Cybersecurity Network Engineer
Washington, District of Columbia, United States
phia LLC
At phia, trust us to solve the complex challenges of our connected world through top-tier cyber intelligence & threat hunting. Contact us.OVERVIEW: Are you interested in joining an amazing technical team providing cyber operations support to a variety of complex organizations? phia, LLC is seeking highly skilled Cybersecurity Engineers to join our team of qualified, diverse individuals supporting the U.S. Department of Energy (DOE). DOE is responsible for the protection of vital national security information and technologies, representing intellectual property of incalculable value throughout nearly thirty sites and laboratories nationwide. This position is located in Washington, D.C.
Requirements
DUTIES:
- Work with a variety cyber defense and IT network tools such as: FireEye Email and Network Security, Cisco Sourcefire/Firepower, Palo Alto firewalls, Snort, Bro, SolarWinds, and RedSeal.
- Experience in other cybersecurity technology areas such as endpoint, analytics and automation tools: FireEye Endpoint Security, Tanium, Microsoft Defender / ATP, Splunk, ElasticSearch / ELK, MISP, and NiFi.
- Preferred background with knowledge in incident response with experience in threat analysis.
- Knowledge and understanding of the MITRE ATT&CK framework with associated tactics, techniques and tools for attack method types and their usage in targeted attacks such as phishing, malware implantation, perimeter vulnerabilities, application vulnerabilities, lateral movement, etc.
- Test, implement, deploy, and operate, the infrastructure hardware and software which are required to effectively manage the organization’s cyber security operational services.
- Install operate maintain cybersecurity systems, tools, and integrate data from sources.
- Apply/integrate cybersecurity engineering principles into infrastructure planning, design, and deployment.
- Lead or participate in an Integrated Product Team review to ensure security architecture integration.
- Generate alternative system concepts, physical architectures, security architectures and design solutions.
- Develop derived requirements for Information Assurance Services (Confidentiality, Integrity, Nonrepudiation, and Availability), Basic Information Assurance mechanisms (e.g., Identification, Authentication, Access Control, Accountability) and Security Mechanism Technology (Passwords, cryptography, discretionary access control, mandatory access control, hashing, key management, etc.).
- Manage system requirements and derived requirements to ensure the delivery of production systems that are secure and compatible with the defined system architectures.
- Learn or apply existing scripting concepts and work API integration using PowerShell, Ansible, python, Java, etc.
REQUIRED QUALIFICATIONS:
- Active DOE Q SCI, DOD Top Secret/SCI or higher clearance, with an investigation within the last 5 years (sponsorship opportunities available for highly qualified candidates).
- CERTIFICATIONS: one or more preferred – GCIH, GCFE, RHCE, CPTE, or CEH.
- BA/BS in Computer Science, Information Technology, Information Security, or a related field or equivalent experience (two years of experience for each year of schooling).
- 6-12+ years of experience working in the areas of IT, systems administration, engineering, architecture, cyber, intelligence, information security, hunt, cyber operations, network forensics, insider threat, etc.
- Experience providing full system’s lifecycle (design, testing, implementation, operations, maintenance, and disposal) support for commercial and open-source tools.
- Possess engineering and architecture skills to make efficient advisement for systems requirements.
- Must be highly motivated with the ability to self-start, prioritize assignments, and work in a collaborative team environment
- Excellent knowledge of a wide variety of security solutions and technologies, including Linux, network architecture/implementation/configuration experience, firewall technologies, proxy technologies, anti-virus, spam and spyware solutions (gateway and SaaS), malware/security experience.
- Experience with coding in python, PowerShell, shell scripting, RESTful API, etc.
PREFERRED QUALIFICATIONS:
- 10+ years of related technical experience working in cyber operations, threat intelligence or analysis
- MA/MS in computer science, information security, or a related field or equivalent experience
- Experience in other cybersecurity technology areas such as endpoint, analytics and automation tools: FireEye Endpoint Security, Tanium, Microsoft Defender / ATP, Splunk, ElasticSearch / ELK, MISP, and NiFi
- Preferred background with knowledge in incident response with experience in threat analysis
- Knowledge and understanding of the MITRE ATT&CK framework with associated tactics, techniques and tools for attack method types and their usage in targeted attacks such as phishing, malware implantation, perimeter vulnerabilities, application vulnerabilities, lateral movement, etc.
WORK SCHEDULE: Core Hours (8am-5pm; start/end time flexible)
WORK LOCATION: Washington, D.C.
TRAVEL: Minimal; <5%
TELEWORK ELIGIBILITY: Pandemic rotating schedule one week onsite; two weeks offsite; normal operations ad-hoc with approval.
SECURITY REQUIREMENTS: DOE Q Clearance / DoD Top Secret; Current SCI desired. Must have had a valid investigation within last 5 years.
Benefits
phia LLC ("phia") is a Northern Virginia based, 8a certified small business established in 2011 with a focus in all thing’s cyber (operations, intelligence, analysis, engineering, development, program management). As a boutique cybersecurity company phia is focused on passionate individuals looking for a phamily to grow with. Our work represents some of the most complex cyber challenges facing organizations with unique missions. The work we do supports various agencies and offices within the Department of Defense (DoD), Federal government, and private/commercial entities.
phia offers excellent benefits to enhance the work-life balance and flexibility, these include the following:
- Medical Insurance
- Dental Insurance
- Vision Insurance
- Life Insurance
- Short Term & Long-Term Disability
- 401k Retirement Savings Plan with Company Match
- Paid Holidays
- Paid Time Off (PTO)
- Tuition and Professional Development Assistance
Tags: Analytics Ansible APIs Automation C CEH Clearance Computer Science Cryptography Cyber defense DoD Elasticsearch ELK Endpoint security Firewalls Forensics GCIH Hashing Incident response Java Linux Malware MISP MITRE ATT&CK Network security PowerShell Python SaaS Scripting Snort Sourcefire Splunk Threat intelligence Top Secret TS/SCI Vulnerabilities
Perks/benefits: 401(k) matching Career development Flex hours Flex vacation Health care Insurance Startup environment
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Ethical hacker / Pentester H/F jobs
- Open Information Security Specialist jobs
- Open Manager Pentest H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Product Security Engineer jobs
- Open Principal Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Information Security Analyst jobs
- Open Cybersecurity Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Chief Information Security Officer jobs
- Open IT Security Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cybersecurity Consultant jobs
- Open Security Specialist jobs
- Open Senior Information Security Engineer jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Senior Security Architect jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open IT Security Engineer jobs
- Open Clearance-related jobs
- Open ISO 27001-related jobs
- Open Windows-related jobs
- Open Application security-related jobs
- Open Network security-related jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Security assessment-related jobs
- Open Java-related jobs
- Open IDS-related jobs
- Open DevOps-related jobs
- Open Security Clearance-related jobs
- Open Malware-related jobs
- Open EDR-related jobs
- Open Kubernetes-related jobs
- Open CEH-related jobs
- Open IPS-related jobs