Blue Sky Innovators ยท 2 hours ago
Cyber Defense Specialist
Blue Sky Innovators, Inc. is seeking an experienced Cyber Defense Specialist with prior USCYBERCOM experience to join their team. The role involves performing advanced threat analysis, leading incident response efforts, and proactively hunting for threats in a fast-paced environment.
AerospaceElectronics
Responsibilities
Lead in-depth investigations into security incidents, correlating data from multiple sources to understand the scope and impact of attacks
Proactively search for and identify undiscovered threats within the network by using threat intelligence and advanced analytics in Splunk
Apply hands-on experience with military DCO tactics, techniques, and procedures (TTPs) to protect and defend critical network infrastructure
Use Splunk for data ingestion, real-time searching, and visualization to gain insights from logs and events. Build dashboards, reports, and alerts to support security monitoring and incident response
Leverage and integrate modern Endpoint Detection and Response (EDR) tools to monitor, detect, and respond to threats on individual host systems. Manage endpoint security policies and analyze alerts from endpoint agents
Analyze and integrate threat intelligence feeds, including those from DoD sources and platforms, to stay current on adversary TTPs and emerging cyber threats
Document incident timelines, analysis findings, and remediation actions for senior leadership and stakeholders. Develop briefings for both technical and non-technical audiences
Provide subject matter expertise to influence and support defensive cyber strategies and operational planning efforts
Act as a mentor for junior analysts, helping to refine their investigative and analytical skills
Qualification
Required
Bachelor's degree in computer science, Cybersecurity, Information Technology, or a related field. Relevant experience may be substituted for a degree
5+ years of hands-on experience in a Security Operations Center (SOC) or a DCO role
Proven experience working with military cyber operations, specifically within USCYBERCOM or a service-component cyber command
Demonstrated experience with incident response, malware analysis, and digital forensics
Extensive knowledge of network protocols (TCP/IP), operating systems (Windows, Linux), and cloud security principles
Proficiency with Splunk for security analysis, alert creation, and dashboard generation
Hands-on experience with endpoint security tools
Proficiency with other security tools, such as IDS/IPS, and packet analysis tools (e.g., Wireshark)
Working knowledge of scripting languages like Python or PowerShell for automation and data analysis
Strong critical thinking and problem-solving abilities
Excellent communication and report-writing skills, with the ability to articulate complex security issues clearly
The ability to work both independently and collaboratively in a team environment
Preferred
Experience with modern endpoint detection and response (EDR) solutions is highly desirable
Professional certifications such as GMON, GCIH, GSOC, GSE and other GIAC certifications are highly desirable