Cyber Threat Intel Engineer III
CACI - St. Louis, MO
Apply NowJob Description
Cyber Threat Intel Engineer III Job Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Continental US The Opportunity: As a Cyber Threat Intelligence Analyst, you will play a crucial role in identifying and mitigating cyber threats, enhancing NGA's security posture, and protecting critical assets. The employee shall provide cyber threat intelligence services for the collection, fusion, analysis, creation, and distribution of threat intelligence from IC, other government entities, commercial feeds, open sources, and other partners to obtain situational awareness of the threat environment. Cyber threat intelligence services shall develop and disseminate reports to internal and external stakeholders based on events, alerts, and incidents on NGA systems and networks. Responsibilities: Conduct analysis and research on emerging threats and intelligence by collecting and analyzing commercial and government cyber intelligence reports to provide actionable cyber intelligence to support incident response, vulnerability management, and other cybersecurity initiatives. Monitor and assess the global threat landscape, including threat actors, malware, and hacking techniques that may impact NGA systems and networks. Collaborate with internal and external stakeholders to gather and share relevant threat intelligence. Develop and maintain threat profiles and reports to enhance detection and response capabilities. Continuously update and refine existing threat intelligence processes and methodologies to ensure the organization remains at the forefront of cyber defense. Develop and provide to the Government and other Contract Services regular and ad hoc reports, briefs, documents, diagrams, and other products as required to ensure stakeholders are aware of and understand cybersecurity threats and the risk posed to NGA by the threat. Identify and assess the relevance and effectiveness of signatures and indicators of compromise based on intelligence. Develop, review, and when properly authorized by the Government, disseminate NGA CSOC developed Cyber Intelligence products to internal to NGA and external DoD and IC partners, to include but not limited to threat intelligence reports, significant cyber activity reports, incident investigation reports, and other products as directed by the Government. Analyze patterns of behavior to identify and determine adversary intent and provide this analysis to the Government in a document, briefing, and/or other products as required. Develop comprehensive threat models of adversary activity and provide this analysis to the Government in a formal report, briefing, or other product as required. Coordinate with NGA entities, to include but not limited to Cyber Counterintelligence, Insider Threat, and Red/Blue Team to perform adversary profiling and threat modeling. Document all work in the authorized ticketing system with a level of detail sufficient to enable the Government and other services to reconstruct the analyst's analysis process. Provide input to the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report. Qualifications: Required: Have experience with Cyber Threat Intelligence. Be able to work independently and with minimal supervision. Be proactive in performing assigned job duties. Be an excellent communicator. Be a team player and facilitate a collaborative work environment. Have DOD 8570.01 IAT II certification and be willing to obtain a CSSP Analyst certification within six months of joining the team. Desired: Master's Degree. Security Operations Center (SOC) experience. #J-18808-Ljbffr
Created: 2025-02-03