Role OverviewThe Lead Cybersecurity Engineer will serve as the technical lead for cybersecurity engineering activities supporting NIH CIT enterprise services, including network, email, endpoint, server, cloud, and related infrastructure environments. The role will involve architecting, deploying, configuring, and operating cybersecurity tools and technologies used to inspect and protect network traffic, email traffic, endpoints, workstations, and servers.
What You Will Do
The Lead Cybersecurity Engineer will lead security engineering activities involving threat detection, event analysis, log management, vulnerability identification, remediation validation, compromise assessments, and continuous monitoring. The role will also involve providing subject-matter expertise in security industry standards, leading practices, and control implementation, with particular emphasis on compromise assessment, threat detection, endpoint protection, and network security.
Why It Might Be a Fit
The Lead Cybersecurity Engineer will be responsible for consulting directly with Government stakeholders, system owners, technical teams, and program leadership on complex security-engineering issues, risk decisions, remediation strategies, and technical implementation approaches. The role will also involve producing clear, accurate technical reports, dashboards, briefings, findings, risk assessments, remediation-status reports, and other artifacts that communicate progress and cybersecurity posture to both technical and executive audiences.
Requirements
- Minimum of three (3) to five (5) years of progressively responsible cybersecurity engineering, network security, information-security operations, or related technical experience.
- Security engineering for enterprise network, email, endpoint, workstation, server, and/or cloud environments.
- Architecting, deploying, configuring, and operating cybersecurity tools used for network inspection, email security, endpoint security, vulnerability management, security monitoring, or log analysis.
- Vulnerability management, continuous monitoring, compromise assessments, security-control assessments, penetration testing, or remediation validation.
- Security platforms such as Tenable, Splunk, BigFix, or functionally comparable technologies.
- Network engineering and cybersecurity concepts, including traffic analysis, security logging, intrusion detection/prevention, endpoint protection, and system hardening.
- Preparing technical reports and customer-facing briefings that communicate security findings, risks, remediation progress, and recommended actions.
- Consulting with customers and technical stakeholders on security-engineering, compliance, risk-management, and remediation issues.
- Applying federal cybersecurity requirements, including familiarity with HHS, NIH, DHS, NIST, FISMA, RMF, and continuous-monitoring principles
Benefits
- 3 weeks of Personal Leave your first year
- 11 paid Holidays each year
- 5 days of Flexible Time Off each year for approved training or certifications (self-study is ineligible)
- 401(k) company match at 50% up to 10% of your salary
- Medical, Dental and Vision Insurance
- Life and Disability Insurance
- Public Transportation Subsidies
- Certifications and Training Allowance - Up to $5,000/year!
]]>