Crimson Phoenix
Cyber Security Systems Engineer
Crimson Phoenix, Herndon, Virginia, 22070
This opportunity is supporting the customer's Division level A&A projects which has several Branches within it. The A&A projects are therefore at various levels within the customer organization depending upon which team is responsible for initial development and accreditation vs. long term Operations and Maintenance support. Bachelor's or Master's Degree are preferred in one or more discipline, but can be waived if previous direct support to this customer's agency. Specific skills include the following: Bachelor's Degree in Computer Science, Cybersecurity, similar; or Certified Information Systems Security Professional (CISSP). MUST HAVES: data ops experience, onboarding diverse data to include create indexes, experience working with SIEM products at an expert level, network\\systems admin experience dual hatted with analysis and infrastructure teams. integrates diverse data streams and serves as data standards and custodians of IT and service delivery data sets. SE with network analyst\\engineering background. Network security background with ability to analyze log data as well as familiarity of how to generate logs and metrics from product suites, such as Cisco, Juniper, and desktop\\server OS, ability to manage and troubleshoot data feeds, Splunk familiarization, Python Required Skills: Experience with architecting and hosting in AWS Experience administering Linux servers in stand-alone and cluster configurations Experience managing Linux environments in the cloud and on-premises Experience administering and configuring Splunk environments to include technical add-ons (TAs), primarily User Behavior Analytics (UBA Experience managing data in Splunk Experience with Splunk and Splunk Enterprise Security Experience using Splunk UBA to determine potential threats Experience configuring key performance indicators within UBA Experience interpreting event logs and machine data to identify threats 6 or more years of experience working within an incident response organization identifying threats and engineering solutions to autonomously identify threats An energetic and creative problem solver, comfortable working independently and in team environments. Ability to plan and prioritize multiple tasks. Desired Skills: Splunk UBA User experience Familiar with Azure, Oracle, Google cloud implementations