Job Information
The MITRE Corporation Intermediate Cyber Analytics Engineer in Bedford, Massachusetts
Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day—working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities, and a culture of innovation that embraces diversity, inclusion, flexibility, collaboration, and career growth. If this sounds like the choice you want to make, then choose MITRE—and make a difference with us.
Department Summary:
MITRE InfoSec is the organization responsible for the unclassified information security program within MITRE. Our protection of MITRE covers both Operational and Services functions, ensuring an industry leading, comprehensive security program. This role falls within our Operations team, in the Defensive Innovation Group, tasked with responsibility for preventing, detecting, and responding to our cyber adversaries. This group develops new methods and capabilities for protecting MITRE from cyber adversaries, making the team more effective and efficient. We’re looking for motivated individuals with a strong interest in advancing the state of the possible in defending against advanced cyber threats.
Roles and Responsibilities:
Implement new capabilities to enhance MITRE InfoSec’s ability to prevent, detect, and respond to cyber threats
Contribute to brainstorming and design of such capabilities
Develop detections from cloud, server, endpoint, and network data to detect signs of intrusion
Use automation platforms to enhance detection and accelerate response to cyber threats
Automate daily tasks to improve SOC’s efficiency and effectiveness
Leverage machine learning to detect new and novel attacks
Work both individually and as part of a team
Basic Qualifications:
Typically requires a Bachelor’s degree and a minimum of 2 years of related experience; or an advanced degree with relevant experience who can immediately contribute at this job step; or equivalent combination of related education and work experience.
2+ years of related experience in defensive cybersecurity operations, cyber incident response, detection engineering, or defensive cyber capability development
Proficiency in Python or comparable modern programming language
Eligible for Secret clearance (current clearance not required)
Preferred Qualifications:
Master of Science (or equivalent experience) in Cybersecurity, Software Engineering, Computer Science, Computer Engineering, or related engineering disciplines
4+ years of related experience in defensive cybersecurity operations, cyber incident response, detection engineering, or defensive cyber capability development
Active Secret clearance
Experience developing on Splunk platform
Experience designing and implementing cloud detection engineering or incident response capabilities
Experience implementing Security, Orchestration, Automation and Response (SOAR) playbooks
Experience designing and performing cyber hunts using MITRE ATT&CK framework and/or cyber threat intelligence reports
Experience performing cyber incident response on one of more platforms, including Windows, MacOS, Linux, Amazon AWS, or Microsoft Azure
Cloud Development experience
Amazon Web Services, Azure, M365
Interfacing with cloud services via API
Deploying capabilities on IaaS, PaaS, or SaaS platforms
Machine Learning/Artificial Intelligence experience
Use of ML/AI tools or libraries, e.g. PyTorch, Pandas, Scikit-learn, TensorFlow, or Splunk MLTK
Development of ML-based detections or analytics
Strong written and verbal communication skills; effective technical presentation skills
This requisition requires the candidate to have a minimum of the following clearance(s):
None
This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s):
Secret
Work Location Type:
Hybrid
MITRE is proud to be an equal opportunity employer. MITRE recruits, employs, trains, compensates, and promotes regardless of age; ancestry; color; family medical or genetic information; gender identity and expression; marital, military, or veteran status; national and ethnic origin; physical or mental disability; political affiliation; pregnancy; race; religion; sex; sexual orientation; and any other protected characteristics. For further information please visit the Equal Employment Opportunity Commission website EEO is the Law Poster (https://www.eeoc.gov/sites/default/files/2022-10/22-088_EEOC_KnowYourRights_10_20.pdf) and Pay Transparency (https://www.dol.gov/sites/dolgov/files/OFCCP/pdf/pay-transp_%20English_formattedESQA508c.pdf) .
MITRE intends to maintain a website that is fully accessible to all individuals. If you are unable to search or apply for jobs and would like to request a reasonable accommodation for any part of MITRE’s employment process, please email recruitinghelp@mitre.org .
Copyright © 2024, The MITRE Corporation. All rights reserved. MITRE is a registered trademark of The MITRE Corporation. Material on this site may be copied and distributed with permission only.
Benefits information may be found here (https://careers.mitre.org/us/en/benefits)
The MITRE Corporation
- The MITRE Corporation Jobs