IT Security Engineer
Job Description
cyber technology innovations is seeking an IT Security Engineer in Washington, DC onsite to lead security operations, threat monitoring, and incident response while collaborating with the CISO and Privacy Officer to shape cybersecurity and privacy measures.
Responsibilities
- Apply information security principles and guidelines including NIST, FISMA, CISA, and federal directives to conduct ongoing assessments of installed systems and networks, recommending corrective actions.
- Perform systems engineering and maintenance in alignment with established standards.
- Leverage Networking Technologies such as LAN, MS Azure, and wireless management to implement and troubleshoot security solutions.
- Develop and mature the agency's security operations by evaluating current strategies and aligning with industry best practices.
- Ensure proper configuration and daily operation of security tooling, including SIEM integration, Syslog, Network Detection and Response (NDR), Endpoint Detection and Response (EDR), firewalls, M365 Cloud security, Defender for Cloud, and Continuous Diagnostics & Mitigation (CDM) capabilities.
- In collaboration with the CISO and Privacy Officer, craft plans, techniques, and measurable objectives to strengthen cybersecurity and privacy measures in support of agency goals for protecting sensitive information.
- Collaborate with other teams to integrate applications and IT services, ensuring security requirements are met.
- Maintain threat awareness and monitor agency information systems for exploits and suspicious activity; analyze aggregated logs and conduct threat hunting.
- Develop Security Orchestration and Automation capabilities.
- Adhere to Continuous Monitoring practices to evaluate control effectiveness and conduct proactive threat hunting to safeguard confidentiality, integrity, and availability.
- Develop detection and response configuration policies to increase automation.
- Execute incident response activities in accordance with the agency incident response plan and develop incident handling procedures.
- Validate that security tool data is captured and retained to support security awareness and investigations.
- Collect security operations performance metrics and prepare threat reports to inform risk management decisions.
- Develop and maintain accurate security operations documentation, including standard operating procedures for recurring tasks.
Requirements
- CISSP certification (Required).
- SIEM tools experience: 5 years (Required).
- Syslog and log collection tools: 5 years (Required).
- Network Detection & Response (NDR) tools: 5 years (Required).
- Endpoint Detection & Response (EDR) tools: 5 years (Required).
- Firewalls and network security gateways: 5 years (Required).
- M365 Cloud Security tools: 3 years (Required).
- Continuous Diagnostics & Mitigation (CDM): 5 years (Required).
- IT security experience: 10 years (Required).
Technologies
- SIEM integration
- Syslog
- Network Detection and Response (NDR)
- Endpoint Detection and Response (EDR)
- Firewalls / Network Security Gateways
- M365 Cloud security
- Defender for Cloud
- CDM (Continuous Diagnostics & Mitigation)
- MS Azure
- LAN
- Wireless management
Benefits
- 401(k)
- 401(k) matching
- Dental insurance
- Health insurance
- Life insurance
- Paid time off
- Professional development assistance
- Tuition reimbursement
- Vision insurance
Experience and Qualifications
- IT security: 10 years
- SIEM Tools: 5 years
- Log collection tools: 5 years
- NDR tools: 5 years
- EDR tools: 5 years
- Firewalls / network security gateways: 5 years
- M365 Cloud Security tools: 5 years
- CDM: 5 years
- Minimum experience: 3 years
- CISSP certification
Licenses and Certifications
CISSP β Required
Location
Washington, DC, onsite (in person)
Salary
USD 109,376.91 - 160,000.00 per year
Similar Jobs
U