Job Description
Benefits:
401(k)
401(k) matching
Dental insurance
Health insurance
Paid time off
Profit sharing
Training & development
Tuition assistance
Vision insurance
SarelaTech is seeking an experienced Operational Technology Threat Intelligence Analyst to support a Department of War (DoW) cybersecurity mission in Columbus, Ohio. This position will collect, review, and identify cybersecurity threat intelligence from open-source and Government intelligence reporting to analyze and provide actionable threat reporting and briefings for Operational Technology (OT) cybersecurity analysts.
The Operational Technology Threat Intelligence Analyst will support content developers and cybersecurity engineers in identifying gaps in the protection and detection of OT systems. The position will review log data, network events, and alerts associated with OT systems for signs of attack, Advanced Persistent Threats (APT), and other malicious activity.
The analyst will work closely with Cyber Intelligence and Incident Response analysts to support expert analysis and reporting of OT cybersecurity threats and attacks. The position will perform root cause analysis and support remediation efforts associated with OT cybersecurity incidents and will serve as a subject matter expert on OT cybersecurity matters.
Required Qualifications
Six (6) years of relevant information technology experience.
Two (2) years of experience working with Operational Technology (OT) or related technologies.
Two (2) years of experience utilizing Cyber Threat Intelligence.
Two (2) years of experience working with a Security Information and Event Management (SIEM) platform in an engineering or Incident Response role.
Experience collecting and interpreting qualitative and quantitative data from multiple sources.
Understanding of the NIST Incident Response Framework.
Understanding of the MITRE ATT&CK framework.
Experience with OT technologies such as Programmable Logic Controllers (PLCs) and Supervisory Control and Data Acquisition (SCADA) software.
Understanding of threats and vulnerabilities in OT environments.
Certifications:
Must possess:
CompTIA Security+; and
At least one current certification meeting DoD 8570/8140 Cybersecurity Service Provider Incident Responder (CSSP-IR) requirements, including:
Certified Ethical Hacker (CEH)
CyberSec First Responder (CFR)
Cisco Certified CyberOps Associate
Computer Hacking Forensic Investigator (CHFI)
CompTIA Cybersecurity Analyst (CySA+)
CompTIA PenTest+
GIAC Certified Forensic Analyst (GCFA)
GIAC Certified Incident Handler (GCIH)
Systems Security Certified Practitioner (SSCP)Security Clearance
Active DoD Top Secret (TS) security clearance.
Full-time