Cloud Response SME

Posted 22 Hours Ago
Be an Early Applicant
Quantico, VA, USA
In-Office
Senior level
Information Technology • Analytics • Cybersecurity • Defense
The Role
Serves as the technical authority for cloud defensive cyberspace operations. Develops cloud threat-detection use cases, investigates and responds to incidents, deploys defensive capabilities, and evaluates defenses against Red Team activity. Maintains tactics, techniques, procedures, training, and CSSP accreditation documentation. Presents annual cloud security training and supports government security operations using Azure, Sentinel, Tanium, Defender for Endpoint, Elastic/Kibana, and JRSS tools.
Summary Generated by Built In

Sentar is proud to be an employee-owned company, fostering a culture of empowerment, collaboration, and innovation. Sentar is dedicated to developing the critical talent that the connected world demands to create solutions to address the convergence of cybersecurity, intelligence, analytics, and systems engineering. We invite you to join the team where you can build, innovate, and secure your career.

Sentar is seeking a Cloud Response SME in Quantico, VA!

Role Description:

Sentar is hiring a Cloud Response SME to support our customer in Quantico, VA. The Cloud Response SME serves as the primary technical authority for engineering, optimizing, and maintaining defensive cyberspace operations (DCO) infrastructure across customer cloud environments. The SME protects mission-critical systems by designing, implementing, and maintaining high-impact threat detection use cases to capture unauthorized activity using both cloud-native tools and cross-domain enterprise solutions. This expert directly manages cloud incident investigations and response actions, leveraging a powerful specialized toolkit that includes Tanium, Microsoft Defender for Endpoint, Elastic/Kibana, and the comprehensive suites within the DoD's Joint Regional Security Stack (JRSS). Additionally, the SME operationalizes this knowledge by updating tactics, techniques, and procedures (TTPs) and conducting an advanced cloud security curriculum.

  • Develop detection use cases specifically focused on detecting unauthorized activity in cloud computing environments using the Government’s existing cloud computing defense tools (Azure Active Directory, Microsoft Sentinel, etc).
  • Assist with the investigation of and response to cyberspace incidents involving cloud computing environments and technologies.
  • Assist the Government with the design and deployment of new DCO capabilities in cloud computing environments.
  • Demonstrate effectiveness by successfully identifying and/or preventing Red Team (penetration testing) activity in the Government’s cloud computing environment.
  • At least once per calendar year, update the tactics, techniques, procedures, training, and education documentation (Microsoft Word and PowerPoint Documents stored on SharePoint or other Government approved media) related to this task.
  • At least once per calendar year, prepare and present a course, which covers the basics of Cloud Computing security and common attack scenarios as well as DCO Division specific tactics, techniques, processes, and procedures related to this task. Ensure average satisfaction rating on Government approved student satisfaction surveys meets or exceeds 90%.
  • Provide support required to maintain the Government’s CSSP accreditation per the standards set forth in the CSSP program manual, DOD -8530.01-M, (dated 17 Dec 03 or later) to include documentation and technical writing support as needed.

Qualifications: IAT III and CSSP Incident Responder certification

IAT III certification list: CASP+ CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, and CCSP

CSSP IR certification list: CEH, CFR, CCNA Cyber Ops, CCNA-Security, CHFI, CySA+, GCFA, GCIH, SCYBER, and PenTest+

Clearance Level: TS/SCI eligibility

Education: Technical Bachelor's degree or additional years of experience

Experience:

  • At least five years of demonstrated experience in incident investigation in cloud environments.
  • Experience handling national and state level intrusions.
  • Expertise in cloud computing environments with the ability to build and maintain detection use cases to detect unauthorized activity in those environments
  • Experience with incident investigation in cloud computing environments.
  • Experience with Tanium, Microsoft Defender for Endpoint, Elastic/Kibana, and the tools included in the DoD’s Joint Regional Security Stack (JRSS).
  • Experience with the design and implementation of defensive cyberspace tools in cloud computing environments.

Benefits at Sentar:

Our unique employee ownership model attracts top talent, giving employees the freedom to take initiative and drive meaningful improvements. In addition to cultivating a thriving and inclusive work environment, Sentar offers an extensive benefits package designed to support the well-being of employees and their families. Employee ownership is the foundation of our culture, promoting participation, teamwork, and accountability while ensuring long-term financial security and a commitment to excellence.

  • Voluntary Medical, Dental, Vision, with Flexible Spending Plan options
  • Voluntary Life, Critical Illness, Accident, and Long Term Care insurance options
  • Group Term Life, Short-Term and Long-Term Disability is provided by Sentar to all qualifying employees
  • Generous 401(k) match
  • Competitive PTO plan that graduates quickly with years of service
  • Other leave programs; holiday schedule along with bereavement, maternity, jury and military duty
  • Tuition reimbursement
  • Professional development reimbursement
  • Recognition and Awards programs

If you are not ready to apply for this position, submit your resume here to join our talent community. We'll keep you updated occasionally on new job opportunities.

Sentar is an Affirmative Action and Equal Opportunity Employer M/F/Vets/Persons with Disabilities

Our culture is one of inclusivity and support. Sentar is proudly an Equal Opportunity and VEVRAA Federal Contractor Employer M/F/Vets/Persons with Disabilities. Follow these links to learn more about your rights: EEO Is the Law Poster; EEO Is Law Supplement; and Pay Transparency.

We want you to build your career at Sentar, so if you are an individual with a disability and require a reasonable workplace accommodation applying for a job or at any point in the employment process, contact the Recruiting Manager at [email protected]. Please indicate the specifics of the assistance needed. Thank you for considering Sentar in your employment search.

Build, Innovate, Secure Your Career at Sentar.

Skills Required

  • IAT III certification, such as CASP+ CE, CCNP Security, CISA, CISSP or Associate, GCED, GCIH, or CCSP
  • CSSP Incident Responder certification, such as CEH, CFR, CCNA Cyber Ops, CCNA-Security, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+
  • Technical bachelor's degree or additional years of experience
  • At least five years of demonstrated experience in incident investigation in cloud environments
  • Experience handling national and state level intrusions
  • Expertise building and maintaining cloud detection use cases for unauthorized activity
  • Experience investigating incidents in cloud computing environments
  • Experience with Tanium, Microsoft Defender for Endpoint, Elastic/Kibana, and DoD Joint Regional Security Stack tools
  • Experience designing and implementing defensive cyberspace tools in cloud environments
  • TS/SCI eligibility
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company

What We Do

Sentar is a leading cyber-intelligence solutions provider focused on the National Security sector. The company blends expertise in cybersecurity, intelligence and analytics, and systems and software engineering to protect national security by innovating, building, and securing mission-critical assets. Key clients include the U.S. Army, the U.S. Navy, and the Defense Health Agency.

Similar Jobs

BAE Systems, Inc. Logo BAE Systems, Inc.

Systems Engineer

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
Norfolk, VA, USA
40000 Employees
107K-183K Annually

BAE Systems, Inc. Logo BAE Systems, Inc.

Orals Presentation Specialist

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
McLean, VA, USA
40000 Employees
135K-229K Annually

BAE Systems, Inc. Logo BAE Systems, Inc.

Computer Network Technician

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
Wallops Island, VA, USA
40000 Employees
59K-100K Annually

BAE Systems, Inc. Logo BAE Systems, Inc.

Data Governance Specialist - Business & Process

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Remote or Hybrid
Falls Church, VA, USA
40000 Employees
118K-201K Annually

Similar Companies Hiring

NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account