Job Details
Key Tasks:
* Lead Cybersecurity Engineer will design robust cybersecurity measures and access management solutions to protect the organizations systems and data
* Lead the implementation operationalization or optimization of projects in support of the cybersecurity program
* Advise on a wide range of engineering and operational security issues (i.e. security detection and response procedures ensuring that the organization can swiftly detect and respond to potential threats); By establishing clear playbooks for incident response you will help the team efficiently address vulnerabilities and mitigate risks in real time
* Assist the Security Operations team in responding to security incidents ensuring a swift and effective resolution
* Routinely collaborate with IT and business units to manage access control processes and application integration; Works with business to ensure access control is integrated with business requirements for any new application
* As a Lead Cybersecurity Engineer you will work closely with the GRC team on the development and implementation of standards operating procedures and controls; You will also coordinate and document exemptions to established security controls
* Assists with external information security audits for regulatory compliance and assessments such as penetration testing
REQUIREMENTS:
* 3 years in a role performing Threat Detection Incident Response Threat Intelligence or Abuse Mitigation
* 3 years in implementing and supporting Identity and Access management products and processes
* 10 years of experience in implementing and supporting cybersecurity programs
* Experience operating within NIST 800171 NIST 80053 CMMC or equivalent cybersecurity frameworks
* Experience with data security solutions such as database activity monitoring encryption obfuscation and/or tokenization
* Proficient understanding of Information technology systems and processes network infrastructure data architecture data processes and protocols
* Excellent written communication skills; Must be able to clearly communicate risks at both strategic and tactical level
* Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information
security,abuse mitigation,threat intelligence,encryption,threat detection,nist 800-171,data,cmmc,nist,cybersecurity,obfuscation,data security solutions,access control,access,data processes,incident response,data architecture,tokenization,nist 800-53,identity and access management,protocols,information technology systems,network infrastructure,database activity monitoring,application