Jobs
>
Stuttgart

    Senior Cyber Security Analyst - Stuttgart, Deutschland - 00100 LEIDOS, INC.

    Default job background
    Ganztags
    Beschreibung

    Leidos is seeking an Cyber Network Defense Engineer in Stuttgart, Germany to perform technical work as part of an integrated team of cyber subject matter experts (SMEs) supporting DISA Europe (DISA-EUR). The DISA-EUR CSI team provides enhanced security capabilities and analytics to onsite real time analysts in support of a global mission to defend the Department of Defense mission networks.

    If selected, you will be part of a multi-disciplinary team that supports the active and passive Cyber Network Defense (CND) tools deployed in support of DISA-EUR Defensive Cyberspace Operations (DCO). The ideal candidate must be able to integrate with other technical teams, with DISA personnel, with vendor technical support personnel, and with technical representatives from DoD services, working as part of an integrated, cross-platform team that provides CND capability locally and DoD-wide in support of short and long-term sustainment and operations.

    PRIMARY RESPONSIBILITIES:

  • Provide maintenance, support, and ongoing performance enhancements on multiple Elastic instances.
  • Perform system upgrades, troubleshooting, and resolving infrastructure and system issues, as well as log ingestion and communication issues.
  • Provide Tier III support to O&M staff handling trouble tickets or other issues. Build and maintain Kibana visualizations and dashboards to provide information to cyber defenders of the platform and support staff.
  • Create, recommend, and assist with development of new security content as the result of coordination with other teams, to include signatures, alerts, workflows, and automation
  • Develop new processes, procedures, and playbooks for countermeasure implementation as new technologies are deployed in the environment
  • Develop scripts to support cyber threat detection that outputs results in a variety of formats, such as VB scripts, Python, C++, HTML, XML or other type most appropriate for the task
  • Coordinate with different teams to improve threat detection, response, and improve overall security posture of the Enterprise
  • Understand intrusion sets, TTPs, and threat actors to better tailor countermeasure deployment across the enterprise
  • BASIC QUALIFICATIONS:

  • Top Secret clearance is required
  • DoD 8570 IAT II certification is required prior to start
  • Bachelor's degree and 8+ years of directly relevant experience or Master's and 6+. Additional experience, education and training may be considered in lieu of degree.
  • Well versed in TCP/IP communications
  • Have a general knowledge of router and firewall functionality on a network
  • Have experience with Elastic Common Schema and scaling of Elastic to support new log types
  • Have excellent skills with Ansible and Python scripting, Linux CENTOS/ Red Hat operating system commands, File data storage, indexing, and searching via Elasticsearch
  • Familiar with Pull API Architecture (e.g., EDR to SIEM)
  • Excellent written and verbal communications skills and be able to appropriately present highly technical material to both technical and non-technical audiences
  • PREFERRED QUALIFICATIONS:

  • Experience configuring and maintaining the tool in a multi-tenant environment
  • Experience with the following technologies:
    Kafka, Splunk, Streamsets or other log manipulation/parsing tools, SOAR integration (Demisto, Phantom)
  • Hands on experience in operations of sizing, monitoring, management, and open-source tools, including Kafka, Logstash, Beats, Elasticsearch, Kibana, and Splunk
  • Knowledge of planning and executing data retention and life cycle management plans
  • Experience with data lifecycle management, to include common ETL (Extract, Transform, Load) techniques, preferably with Logstash and Beats
  • Hands on experience administrating Elasticsearch clusters (10+ Data nodes)
  • Experience with load balancing, DNS, TLS certificate generation and SAML integration.
  • Experience in IT with a focus in Linux sysadmin, databases, containers, and cyber operations
  • Experience managing Linux hosts (CentOS / RHEL preferred), to include securing to defined baselines (such as NIST 800-53, DISA STIGs, etc.)
  • Experience planning and integrating data schemas and KQL / Lucene query syntax
  • Experience developing custom visualizations in Kibana to convey custom analytics
  • Experience with automated configuration management tools (Ansible), containers/orchestration (Docker, Kubernetes), and version control systems (GitHub, GitLab)
  • Proficiency with programming and scripting concepts, preferably in Python, for custom development and integrations
  • Strong networking background with analytical and problem-solving/troubleshooting skills to effectively resolve problems both in development and production
  • A proven track record of successes where you developed an understanding of what made a difference, and devised architectures that helped meet a goal or tackle a problem.
  • A real passion for being curious and a continuous learner.
  • Original Posting Date:

    While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

    Pay Range:

    Pay Range $101, $183,300.00

    The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.


  • TransnetBW GmbH

    IT-Security Analyst

    vor 5 Tagen


    TransnetBW GmbH Stuttgart, Deutschland Ganztags

    IT-Security Analyst m/w/d · Referenznummer: · Vollzeit, unbefristet · Stuttgart · Mit unserem zentralen Cyber Defense Center überwachen und schützen wir gesamtheitlich die IT-Infrastruktur der TransnetBW GmbH und stehen als verlässlicher Partner unseren IT-Abteilungen zur Erkenn ...


  • Thinking Objects Korntal-Münchingen, Deutschland

    Du hast Spaß an klassischen Analysetätigkeiten - in Dir steckt ein Sherlock Holmes, der Indizien zu einem Gesamtbild werden lässt? · Im Hase-Igel Spiel bist Du der schlaue Fuchs, der den Ausgang aus dem Escaperoom als erster findet? · Dann bewerbe Dich jetzt als Cyber Security An ...

  • Pilz

    Security Analyst

    vor 1 Woche


    Pilz Reutlingen, Deutschland

    Bereit, die Welt sicherer zu machen? Pilz ist mit rund 2 500 Mitarbeiterinnen und Mitarbeitern globaler Anbieter von Produkten, Systemen und Dienstleistungen für die sichere Automation. Als Technologieführer der Automatisierungstechnik tragen wir globale Verantwortung für die Sic ...


  • TransnetBW Stuttgart, Deutschland Ganztags

    Das kann der Job · Sie begleiten HGÜ-Projekte von TransnetBW in allen Projektphasen von der Planung, Vergabe, Abwicklung, Bau/Montage bis hin zur Inbetriebnahme · Sie übernehmen Projektaufgaben als Koordinator m/w/d für Schutz- und Leittechnik in HGÜ-Projekten · Sie vertreten Tr ...

  • Wörwag Pharma

    IT Security Analyst

    vor 6 Tagen


    Wörwag Pharma Böblingen, Deutschland

    Diese Aufgaben erwarten Sie · Maßgebliche Mitwirkung bei der gruppenweiten IT Security Strategie · Analyse und Risikobewertung der gesamten IT-Landschaft und Prozesse sowie Ableitung von risikominimierenden Maßnahmen und Kontrollen · Kontinuierliche Analyse, Pr ...


  • Schwarz Dienstleistung KG Neckarsulm, Deutschland

    Die Schwarz IT KG ist als zentraler IT-Dienstleister für Auswahl, Bereitstellung und Betrieb sowie Weiterentwicklung von IT-Infrastrukturen, IT-Plattformen und Business-Anwendungen zuständig. Damit erbringt die Schwarz IT sowohl für Kaufland und Lidl als auch für die Schwarz Dien ...


  • Schwarz Dienstleistungen Neckarsulm, Deutschland

    Die Schwarz IT KG ist als zentraler IT-Dienstleister für Auswahl, Bereitstellung und Betrieb sowie Weiterentwicklung von IT-Infrastrukturen, IT-Plattformen und Business-Anwendungen zuständig. Damit erbringt die Schwarz IT sowohl für Kaufland und Lidl als auch für die Schwarz Dien ...


  • Schwarz Dienstleistungen Neckarsulm, Deutschland

    Die Schwarz IT KG ist als zentraler IT-Dienstleister für Auswahl, Bereitstellung und Betrieb sowie Weiterentwicklung von IT-Infrastrukturen, IT-Plattformen und Business-Anwendungen zuständig. Damit erbringt die Schwarz IT sowohl für Kaufland und Lidl als auch für die Schwarz Dien ...


  • Schwarz Dienstleistung KG Neckarsulm, Deutschland Ganztags

    Die Schwarz IT KG ist als zentraler IT-Dienstleister für Auswahl, Bereitstellung und Betrieb sowie Weiterentwicklung von IT-Infrastrukturen, IT-Plattformen und Business-Anwendungen zuständig. Damit erbringt die Schwarz IT sowohl für Kaufland und Lidl als auch für die Schwarz Dien ...


  • Schwarz Dienstleistungen Neckarsulm, Deutschland

    Deine Aufgaben · Du übernimmst die Koordination und Kommunikation bei IT-Security Incidents über unserere Teams und Länder hinweg und leitest den Security Incident Response Prozess · Du bist verantwortlich für die Erkennung und Analyse potenzieller Security Incidents sowie für de ...


  • Leidos Stuttgart, Deutschland Ganztags

    Leidos is seeking an Cyber Network Defense Engineer in Stuttgart, Germany to perform technical work as part of an integrated team of cyber subject matter experts (SMEs) supporting DISA Europe (DISA-EUR). The DISA-EUR CSI team provides enhanced security capabilities and analytics ...


  • LEIDOS Stuttgart, Deutschland

    Leidos is seeking an Cyber Network Defense Engineer in Stuttgart, Germany to perform technical work as part of an integrated team of cyber subject matter experts (SMEs) supporting DISA Europe (DISA-EUR). The DISA-EUR CSI team provides enhanced security capabilities and analytics ...


  • IBM Stuttgart, Deutschland

    Introduction · Wir leben in einer Zeit stetigen Wandels und außergewöhnlicher Möglichkeiten. Themen wie Artificial Intelligence, Analytics und Security, Cloud und Mobile Computing verändern Industrien, Gesellschaft, Arbeitsbereiche und ergeben neue Tätigkeitsfelder. Sammle Erfahr ...


  • General Dynamics Information Technology Stuttgart, Deutschland

    Clearance Level Secret Category Systems Engineering Location Stuttgart, Germany Onsite Workplace · **Requisition Type**:Pipeline****: · **Your Impact**: · Own your opportunity to work with the largest government agency in the nation. Make an impact by advancing the Department of ...

  • Zync Group

    Splunk Expert

    vor 1 Woche


    Zync Group Stuttgart, Deutschland

    **Start date**: 1st September th February extension · **Location**:Germany - Multiple locations (60% onsite, 40% remote NEGOTIABLE) · **Pay rate**: €80 / hour + · **Capacity**:100% (full time) · **Project description**: · My client needs support in viewing the logs, data modellin ...

  • Zync Group

    Spunk Expert

    vor 3 Tagen


    Zync Group Stuttgart, Deutschland

    **Start date**:1st May st December extension · **Location**:Stuttgart (60% onsite, 40% remote NEGOTIABLE) · **Pay rate**:€80 / hour + · **Capacity**: 100% (full time) · **Project description**: · My client needs support in viewing the logs, data modeling (ad-ons), parsing/normali ...


  • Barbaricum Stuttgart, Deutschland

    Barbaricum is a rapidly growing government contractor providing leading-edge support to federal customers, with a particular focus on Defense and National Security mission sets. We leverage more than 15 years of support to stakeholders across the federal government, with establis ...


  • Booz Allen Hamilton Stuttgart, Deutschland

    Location: · - Stuttgart,DE · - Remote Work: · - No · - Job Number: · - R0177793 · - Intelligence Professional Liaison Officer, Senior · - ** The Opportunity**: · Critical decisions are made every single day in government. What if you could use your analytical skills to help them ...


  • boozallen Stuttgart, Deutschland

    Counter Threat Security Auditor · **The Opportunity**: · Critical decisions are made every single day in the military. What if you could use your analytical skills to help them make informed decisions? With all the information available today, it takes a skilled analyst to know h ...

  • Source Group International

    Splunk Expert

    vor 3 Tagen


    Source Group International Stuttgart, Deutschland

    Posted: · - Today- Sector: · - Cyber Security- Location: · - Stuttgart, Baden-Württemberg, Germany- Job Ref: · - BH Job Type: · - Contract- Expiry date: · - 4/19/2023- Contact: · - Jayden Posener- SPLUNK Expert - Germany. · - Freelance - 8 Month Rolling Contract · - Located In St ...