Cyber Security Engineer Job at ManTech, Clarksburg, WV

eUx4TVdDK3p0bnp6Y1RLcE5kdUVUcWF6SlE9PQ==
  • ManTech
  • Clarksburg, WV

Job Description

ManTech seeks a highly skilled and knowledgeable Senior Cybersecurity Engineer to support a 24x7x365 Watch Floor team and safeguard the confidentiality, integrity, and availability of an organizations information assets. This position is located on customer site in Huntsville, AL or Clarksburg, WV.

Responsibilities include but are not limited to:

*

Develop, upgrade, and enhance the enterprise Security Information and Event Monitoring (SIEM) strategy and tool implementation via Splunk, design data flow diagrams, and alert feed architectures to ensure seamless alert integration

*

Develop and maintain SIEM architecture including data sources, log management, and alerting mechanisms

*

Configure tools, settings, alerts, and notifications to improve the enterprise security and resilience capabilities, including implementation of Security Orchestration and Automation for Response (SOAR) and Endpoint Detection and Response (EDR) capabilities

*

Develop content for rule implementation on network border devices (firewalls, routers, switches, IDS/IPS, Taclanes, etc.)

*

Monitor security events and alerts and conduct detailed analysis to identify potential security incidents

*

Participates in response activities to all major enterprise outages. Provide technical guidance and support to junior analysts and other team members. Stay current with the latest SIEM technologies, cyber threats, and best practices

*

Work and collaborate with incident response teams to investigate and remediate security incidents.

Minimum Qualifications:

*

Bachelors degree, preferably in an IT-related or cybersecurity discipline.

*

10 years of IT-related experience

*

3 years of hands-on experience with Splunk

*

2 years of hands-on experience with Crowdstrike EDR or Palto Alto XDR

*

Experience in developing and tuning SIEM and EDR use cases, correlation rules, and alerts

*

Strong understanding of network protocols, system logs, and security event correlation

*

Experience working with incident response teams for triaging and analysis

Preferred Qualifications:

*

5 years of experience in cybersecurity

*

Experience using Microsoft Sentinel

*

Preferred Certifications:

*

GIAC Continuous Monitoring Certification (GMON)

*

GIAC Certified Incident Handler (GCIH)

*

GIAC Certified Forensic Analyst (GCFA)

*

GIAC Certified Intrusion Analyst (GCIA)

*

GIAC Network Forensic Analyst (GNFA)

*

GIAC Cloud Threat Detection (GCTD)

*

GIAC Cloud Forensics Responder (GCFR)

Security Clearance Requirements:

*

Must possess active Top Secret security clearance with SCI eligibility

Physical Requirements:

*

Must be able to remain in a stationary position 50%

*

Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer

*

The person in this position frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.

Job Tags

Similar Jobs

CoreAi Consulting

Senior Cloud & DevOps Engineer Job at CoreAi Consulting

 ...Requirements: ~10+ years of experience working as an engineer, preferably in a mix of fast-paced large corporate environments ~ You...  ...architecture You have strong expertise with the following: Cloud Infrastructure, preferably AWS (EC2, ELB, S3, etc) Monitoring... 

Ascendion

Remote Associate Attorney - Insurance Coverage Job at Ascendion

 ...steadily over the last 10 years; we have over 12 attorneys with plans to add another 4 over the next few months. We specialize in insurance coverage, general insurance defense, commercial litigation, and business litigation. Responsibilities: Analyze insurance policies... 

HireTalent - Staffing & Recruiting Firm

Medical Billing Specialist/ Insurance Collector Job at HireTalent - Staffing & Recruiting Firm

 ...Job Title: Medical Billing Specialist/ Insurance Collector Location: Livermore, CA- 94550 Duration: 1-year contract, fully onsite Duties and responsibilities: The client is hiring a Medical Insurance Collector in Livermore, CA . The role involves managing... 

Cognizant

Cisco Voice engineer Job at Cognizant

 ...sponsorship, now or at any time in the future * Job Title: Cisco Voice Engineer Location: Winston Salem, NC. Job Summary...  .... Relevant Cisco certifications (e.g., CCNP Collaboration or CCIE Collaboration) preferred. Skills Experience in supporting... 

Confidential

Weekend Team Lead Job at Confidential

 ...natural leader with a knack for coordination, meeting deadlines and a passion for delivering exceptional service? Were looking for a Weekend Team Lead to oversee our dispatchers, customer service representatives, and booking jobs during our weekend operations. This is...