Principal Cyber Investigation Data Scientist
Job Description
Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges-and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day-working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities, and a culture of innovation that embraces diversity, inclusion, flexibility, collaboration, and career growth. If this sounds like the choice you want to make, then choose MITRE-and make a difference with us.
Department Summary:
MITRE's Center for Securing the Homeland (CSH) Law Enforcement and Coast Guard Department is looking for a Principal Cyber Investigative Specialist to work alongside a multi-domain team of developers, analysts, and investigators to enhance the security and safety of our nation and to support the homeland security mission. The Cyber-crime investigative team is made up of driven, highly agile individuals, who focus on applying and creating a diverse set of skills and technologies to solve a wide variety of intelligence and operational challenges across Federal, State and Local Law Enforcement in support of conventional and Cybercrime investigations. Our team is made up of individuals who enjoy analyzing problems and using their experience to support our sponsors' operational missions through dynamic investigative approaches.
The selected candidate will be expected to help build sustainable relationships and partnerships with our law enforcement sponsors, representing department and program leadership to assist in managing a growing diverse work program include technology topics associated with surveillance, all-source intelligence, cybercrime investigations, enforcement operations, information sharing, and privacy. They will be responsible for identifying gaps and bringing MITRE research and platforms to bear, ensuring solutions offered by the projects will have the greatest technical impact on the Sponsor's most difficult problems.
Roles and Responsibilities:
- Provide advanced expertise in cyber technical intelligence or investigative operations.
- Provide leadership and strategic direction to project staff in operational specializations.
- Contribute to cyber-criminal targeting and attribution processes.
- Perform analysis of pcap data and network traffic manipulation.
- Write and use Python for data processing and analysis.
- Ability to develop other technical solutions, and lead teams developing such, to further cyber investigative goals.
- Maintain awareness of ongoing and anticipated work programs, and their technical work and quality needs.
- Drive technical impact by supporting department leadership, and lead, as needed, department work shaping activities, including engagement planning, staffing needs, and future growth.
- Provide strong thought/technical leadership and actively contribute to the technical work program when applicable.
- Serve as the primary Department leader for local Sponsor engagement.
- Be responsible for identifying opportunities to help the Sponsor(s) with difficult problems and assist in work-shaping existing and new start tasks to address.
- Collaborate with Group Leaders and the Department Manager to help build and maintain a strong work program and technically proficient staff within the department and division.
Minimum Qualifications:
- Typically requires a minimum of 10 years of related experience with a Bachelor's degree; or 8 years and a Master's degree; or a PhD with 5 years' experience; or equivalent combination of related education and work experience.
- Must be able to obtain and maintain a DOD Secret clearance and DHS Fitness with specific DHS component agency suitability.
- Ability to work on site and interface positively with sponsors at all levels. Must be a self-starter with excellent communications skills and the ability to positively represent MITRE.
- Ability to travel, as needed - up to 10%
- Excellent writing/editing and oral communications skills. The individual selected for this role will be expected to be able to lead briefings on investigative aspects to sponsor personnel.
- Experience with dark web, Tor, I2P.
- Understanding of and experience with Federal Law Enforcement investigative processes and methods.
Preferred Qualifications:
- Significant experience designing and executing decryption processes to maximize success against highly advanced adversaries.
- Former law enforcement in a unit or role performing cyber investigations.
- Experience conducting penetration testing, threat hunting, adversary emulation, and other operations that provide insight into an attacker's methodology.
- Experience with the role of virtual currency in cyber investigations, how it is used by malicious actors, and processes involved in the analyzing activity from an investigator's perspective.
- Expertise administering Linux servers and services using the command line.
- Development, management, and administration of database technologies in Linux such as MySQL and Postgres
- Ability to conduct static/dynamic malware analysis.
This requisition requires the candidate to have a minimum of the following clearance(s):
Fitness - DHS
This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s):
Secret
Work Location Type:
Hybrid
Subject to all federal and state laws, rules and regulations, MITRE requires all employees to be fully vaccinated against COVID-19. Newly hired employees must be fully vaccinated prior to their employment start date. MITRE will provide reasonable accommodation to individuals who are legally entitled to an exemption under applicable laws so long as it does not create an undue hardship for MITRE and/or does not pose a direct threat to the health or safety of the employee or others in the workplace.
MITRE is proud to be an equal opportunity employer. MITRE recruits, employs, trains, compensates, and promotes regardless of age; ancestry; color; family medical or genetic information; gender identity and expression; marital, military, or veteran status; national and ethnic origin; physical or mental disability; political affiliation; pregnancy; race; religion; sex; sexual orientation; and any other protected characteristics. For further information please visit the Equal Employment Opportunity Commission website EEO is the Law Poster and Pay Transparency .
MITRE intends to maintain a website that is fully accessible to all individuals. If you are unable to search or apply for jobs and would like to request a reasonable accommodation for any part of MITRE's employment process, please contact MITRE's Recruiting Help Line at 703-983-8226 or email at [email protected].
Copyright © 1997-2023, The MITRE Corporation. All rights reserved. MITRE is a registered trademark of The MITRE Corporation. Material on this site may be copied and distributed with permission only.
Date Posted
03/18/2023
Views
11
Positive
Subjectivity Score: 0.9
Similar Jobs
Sentinel Principal / Sr Principal Cyber Software Engineer 13023 - Northrop Grumman
Views in the last 30 days - 0
View Details