Cyber Data Analysts Job at CRI Advantage in Idaho Falls
CRI Advantage, Idaho Falls, ID, US
Job Description
This is a 100% Prospecting Posting and if you meet the requirements you will be considered for future opportunities. Our team is fast growing and it is an exciting time to join!
CRI Advantage is actively pipelining for an upcoming additional request for our federal client for Cyber Data Analysts to work REMOTE on a Threat Hunting team in a Cyber Security Operations Technology Environment analyzing data, securing critical systems, and using SIEM tools in an effort for overall data integrity and oversight. Apply now and be shortlisted for future opportunities.
Our team is part of a coordinated national effort to secure the nations critical infrastructure from all natural and manmade hazards. We create and maintain interfaces and access to commercial, local, state and federal customers including utilities enabling them to conduct comprehensive vulnerability assessments and utilize infrastructure protection tools against cyber threats. This work is mission critical and CRI is proud to be building teams to help protect our nation.
The most crucial skills are Splunk and Snort, but the environment includes all of the following Splunk, Linux, MITRE ICS ATT&CK, Industrial Control Systems, Data Analysis, ELK, Bro/Zeek, SNORT.
The client is federal government involving national security, candidates must be US citizens. Clearances from DOE and DoD, DHS maintained for the work.
Splunk expertise to include:
- Deploying network sensor systems and provide reliable threat and event data
- Splunk engineering, assisting with architecture of Splunk instances, configuring Splunk searcheads, indexers
- Data normalization
- Building a series of interconnected dashboards/an entire app
- Transactions, and other complex search patterns/results.
- Report acceleration, summary indexing, tstats.
- Getting Splunk reports/data outside of Splunk and into other tools.
- Data input filtering with regex/configs
- Solid working knowledge of SNORT and how to use it.
Desired
- Systems Engineering and Linux experience or certification would be helpful
- Statistical Background, Data Analytics, Bro/Zeek engineering expertise would be helpful