Job Details
Job Location
King George, VA
Position Type
Full Time
Job Category
Information Technology
Overview
SCCI is seeking a Senior Cybersecurity Engineer to join our team! The Senior Cybersecurity Engineer is a key member of the Information Technology team, responsible for designing, implementing, and managing advanced security technologies and practices to protect SCCI's data and assets. This role requires astrong technical foundation, a deep understanding of current threat landscapes, andthe ability to quickly respond to security incidents to enhance our overall securityposture. The Senior Cybersecurity Engineer also provides guidance to junior teammembers and collaborates with other departments and personnel to ensurecybersecurity is properly integrated across all IT and business functions. The successful Candidate will report directly to the Director of IT and serve as senior manager on the ITstaff, working closely with the Systems Engineer, Network Engineer, ISSO, ISSM, andHelp Desk Supervisor to provide secure integrated solutions. This position is located at our operations facility in Dahlgren, VA .
SCCI offers a comprehensive and competitive benefits package including Health, Dental, Vision, Life and Disability benefits, 401k with Company Match, time off consisting of 2 weeks of paid vacation, 48 hours of sick / personal leave, and 11 paid Holidays.
Responsibilities :
- Security Awareness & Collaboration
Advise Director of IT and company leadership on cybersecurityrequirements, concerns, processes and best practices
Mentor junior security staff and provide technical leadershipAdvise and train technical staff and users in cybersecurity best practicesSecurity Architecture & EngineeringDesign, implement, and manage security solutions (e.g., SIEM, EDR,firewalls, IDS / IPS, IAM, VPN)
Architect secure network, application, and cloud environments
Evaluate and integrate new security technologiesThreat Detection & ResponseWork with external security service providers to coordinate monitoringdetection, threat hunting, and incident response activities
Analyze logs and alerts to identify anomalies or potential threatsManage incident response lifecycleVulnerability ManagementSupervise the vulnerability management program
Coordinate and validate regular vulnerability scans and penetration testsPrioritize vulnerability remediation efforts across endpoints, networks, andapplicationsWork with IT team to validate and apply patchesGovernance, Risk & ComplianceDevelop and maintain security policies, procedures, and standards
Ensure compliance with relevant standards, directives and regulationsConduct risk assessments and support audit activitiesRemain abreast of emerging technologies, cyber threats and securitytoolsAdvise ISSO and ISSM on issues related to securing and monitoringclassified DoD networksProject ManagementLead multiple cybersecurity initiatives
Coordinate with IT personnel and stakeholders to gather requirements,refine objectives, engineer solutions, and develop required timelines,milestones and cost projectionsSet goals and expectations for projects and team membersTake ownership of initiatives and see them through completionEssential Skills and Experience :
Must be a U.S. citizen and have an active Secret Security ClearanceBachelor's (BS) degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)Eight (8) - ten (10)+ years of hands-on experience in cybersecurity roles, with at least 2 years in a senior or lead capacityStrong understanding of network protocols, security architecture, and security practicesExperience in a Windows-based enterprise IT environment (preferably GCC High, Azure AD, Intune, and AVD)Proficient in scripting and automation (e.g., Python, PowerShell, Bash)Experience with cloud platforms (AWS and Azure) and their security servicesIn-depth knowledge of modern threat landscapes, vulnerabilities, mitigation techniques, and security tools and processesAbility to lead teams and manage projects to achieve security goals and objectivesAbility to write clear and concise cybersecurity guidance, procedures and documentationPreferred Skills and Experience :
DoD security practices and regulationsMigration from on-prem architecture to cloudVirtualization (preferably Hyper-V)Familiarity with open-source security toolsExperience with Fortinet security productsAWS / Azure Security CertificationsCISSP (Certified Information Systems Security Professional)OSCP (Offensive Security Certified Professional)GIAC (e.g., GCIH, GCIA, GCED, GPEN)CEH (Certified Ethical Hacker)SecuritySCCI is committed to providing a comprehensive and competitive benefits package to meet the needs of employees and their families. EOE of Veterans and Disabilities.