Malware Analyst SME Job at Resource Management Concepts, Inc., Quantico, VA

NjkxVUJtSHB4NHM0OVFWQm5uVTRDK1o1UUE9PQ==
  • Resource Management Concepts, Inc.
  • Quantico, VA

Job Description

Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.

RMC is hiring a well-rounded Tier 3 – Malware Analyst Subject Matter Expert (SME) to conduct an analysis of digital evidence to support computer security incidents to derive useful information in support of system/network vulnerability mitigation. 

The selected applicant will perform a variety of activities including but not limited to:

  • Perform technical analysis or malicious binaries through controlled execution and/or static analysis of assembly code, overcoming techniques designed to defeat analysis, to ascertain functionality, capability, call-backs, assist with attribution to adversary infrastructure, and identification of indicators of compromise.
  • Write and produce high quality technical reports related to the scope, nature, and characteristics of malicious software suitable for distribution to both technical and non-technical audiences.
  • Conduct analysis of digital evidence to support computer security incidents to derive useful information in support of system/network vulnerability mitigation. 
  • Support incident investigation by employing appropriate techniques in Surface Analysis, Runtime Analysis, and Static Analysis of suspected malware.
  • Support the development of new detection capabilities by integrating the results of malware and forensic analysis tasks into new and existing detection use cases in order to prevent future occurrences.
  • Analyze malware to determine its capabilities, intent, indicators, and origin. 
  • Confirm what is known about an intrusion and discovering new information using industry-standard malware and digital forensic analysis techniques.
  • Utilize forensically sound procedures such as duplication of the evidence (i.e., forensic image) to ensure the original evidence is not modified.
  • Interface with external organizations to ensure appropriate and accurate dissemination of the investigation and other cyber defense information.
  • Assist with Incident Response tasks as needed.
  • Demonstrate effectiveness by successfully analyzing files and artifacts related to Red Team (penetration testing) activity.

Requirements

  • Active TS/SCI (DoD TOP SECRET clearance with SCI eligibility) is required. Applicant selected will be subject to security investigation(s) and must maintain eligibility requirements for access to classified information.
  • Bachelor’s degree in Computer Science or IT-related field, OR at least five (5) years of demonstrated experience with DCO tools, tactics, and techniques in a large enterprise environment.
  • DoD 8140.03 IAT Level III certification (CASP+, CCNP Security, CISA, CISSP or Associate, GCED, GCIH, CCSP). Must be valid/current.
  • CSSP Incident Responder certification (Must have ONE of the following certs: CEH, CFR, CCNA Cyber Ops, CCNA Security, CHFI, CySA+ CE, GCFA, GCIH, SCYBER, PenTest+ CE).
  • GIAC Reverse Engineering Malware (GREM) certification (or industry equivalent) within 180 days of start.
  • Five (5) years' experience performing malware analysis.
  • Experience handling National State-level intrusions is a must.
  • Experience with malware analysis using static and dynamic analysis tools, including disassemblers, debuggers, and virtual machines.
  • Experience with monitoring threats through Tools, Techniques, and Procedures (TTP's) and how they relate to the MITRE ATT&CK framework.
  • Experience with Windows internals such as the Windows Application Interface (APIs), processes, threads and the registry.
  • Experience with Linux and comfortable traversing the terminal.
  • Knowledge of common attacker methodologies and exploit techniques.
  • Knowledge of network protocols and networking concepts.
  • Knowledge of x86 and x64 instruction set architectures.
  • Ability to analyze shellcode, packed and obfuscated code.

This position is considered essential and will be required to report during hazardous weather, power outages, fuel shortages, pandemics, and other emergencies.

“Salary at RMC is determined by various factors, including but not limited to location, a candidate's specific combination of education, knowledge, skills, competencies, and experience, as well as contract-specific requirements."

Benefits

At RMC, we're committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees.

RMC can offer you a great place to work with a small company feel and give you the experience and certifications that will take your career to the next level. RMC also offers high-quality, low-deductible healthcare plans and a competitive 401K package.

Job Tags

Full time, Contract work, Remote job,

Similar Jobs

Hoplite Solutions LLC

Elastic Search Engineer (Master) Job at Hoplite Solutions LLC

Hoplite Solutions is seeking an Elastic Search Systems Engineer whowill provide support across an Agile team in a DevSecOps environment. This role will provide support for a large enterprise Elastic Search deployment. This role requires providing design, configuration... 

The Stembridge Agency, LLC

Pediatric Orthopedic Surgeon needed in Macon, GA, Song and Soul of the South (SA198106) Job at The Stembridge Agency, LLC

(Physician/MD qualifications required) Orthopedic Surgery (Pediatric) - A top ten hospital in GA is seeking a board certified|board eligible Pediatric Orthopedic Surgeon in the beautiful and historic Macon, Georgia area. Macon is situated south of metropolitan Atlanta... 

B737 LLC

Class A Experienced OTR Driver Wanted - 1628 per week Job Job at B737 LLC

Class A Experienced OTR Driver Wanted - 1628 per week JobCompany:B737 LLCScottsdale, AZApplication | B737 LLC | TMFS CorpJob Details:Driver Type: Solo CDL-A Truck DriverFreight: Dry van, no HAZMATRoute Type: OTR nationwidePay, Benefits, and Schedule:... 

Vets Hired

Elastic Developer- SME Job at Vets Hired

 ...Design and develop data integration modules to extract, transform and load (ETL) data from multiple sources using Elastic technologies including Logstash and Beats. Design and implement custom data pipelines to ingest data into Elastic using tools such as Logstash or... 

University of Chicago (UC)

Pediatric General Surgeons - Clinical Associates #SUR139 | University of Chicago (UC) Job at University of Chicago (UC)

 ...The University of Chicago's Department of Surgery, Section of Pediatric Surgery seeks Clinical Associates at 100% effort for renewable terms of up to two years. Appointees will contribute pediatric inpatient consultations and trauma call coverage responsibilities to support...