Donnelly & Moore Corporation ยท 5 months ago
Cyber Threat Modeling Integration Engineer
Donnelly & Moore Corporation is seeking a Cyber Threat Modeling Integration Engineer to contribute to their Cyber Threat Intelligence initiatives. The role involves enhancing cybersecurity efforts through the development of tools and integrations to improve detection and response to cyber events.
ConsultingCyber SecurityInformation TechnologyRecruiting
Responsibilities
Currently leverages contract engineers to develop and update custom parsers / connectors for the Operational Defense Intelligence Network (ODIN), CTI's primary threat intelligence platform and workbench
These parsers / connectors are used to automate the importation of data and reports into ODIN from our internal and external intelligence and data sources, which are critical to core CTI functions and workflows, including disseminating intelligence to its stakeholder-facing finished intelligence (FINTEL) platform, Threat Observables and Reports (ThOR)
CTI requires development of several additional parsers / connectors to meet organizational requirements and support periodic updates and tuning of existing parsers / connectors
The access to shared threat intelligence and models enabled by these parsers / connectors provides a wider view into the network threat spectrum as provided by multiple threat models, vendors and industry partners
Design and implement solutions that enhance the security posture of tools across multiple
Develop security content for tools and technologies that the Threat Management team relies on to ensure business as usual functioning
Integrate innovative and custom technology to improve accuracy of alerts and notifications received by teams within Threat Management
Create well documented and clearly articulated code, process and services
Understanding REST and SOAP API usage and implementing solutions utilizing APIs from Cyber Command utilized solutions, that enhance detection and response capabilities of the OTI Threat Management
Work closely with Cyber Command Security Sciences team to ensure continuous improvement of the security posture of key tools and technologies that protect the City of New York
Handle special projects and initiatives as
Qualification
Required
Experience in developing and updating custom parsers/connectors for threat intelligence platforms
Ability to automate the importation of data and reports into threat intelligence platforms
Experience in designing and implementing solutions that enhance the security posture of tools
Development of security content for tools and technologies used in Threat Management
Integration of innovative and custom technology to improve accuracy of alerts and notifications
Ability to create well-documented and clearly articulated code, processes, and services
Understanding of REST and SOAP API usage and implementing solutions utilizing APIs
Experience working closely with security teams to ensure continuous improvement of security postures