IT Security Engineer
Role details
Job location
Tech stack
Job description
The IT Security Engineer is responsible for identifying, remediating, and tracking security vulnerabilities across the organization's systems while also providing day-to-day IT support through ticket resolution. This role is critical to sustaining compliance with CMMC requirements, meeting corporate cybersecurity standards, and improving service delivery across the organization. The ideal candidate will have experience working in defense or aerospace environments and understand the importance of safeguarding sensitive engineering, manufacturing and program data., * Monitor system security alerts and advisories from internal tools and external sources (e.g., CISA, vendors, threat intelligence)
- Conduct vulnerability scanning, assessment, and risk analysis using Tanium
- Support application of patches and updates after proper testing for compatibility
- Remediate vulnerabilities by prioritizing
- Manage and execute enterprise patch management across all endpoints using Tanium and ManageEngine Endpoint Central
- Implement and maintain system configurations aligned with NIST SP 800-171 security controls.
- Support organizational compliance with CMMC Level 2, including audit preparation, documentation, and evidence collection.
- Monitor and report on vulnerability posture, remediation timelines, and patch compliance across all systems
- Maintain detailed documentation for system configurations, imaging standards, patch cycles, and compliance controls.
Requirements
Do you have experience in Windows?, Do you have a Bachelor's degree?, * Bachelors in IT, Computer Science, or related field (or equivalent experience).
- Industry experience 3+ years in IT support/help desk with exposure to vulnerability remediation/patching
- Troubleshooting across Windows, networking, and endpoint security; vulnerability management and patching
- Excellent communication, documentation, and problem-solving.
- Must be authorized to work in the U.S.
- Applicant should be eligible for any required authorizations from the U.S. government.
Preferred Qualifications
- Experience with SIEM tools (e.g., CrowdStrike, Bitsight integration).
- Experience with Tanium and/or ManageEngine Endpoint Central
- Prior exposure in aerospace, defense or government contracting environments
- familiarity with CMMC/NIST 800-171 and corporate security policies.
- Certifications: Network+, Security+, or equivalent.