Provide enterprise-level security engineering, monitoring, incident response, vulnerability management, and compliance support across cloud, network, and endpoint environments.
Design, implement, and maintain enterprise cybersecurity controls.
Support Identity and Access Management (IAM) initiatives including RBAC, MFA, and privileged access controls.
Monitor, investigate, and respond to security incidents and alerts.
Conduct vulnerability assessments and coordinate remediation efforts.
Support security monitoring through SIEM, EDR, and XDR technologies.
Secure cloud environments including AWS and Azure platforms.
Perform incident response, root cause analysis, and security investigations.
Support continuous monitoring and Zero Trust security initiatives.
Develop and maintain security documentation, procedures, and compliance artifacts.
Collaborate with network, cloud, application development, and DevSecOps teams to strengthen organizational security posture.
Support audit readiness and federal cybersecurity compliance activities.
Requirements
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience)
5+ years of cybersecurity engineering or security operations experience
Experience with SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, or similar tools
Experience with EDR/XDR technologies including Microsoft Defender, CrowdStrike, SentinelOne, or equivalent
Experience supporting IAM solutions, RBAC, and MFA implementations
Experience conducting vulnerability assessments and remediation activities
Experience supporting incident response and security investigations
Knowledge of Zero Trust architecture principles
Familiarity with AWS and Azure security controls
Ability to obtain and maintain a Public Trust clearance
Preferred Qualifications
Security+, CySA+, CASP+, CISSP, GIAC, or similar certifications
Experience supporting federal government environments
Experience with NIST 800-53, RMF, FISMA, and related federal cybersecurity frameworks
Experience with vulnerability management platforms such as Tenable, Qualys, or Rapid7