Base Career helps you apply smarter for this job.
Key skills for this role
The Cybersecurity Operations Engineer serves as a senior-level technical resource supporting cybersecurity operations, continuous monitoring, systems engineering, and incident response activities within a Federal Government environment.
This position provides hands-on cybersecurity engineering and operational support within hybrid on-premises and Microsoft Azure environments.
The Cybersecurity Operations Engineer will perform security assessments, support ongoing security operations, monitor for suspicious activities, develop automation capabilities, and assist with incident response and systems security improvements with minimal supervision and guidance.
Position supports a long-term Federal IT and Cybersecurity Services effort.
Employment is contingent upon contract award.
Key Responsibilities and Duties:
• Apply knowledge and skills of information systems security principles, NIST guidelines, FISMA, CISA directives, and federal cybersecurity requirements to conduct ongoing security assessments of installed systems and networks and recommend corrective actions
• Perform systems engineering and maintenance activities according to established standards
• Apply knowledge of networking technologies including LAN, Microsoft Azure, and wireless management in security solutions implementation and troubleshooting
• Develop security operations capabilities by evaluating current strategies and aligning operations with best practices
• Ensure effective configuration and daily operation of cybersecurity tools including: o Security Information and Event Management (SIEM) o Syslog o Network Detection and Response (NDR) o Endpoint Detection and Response (EDR) o Firewalls o Microsoft 365 Cloud Security o Defender for Cloud o Continuous Diagnostics and Mitigation (CDM) capabilities
• Collaborate with the CISO and Privacy Officer to develop plans, techniques, and measurable objectives to improve cybersecurity and privacy measures protecting sensitive information
• Collaborate with other teams to ensure applications and IT services meet security requirements
• Maintain threat awareness and monitor information systems for exploits and suspicious activities
• Analyze aggregated logs from security tools and perform regular threat hunting activities
• Develop Security Orchestration and Automation capabilities
• Adhere to Continuous Monitoring practices to evaluate the effectiveness of implemented security controls and execute proactive threat hunting activities
• Develop detection and response configuration policies to increase automation
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
Philadelphia, USA
Huntsville, USA
Huntsville, USA
Huntsville, USA
Dahlgren, USA
Dahlgren, USA
Dahlgren, USA
Huntsville, USA
• Execute Incident Response activities according to the incident response plan
• Develop incident handling procedures
• Validate that sufficient and relevant information is captured and retained from security tools to support actionable security awareness and incident investigations
• Collect security operations performance and security posture management metrics and prepare threat reports to support risk management decisions
• Develop and maintain accurate security operations documentation including standard operating procedures for recurring tasks Required Experience and Qualifications:
• Minimum six (6) years of continuous experience performing senior-level cybersecurity operations or cybersecurity engineering activities
• Experience supporting: o Cisco Networking o Cisco Firewalls o Microsoft Cloud Technologies (IaaS, PaaS, SaaS) o Microsoft Entra ID o Multifactor Authentication (MFA) o Mobile iOS Device Management o Linux Operating System Administration o Endpoint Detection and Response (EDR) o Network Detection and Response (NDR) o Patch Management o PowerShell o Log Management and Syslog o Security Information and Event Management (SIEM) o Security Orchestration, Automation, and Response (SOAR) o Disaster Recovery
• Demonstrated hands-on experience performing required cybersecurity operational tasks
• Relevant industry-recognized cybersecurity certifications preferred Security Requirements (Mandatory):
• Must successfully complete applicable background investigations
• Must obtain and maintain a Public Trust clearance
• Must execute a Non-Disclosure Agreement (NDA)
• Must comply with all customer security policies, procedures, and Rules of Behavior
• Must use approved Government Furnished Equipment (GFE) when accessing customer environments
• Must obtain a Government-issued PIV Card Candidates who do not meet the full security requirements listed below will not be considered.
Clearance: Ability to obtain Public Trust Clearance Location: On-site (Washington, DC)
The Cybersecurity Operations Engineer serves as a senior-level technical resource supporting cybersecurity operations, continuous monitoring, systems engineering, and incident response activities within a Federal Government environment.
This position provides hands-on cybersecurity engineering and operational support within hybrid on-premises and Microsoft Azure environments.
The Cybersecurity Operations Engineer will perform security assessments, support ongoing security operations, monitor for suspicious activities, develop automation capabilities, and assist with incident response and systems security improvements with minimal supervision and guidance.
Position supports a long-term Federal IT and Cybersecurity Services effort.
Employment is contingent upon contract award.
Key Responsibilities and Duties:
include, but are not limited to:
Provides cybersecurity, compliance, and IT systems engineering services.
Visit company websiteJobs and hiring trendsFull-time
Senior · 6+ years experience
Onsite
Apply faster on company sites with our extension.