WS
Cybersecurity Operations Engineer (Senior Level)
Wits Solutions Inc
Washington · On-site Full-time Senior Today
About the role
Wits Solutions Inc. (WITS) is a SBA certified Small Disadvantaged Business with headquarters in the metropolitan Washington D.C. area. WITS has been providing best-in-class solutions in professional IT and administrative consulting to various Federal, State, Local and commercial customers. At WITS, we believe in working not for our clients but with them. This is why right from the beginning; our analysts and solution-builders work closely with our clients to ensure that the project outcomes continue to deliver value long into the future.
EDUCATION/CERTIFICATIONS MANDATORY
- Bachelor’s degree in IT, Cybersecurity, or related field (or equivalent experience)
- One or more certifications:
- CISSP (preferred)
- CEH / CySA+ / Security+
- Microsoft Azure Security Engineer (AZ-500)
Clearance
- Public Trust
WORK EXPERIENCE MANDATORY
- Minimum 6+ years in cybersecurity operations
- Experience in federal environments (NIST, FISMA)
- Hands-on experience with SIEM, SOAR, EDR, NDR tools
- Strong experience with Microsoft Azure & M365 security
ROLES AND RESPONSIBILITIES
- Apply knowledge and skills of information systems security principles, NIST guidelines, FISMA, CISA, and federal directives, to conduct ongoing security assessments of installed systems and networks with a view to recommend corrective actions.
- Perform systems engineering and maintenance activities according to established standards.
- Apply knowledge of Networking Technologies including LAN, MS Azure, and Wireless management in security solutions implementation and troubleshooting.
- Develop NIGC security operations capabilities by evaluating current strategies and pursuing alignment with best practices.
- Ensure the effective configuration and daily operations of tools that support the NIGC cybersecurity strategy. Such tools include SEIM integration, Syslog, Network Detection and Response (NDR), Endpoint Detection and Response (EDR), Firewalls, M365 Cloud security, Defender for Cloud, and Continuous Diagnostics & Mitigation (CDM) capabilities.
- In collaboration with CISO and Privacy Officer develop plans, techniques, and measurable objectives to improve the development of cybersecurity and privacy measures that meet NIGC goals for protecting sensitive information.
- Collaborate with other teams on the integration of NIGC Applications and IT services to consider security implications and ensure that NIGC security requirements are met.
- Maintain threat awareness and monitor NIGC information systems for exploits and any suspicious activities. Analyze aggregated logs from security tools and perform regular threat hunting activities.
- Develop Security Orchestration and Automation capabilities.
- Adhere to Continuous Monitoring practices to evaluate the effectiveness of implemented security controls and execute proactive threat hunting activities to ensure confidentiality, integrity, and availability of NIGC information systems.
- Develop detection and response configuration policies to increase automation.
- Execute Incident Response activities to include all associated actions according to the NIGC incident response plan.
- Develop Incident handling procedures.
- Validate that sufficient and relevant information is captured and retained from security tools to support actionable security awareness and incident investigations.
- Collect security operations performance and NIGC security posture management metrics and prepare NIGC threat reports to inform risk management decisions.
- Develop and maintain accurate security operations documentation including the preparation of standard operating procedures for recurring tasks.
WORK EXPERIENCE NICE TO HAVE
- NIGC Experience
“Equal Opportunity Employer Veteran/Disabled”
Skills
AzureAzure & M365 securityCEHCISSPCDMCISADefender for CloudEDRFISMAFirewallsInformation systems securityITLANMicrosoft AzureM365NDRNISTNetworking TechnologiesPublic TrustSecurity+Security assessmentsSecurity operationsSecurity solutionsSEIMSOARSyslogThreat huntingWireless managementCybersecurityCybersecurity strategyInformation securityInformation systemsPrivacyRisk managementSystems engineering
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free