Cyber Security Vulnerability Analyst Job at ITR, Oak Ridge, TN

eUN0amh3OENVL3p5cjJCY1h4SkRtUG1uQ1E9PQ==
  • ITR
  • Oak Ridge, TN

Job Description

Job Description

Job Description

East Tennessee company is seeking a Cyber Security Vulnerability Analyst to perform defensive cyber operational tasks, respond to reported incidents, and track remediation of client system vulnerabilities to include industrial control systems. The ideal candidate will be an experienced analyst with a strong background in addressing network vulnerabilities and conducting incident response activities.

This is a full-time, hybrid position that will work onsite in Oak Ridge, TN 2-3 days each week.

Job Responsibilities:
• Join the Defensive Cyber Operations Group’s multi-disciplinary team in responding to advanced Cyber threats from targeted phishing to network-based threats, ransomware, and APT-level activity in a Tier 2 role.
• Mentor the DCO’s junior staff, developing their technical and incident resolution skills.
• Participate in incident response activities involving multiple teams and functions.
• Serve as primary coordinator for ORNL response to federal Binding Operational Directives and data calls.
• Leverage internal and external vulnerability scanning scan data to maintain a comprehensive view of ORNL’s threat profile and risk status.
• Automate key DCO functions using Tines technology
• Partner with Emerging Threat team to remediate extant vulnerabilities identified by their intelligence activities.
• Maintain strong collaborative and data sharing relationships with DOE headquarters Cyber units, other DOE laboratories, and external entities.
• Leverage EDR, SIEM, IDS, and PCAP tools to identify and investigate cyber threats.
• Assist users with the creation, monitoring, and evaluation of policy and device exceptions.
• Assist in training and awareness activities to ensure ORNL staff are aware of Cyber Security responsibilities and requirements.
• Partner with Cyber Industrial Control System Engineers to monitor the lab’s ICS enclaves for operational and security issues


Candidates must be able to obtain a federal security clearance so US citizenship is required.

Job Tags

Full time, 2 days per week, 3 days per week,

Similar Jobs

Minnesota Department of Employment and Economic Development

Marketing and Creative Director - Communications Manager 1 Job at Minnesota Department of Employment and Economic Development

 ...creation and publication of all marketing materials in line with promotional plans. Continually research current marketing, event, and advertising trends and incorporate effective tactics into promotional plans. Oversee DEED social media sites. Supervise the marketing... 

SubCom

Electrician - Navy/Submarine Job at SubCom

 ...Communities. The backbone of the Internet is a series of high-tech subsea fiber optic cables deployed throughout the globe - SubCom has deployed over 50% of them. Our employees ensure data communications networks are engineered, manufactured, deployed, and maintained to... 

New York City Health and Hospitals Corporation - 50 Water St...

Travel Medical Chart Review RN Job at New York City Health and Hospitals Corporation - 50 Water St...

 ...Job Description Certification Details BLS New York State RN License Job Details ~ Use clinical knowledge to review medical charts for accuracy and sequencing of diagnosis to those assigned from Consultation reports, History and Physical reports, Operative... 

Cumberland University

Graduate Assistant, Exercise & Sport Science Job at Cumberland University

 ...Details Job Location : Cumberland University - Lebanon, TN Salary Range : Undisclosed Description Graduate Assistant, Exercise & Sport ScienceJeanette C. Rudy School of Nursing & Health ProfessionsJob DetailsLevel: EntryJob Location: Cumberland University, Lebanon,... 

Apptad Inc

Oracle DBA Job at Apptad Inc

 ...Job Title: Oracle DBA Location: Montreal, QC The purpose of this job is to provide all aspects of database administration provide technical guidance and support to junior (L1) database administrators (when applicable) and vulnerability remediation would be...