Job Description
-
Plan, implement, monitor, and maintain on-premises, virtual, cloud, and hybrid network services and systems supporting mission-essential operations.
-
Configure and maintain systems in accordance with organizational security policies and procedures, including user account management, system configuration, backup, and recovery.
-
Develop and harden secure infrastructure solutions and implement data protection, encryption, and identity and access management controls to safeguard sensitive information.
-
Review, implement, and maintain NIST SP 800-53 security controls and System Security Plans (SSPs) in support of the Authorization to Operate (ATO) process.
-
Identify system vulnerabilities, assess security risks, and coordinate remediation activities to reduce exposure to threats.
-
Collaborate with development, infrastructure, and compliance teams to apply secure design principles and develop required security documentation, policies, procedures, and control evidence.
-
Support security audits, penetration testing, incident response activities, and ongoing compliance with organizational security and privacy requirements.
-
Eligibility requirements: U.S. citizenship is required for this position under applicable federal contract requirements. Candidate must also be able to obtain and maintain a Secret security clearance as required for the role.
-
Bachelor’s or Master’s degree in Cybersecurity, Information Systems, or a related field.
-
5+ years of cybersecurity engineering experience within federal, military, or large enterprise environments.
-
Familiarity with security and compliance frameworks and standards such as NIST SP 800-53, CNSSI, and SOC 2.
-
Experience with system hardening, network security, encryption, vulnerability scanning and remediation, incident response, and log aggregation and correlation.
-
Experience implementing and managing identity and access management (IAM) controls, including role-based, attribute-based, and federated access models, with an emphasis on least-privilege access and secure authorization.
-
Experience securing cloud environments such as AWS, Azure, or GCP and working with security technologies and methodologies including SIEM, XDR, SAST/DAST, STIGs, and SCAP
-
One or more relevant security certifications, such as CCNA Security, Security+ CE, or CISSP.
-
Familiarity with federal executive branch and military security requirements, environments, and IT systems.
-
Strong written and verbal communication skills, including the ability to produce clear, accurate, and audit-ready documentation such as incident reports and test reports.
-
Proficiency with security monitoring, vulnerability management, and endpoint protection tools such as Microsoft Sentinel, Splunk, Tenable/Nessus, CrowdStrike, and Microsoft Defender for Endpoint.
-
Experience securing AI-enabled tools, applications, or systems.
-
Experience coordinating with Information System Security Officers (ISSOs), Information Systems Security Engineers (ISSEs), and federal security teams.