Listing Description
Who Is Nisos?
Nisos is the Managed Intelligence company. Our services enable some of the world’s largest companies’ security, intelligence, and trust & safety teams to more smartly defend against and more effectively respond to advanced cyber attacks, disinformation, and abuse of digital platforms.
We are a mission-driven company committed to combating digital adversaries; this is the foundation for how we conduct business every day. We hold ourselves to the highest ethical standards, we empower an open and diverse workplace, and we strive to treat everyone who is touched by our business with dignity and respect. Our employees challenge the status quo, ask questions, and find creative solutions for our clients.
The Nisos Intelligence Team, also known as the Pandion Team, are core contributors to Nisos’ Intelligence Services offerings. The Intelligence Senior Technical Analyst serves as a technical expert and will work closely with Nisos Intelligence Services team to enhance digital investigations and intelligence capabilities we deliver to our clients. The Investigator will be responsible for conducting network-based investigations (event logs, EDR logs, etc) and combining it with open source, dark web, partner, and proprietary datasets to combat crime occurring on the digital plane. Successful candidates will possess a blend of general business, technology, and security competencies.
While the position reports to our Alexandria, VA HQ, our Intelligence Services team is distributed nationally and full-remote work opportunities are available.
What You’ll Do
- Develop into the company expert on tracking the most advanced groups we encounter
- Maintain expert knowledge of advanced persistent threats tools, techniques, and procedures (TTPs) as well as forensics and incident response practices
- Analyze technical data to extract attacker TTPs, identify unique attributes of malware, map attacker infrastructure, conduct external threat hunting, and pivot to related threat data
- Identify and hunt for emerging threat activity across all internal/external sources
- Provide threat research and context to global service delivery for Professional Services
- Provide recommendations on detections and technology through threat expertise and knowledge
- Perform threat research, analysis, and attribution during against fraud, e-crime, disinformation, insider threat actors Nisos customers encounter globally
- Cross-coordinate threat data and trends between internal teams for rapid inclusion into customer deliverables
- Be the final arbiter for the technical and sometimes identity attribution of key organic customer events
Who You Are and What You Bring
- IPv4 Networking and Routing fundamentals
- Proficiency in Unix/Linux command line scripting
- Proficiency with basic Linux server administration, including webserver applications
- Proficiency with Netflow analysis
- Working knowledge of TCPdump or similar pcap analysis tool
- Deep understanding of these protocols: DNS, HTTP, HTTPS
- Working knowledge of HTML and JavaScript
- Working knowledge of SQL
- Working knowledge of how Proxies and VPNs function
- Experience analyzing threats on the deep and dark webs
- Experience with OSINT data collection
- Experience attributing threat actors
- Python or similar language scripting capability
- Experience building labs in cloud environment
- Prior pen-testing experience a plus
- Project management skills is a plus
- Technical writing skills is a plus
- Ability to communicate investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients
- Ability to develop documentation and explain technical details in a concise, understandable manner
- Strong time management skills to balance time among multiple tasks, and lead junior team members when required
- Enthusiastic team player with a strong hands-on attitude; flexible and adaptable; a problem solver
Education and Certifications
- B.S. in Computer Science or similar program, or and equivalent of experience
- Certifications that would be useful to someone in this role: GCIA or similar, GPEN or similar, Sec+ or equiv, Net+ or equiv, Linux+ or equiv
COVID
If hired, Nisos will require you to prove that you have received the COVID-19 vaccine (except in limited circumstances where an employee is legally entitled to an accommodation).
Disclaimer
This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities and activities may change or new ones may be assigned at any time with or without notice.
Nisos’ Equal Opportunity Employment Commitment
Nisos is committed to creating a diverse and inclusive workplace and is proud to be an equal opportunity employer. Nisos evaluates qualified candidates without regard to any characteristic protected by federal, state or local law. In addition, Nisos provides reasonable accommodations for qualified individuals with disabilities.
Listing Details
- Salary: $0 - $145000
- Citizenship: Us Citizen
- Incentives: Both
- Education: Bachelors Degree
- Travel: No Travel
- Telework: Full Telecommute