-solving, and critical-thinking skills
Excellent communication and interpersonal abilities to collaborate effectively with team members and stakeholders
Preferred
Familiarity with Microsoft Sentinel
GIAC Continuous Monitoring Certification (GMON)
GIAC Certified Incident Handler (GCIH)
GIAC Certified Forensic Analyst (GCFA)
GIAC Certified Intrusion Analyst (GCIA)
GIAC Network Forensic Analyst (GNFA)
GIAC Cloud Threat Detection (GCTD)
GIAC Cloud Forensics Responder (GCFR)