Overview

Cybersecurity Operations Engineer — Senior Level Jobs in Washington DC-Baltimore Area at The Simple Vue

Title: Cybersecurity Operations Engineer — Senior Level

Company: The Simple Vue

Location: Washington DC-Baltimore Area

Security Clearance Requirements:

Public Trust clearance required. Must be eligible to obtain and maintain a Public Trust clearance prior to onboarding.

Business (Not Personal) References:

Will be required for positions listed in your resume. Provide Name, Title, Email, and Phone for each reference.

Overview

The Cybersecurity Operations Engineer will perform senior-level cybersecurity operations for a Federal Agency Client, a small federal regulatory agency. This position requires a minimum of six continuous years of senior-level experience and operates with minimal supervision. The engineer will maintain and improve agency cybersecurity operations capabilities, execute continuous monitoring activities, perform threat hunting, and lead incident response in a hybrid on-premises and Microsoft Azure cloud environment governed by NIST, FISMA, and CISA federal directives.

Key Responsibilities

•      Apply knowledge of information systems security principles, NIST guidelines, FISMA, and CISA directives to conduct ongoing security assessments of installed systems and networks and recommend corrective actions.

•      Ensure effective configuration and daily operations of cybersecurity tools including SIEM integration, Syslog, Network Detection and Response (NDR), Endpoint Detection and Response (EDR), Firewalls, M365 Defender for Cloud, and CDM capabilities.

•      Develop Security Orchestration and Automation (SOAR) capabilities and detection and response configuration policies to increase automation.

•      Maintain threat awareness and monitor agency information systems for exploits and suspicious activity; analyze aggregated logs from security tools and perform regular threat hunting activities.

•      Execute Incident Response activities in accordance with the agency incident response plan; develop and maintain incident handling procedures.

•      Adhere to Continuous Monitoring practices to evaluate the effectiveness of implemented security controls and ensure confidentiality, integrity, and availability of agency information systems.

•      Collaborate with the CISO and Privacy Officer to develop plans, techniques, and measurable objectives to improve cybersecurity and privacy measures aligned to agency goals.

•      Validate that sufficient and relevant information is captured and retained from security tools to support actionable security awareness and incident investigations.

•      Collect security operations performance metrics and prepare agency threat reports to inform risk management decisions.

•      Develop and maintain accurate security operations documentation including standard operating procedures for recurring tasks.

•      Apply knowledge of networking technologies including LAN, MS Azure, and wireless management in security solutions implementation and troubleshooting.

•      Perform systems engineering and maintenance activities according to established standards.

Required Qualifications

•      Minimum six (6) continuous years of senior-level experience performing cybersecurity operations in a federal environment.

•      Demonstrated hands-on experience with SIEM platforms — configuration, tuning, daily log analysis, and alerting.

•      Demonstrated hands-on experience with SOAR development and automation policy configuration.

•      Demonstrated hands-on experience with NDR and EDR tools — deployment, configuration, and operational use.

•      Demonstrated hands-on experience with Microsoft M365 Defender for Cloud and Azure security posture management.

•      Demonstrated experience with CDM Program tools for continuous monitoring and federal reporting.

•      Demonstrated experience with Cisco networking and firewall technologies in a security operations context.

•      Demonstrated experience applying NIST SP 800-53, FISMA, and CISA binding operational directives to federal system security assessments.

•      Demonstrated experience executing Incident Response activities in a federal environment.

•      Experience developing and documenting standard operating procedures for security operations.

•      Demonstrated experience performing proactive threat hunting activities.

•      Ability to operate with minimal supervision in a small agency federal environment.

Education and Certifications

•      Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent field; relevant IT certifications may substitute for a formal college degree per contract requirements.

•      CISSP, CISM, or CASP — required or highly preferred.

•      GIAC certification (GCIA, GCIH, or equivalent) — preferred.

•      CompTIA Security+ — acceptable as supporting certification.

•      100% hands-on experience in performing required cybersecurity tasks is mandatory and may not be substituted with certifications alone.

Work Authorization

•      Must be authorized to work in the United States.

•      Must be eligible to obtain and maintain a Public Trust clearance prior to onboarding.

•      Must be willing to execute a Non-Disclosure Agreement (NDA) and acknowledge agency Rules of Behavior.

•      Must obtain a PIV Card issued by the Government prior to system access.

•      Personal or non-agency equipment may not be used to access the agency environment.

Upload your CV/resume or any other relevant file. Max. file size: 800 MB.