Senior CyberSecurity Defense Engineer

TECHEAD
To Apply for this Job Click Here
Always Connecting, Always Evolving.
TECHEAD is seeking qualified applicants for the following Contract to Hire position – Senior CyberSecurity Defense Engineer / Suffolk VA – (JOB-21496). If you are looking for a new opportunity and this position looks to be a fit, please apply to see the TECHEAD difference that has made us successful for 30+ years!
You can find more about our team and values by checking us out at TECHEAD.com or on Glassdoor
Job Description:
Senior Cybersecurity Defense Engineer
Clearance Level: TS/SCI
We are seeking a highly experienced Senior Cybersecurity Defense Engineer to serve as the primary Subject Matter Expert (SME) for Continuous Network Defense cybersecurity tools, ensuring compliance with all DoD directives. This role involves leading vulnerability management, endpoint security, network monitoring, and threat mitigation efforts.
Key Responsibilities:
- Vulnerability Management: Utilize Tenable/Nessus for discovery/vulnerability scans, analyze results, and develop mitigation strategies.
- Endpoint Security: Manage Trellix ePO and deploy endpoint products (ENS, PA, DLP) to enforce security policies and respond to threats.
- Network Access Control: Implement and manage ForeScout policies for Comply-To-Connect (C2C) and device compliance.
- External Asset Monitoring: Monitor Cortex Xpanse to identify, assess, and mitigate risks associated with external-facing assets.
- Data Integration & Reporting: Ensure continuous data flow to the DoD’s Continuous Monitoring and Risk Scoring (CMRS) system from tools like Trellix, Tenable, and ForeScout.
- Intrusion Prevention: Configure and deploy security policies on Cisco Firepower Management Console (FMC) for network-level intrusion prevention.
- DNS/DHCP Management: Monitor and validate Infoblox data for anomalies and unauthorized entries.
- Active Directory Security: Implement and utilize AD Audit Engine to detect and investigate malicious activity and potential insider threats.
- Threat Hunting & Analysis: Conduct proactive threat hunts and reconnaissance using network traffic analysis and cybersecurity data to identify IoCs, misconfigurations, and APTs.
Certifications (IAT Level III): One of the following is required:
- CISA
- GSE
- SCNCA
- CISSP (or Associate)
- GCIH
Required Functional Training:
- DISA ACAS Operator Computer Based Training
- Annual Cyber Awareness Training
Required Skills and Experience:
- A Master’s degree in Cybersecurity or a related field, OR 10 years of experience in cybersecurity engineering focused on Government-approved cybersecurity tools.
- At least 5 years of experience in DoD cybersecurity vulnerability detection and response using tools within FISMA compliance.
TECHEAD’s mission is to make our on-site associates successful by placing them in the right environment so they can grow and prosper. How we treat and respond to our clients and employees is a reflection of who we are and makes us stand out from the rest. Keeping our business focused on building and maintaining relationships with our employees and clients is the key to our success. We won’t strive for anything less.
TECHEAD provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
For more information on TECHEAD please visit www.techead.com.
No second parties will be accepted.
To Apply for this Job Click Here
Apply with Github Apply with Linkedin Apply with Indeed
Stack Overflow