Accenture

Federal - Cyber Threat Hunter

Posted on: 25 Feb 2021

Columbia, SC

Job Description

Job Description

Organization: Accenture Federal Services

Location: Remote or (Washington, DC)

We are:

Accenture Federal Services, providing a tailored strategy to address the many cybersecurity challenges faced by customers in todays ever-changing business and industry landscape. Our team delivers a wholistic approach to cybersecurity assessment, monitoring, investigation, and response. Whether were defending against identified threat actors, detecting and responding to the unknown, or running an entire security operations center, we build cyber resilience so our clients can grow with confidence in their security.

You are:

A Cyber Security professional and enthusiast, who is seeking opportunities to evolve his/her craft by understanding latest cyber threats and help clients identify intrusion in their respective environments. In order to effectively do this, you leverage cutting edge Security Information and Event Management (SIEM) data analytics, as well as network/endpoint detection and response technologies for investigating any malicious activity in customers on-prem and cloud environments.

The Work:

Cyber Threat Hunters should possess the skills and attributes necessary to perform in-depth analytics on data identified as outliers within large-scale organizations. Some keys to successful threat hunting involves knowledge of network and endpoint indicators, familiarization with adversary technique models such as MITRE ATT&CK and Lockheed Martins Cyber Killchain, TTPs involving incident response and live-box forensics, and the ability to automate mundane analytical procedures through the use of scripting. The perfect candidate meets the above statement as well as brings a pro-active eagerness to discover an adversary within a network. You should be able to perform as well on a team as you do on your own.

Responsibilities may include, but will not be limited to:

* Tuning alerts and implementing threat detection analytics
* Deploy and maintain security sensors and tools
* Monitor & triage alerts generated from sensors
* Utilize scripting to automate tasks
* Review cyber threat intelligence feeds to convert intelligence into useful detections
* Identify incident root cause and develop proactive mitigation steps
* Create and brief customer reports
* Detect patterns/outliers within data sets that match TTPs of known threat actors, malware and otherwise unusual behaviors.
* Create dashboards within Splunk to clearly identify scope of findings
* Provide expert analytic investigative support of large scale and complex security incidents.
* Conduct dynamic and static malware analysis on samples obtained during incident handling or hunt operations in order to identify IOCs.

Qualifications

Heres you what you need:

* Experience with Security Information and Event Management (SIEM) tools solutions (e. g. ELK, Splunk ES, ArcSight, Azure Sentinel etc.)
* Experience in an offensive and/or defensive cyber operations role (eg., Red Team, Threat Hunting, Incident Response, SOC Analyst, Penetration Tester)
* Experience performing PCAP Analysis
* Scripting experience with one or more of the following languages: PowerShell, Bash, Shell, Python or any front end/backend code

Bonus Points if you have:

* Experience with automated tools (Phantom, Dimesto)
* Skill in interacting with various platform APIs to retrieve and manipulate data
* Understanding of MITRE ATT&CK and Lockheed Martins Killchain
* You have one or more of the following certifications:
* Networking (Cisco, Palo Alto, Juniper)
* Security Tools (Splunk, Carbon Black, Cylance, McAfee, Tenable, FireEye, CrowdStrike, ELK)
* SAN/GIAC (GCIH, GCIH, GREM, GCED, GCDA)

Important Information:

An active security clearance or the ability to obtain one may be required for this role.

Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration.

Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States and with Accenture (i.e., H1-B visa, F-1 visa (OPT), TN visa or any other non-immigrant status).

Accenture is a Federal Contractor and an EEO and Affirmative Action Employer of Females/Minorities/Veterans/Individuals with Disabilities.

Equal Employment Opportunity
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.

Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process.

Accenture is committed to providing veteran employment opportunities to our service men and women.

APPLY NOW

Register for Job Alerts

To apply from a mobile device, your CV must be in the cloud. Not Ready? Send this job to an email address To apply from a tablet device, your CV must be in the cloud. Not Ready? Send this job to an email address

Accenture

New York, New York

Accenture is a leading global professional services company, providing a broad range of services and solutions in strategy, consulting, digital, technology and operations with more than 373,000 people serving clients in more than 120 countries. Combining unparalleled experience, comprehensive capabilities across all industries and business functions, and extensive research on the world’s most successful companies, Accenture collaborates with clients to help them become high-performance businesses and governments. The company generated net revenues of US$31.0 billion for the fiscal year ended Aug. 31, 2015.

Welcome to Accenture U.S.

Discover how we embrace innovation to drive new value for your organization. Explore new insights. See tangible outcomes.

Leading with innovation

Today, we see industries all around us disrupted by advances in technology.

We help business stay ahead in the digital economy by bringing the New to leading companies—including 95 of the Fortune 100 and more than three-quarters of the Fortune 500.

Our U.S. Innovation Hubs

Located in 10 major cities across the United States, our network of Innovation Hubs is the engine where we push the boundaries of the possible with our clients.

Each Hub is home to multidisciplinary teams of designers, developers and other technology experts who work with clients to investigate, imagine and bring to life new ideas. Bringing together the company’s full suite of innovation capabilities, each Hub taps the local talent technology ecosystem, including startups, universities and industry leaders. Each is connected to more than 100 Accenture locations around the globe to seamlessly bring the best of Accenture’s global investments and insights to its clients on the ground.

 

Similar Jobs