Onsite | Washington D.C. | 5 Days a Week
US Citizen - Clearable Required (Will be processed for a Public Trust)
Summary
Our client is an employee and Service-Disabled, Veteran-owned Small Business focused on providing niche technical services. They are a team of experienced cybersecurity professionals with a track record of success in the Federal, Commercial, and Academic workspaces. Additionally, our client designs, builds, operates, and secures scalable cloud and IT infrastructures to meet their customers’ near-term needs and fulfill their long-term requirements.
Responsibilities
Our client is looking for a Security Engineer to join their team! This role will support the Security Operations Center (SOC) and play a critical part in securing enterprise systems, networks, and data. The Security Engineer will design, implement, and maintain security tools and infrastructure in alignment with federal cybersecurity frameworks while collaborating with analysts, incident responders, and system administrators to strengthen the agency’s overall security posture.
Design and deploy security infrastructure including firewalls, IDS/IPS, SIEM, EDR, and cloud security tools
Maintain the operation and effectiveness of security tools through regular patching, updates, and troubleshooting
Collaborate with SOC and IT teams to ensure tools are configured and tuned to support threat detection and incident response
Document technical processes, tool configurations, and troubleshooting procedures
Support change control processes by maintaining compliance during security tool updates and modifications
Analyze and utilize log data from various sources (e.g., syslog, Windows Event, JSON) for threat detection use cases
Ensure integration of security tools with enterprise systems and workflows
Requirements
7+ years of experience in a security engineering or cybersecurity operations role
Hands-on expertise with firewalls, VPNs, IDS/IPS, SIEMs, and endpoint security solutions
Strong understanding of log formats and detection techniques
Familiarity with enterprise security architecture and vulnerability management practices
Education/Certification Requirements
Preferred Requirements
Security certifications such as CISSP, CySA+, CASP+, CompTIA Security+, CCSP, CISM, or CEH
Experience working in a SOC or cyber operations environment
Experience administering Tenable solutions (Nessus, Tenable.sc, or Tenable.io) and Elastic Stack SIEM
Familiarity with NIST 800-53 and other federal cybersecurity frameworks
Clearance Requirements
Software Powered by iCIMS
www.icims.com