Cybersecurity Engineer

Mid Ventures Inc.
Washington, United States
25 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Security Configuration Management Cyber Security Identity and Access Management Intrusion Detection and Prevention Role-Based Access Control Zero Trust Network Access Security Information and Event Management Software Vulnerability Management Data Logging
+7 more
Cloud Platform System HybridCloud Information Technology Patch Management CIS Benchmarks Security Orchestration, Automation & Response Vulnerability Analysis

Job description

The Cybersecurity Engineer provides engineering, operational, and advisory support to enhance, secure, and sustain the Congressional Budget Office’s (CBO) enterprise cybersecurity environment. This position is responsible for implementing and maintaining security controls across cloud, network, endpoint, and identity environments, with a focus on Zero Trust Architecture, continuous monitoring, threat detection, vulnerability management, and incident response. The Cybersecurity Engineer supports compliance with federal cybersecurity standards while strengthening the organization’s overall security posture and resilience., Security Engineering & Operations

  • Implement and maintain enterprise security controls aligned with NIST SP 800-53 and NIST SP 800-207 (Zero Trust Architecture).
  • Support enterprise security platforms and services across cloud, on-premises, and hybrid environments.
  • Configure and maintain identity and access management (IAM) solutions, including RBAC, PAM, MFA, and least-privilege access controls.
  • Secure cloud and application environments through configuration management, hardening, and implementation of security best practices.
  • Develop and maintain cybersecurity documentation, security baselines, and standard operating procedures (SOPs).

Threat Detection, Monitoring & Incident Response

  • Configure and maintain centralized logging, monitoring, and audit capabilities integrated with SIEM, EDR/XDR, and cloud security platforms.
  • Monitor and analyze security events, perform incident triage, support investigations, and assist with containment and remediation activities.
  • Conduct root cause analysis (RCA) for security incidents and implement corrective actions.
  • Support continuous security monitoring and threat detection efforts across enterprise environments.
  • Collaborate with network, cloud, and application teams to resolve security issues and improve overall security operations.

Vulnerability Management & Compliance

  • Conduct vulnerability assessments, risk analysis, and security reviews across systems, applications, and infrastructure.
  • Coordinate remediation, patch management, and mitigation activities to reduce risk and maintain compliance.
  • Support audits, assessments, and security authorization activities.
  • Ensure all security changes follow approved change management processes and include appropriate security impact analysis.
  • Maintain documentation and evidence required to support compliance, audit readiness, and operational continuity.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field (or equivalent combination of education and experience).
  • Minimum five (5) years of experience in cybersecurity engineering, security operations, or information assurance.
  • Experience implementing security controls aligned with NIST SP 800-53, NIST RMF, and Zero Trust principles.
  • Experience with IAM technologies, SIEM platforms, EDR/XDR tools, vulnerability management, and incident response.
  • Experience securing cloud environments (AWS, Azure, or hybrid cloud).
  • Strong analytical, troubleshooting, documentation, and communication skills., * Experience supporting federal agencies or highly regulated environments.
  • Experience with Zero Trust Architecture implementations.
  • Knowledge of cloud security, threat detection, and security automation technologies.
  • Familiarity with NIST SP 800-53, NIST SP 800-207, FISMA, and federal compliance requirements.

Preferred Certifications

  • CISSP
  • Security+
  • GIAC Security Certifications (GSEC, GCIA, GCIH)
  • Certified Cloud Security Professional (CCSP)
  • Microsoft, AWS, or Azure Security Certifications

Security Requirements

  • Ability to obtain and maintain all required government security clearances and access authorizations.

Benefits & conditions

We offer great pay, amazing benefits, and our company culture is strong. MicroTech is devoted to people development and providing high achievers opportunities to grow professionally. As an employee, you are surrounded by intelligent, driven colleagues and have the benefit of a culture that is focused on bringing out the best in everyone. Our benefits include:

Insurance (medical, dental vision) Paid Time Off (PTO): 15 days during the first year; 20 days annually after one year of service 401k Plan with Employer Matching Contribution 11 Company-Paid Holidays Tuition Assistance Voluntary Benefit Programs Corporate Discounts

About the company

MicroTech is an award-winning Service-Disabled Veteran-Owned Small Business (SDVOSB) and experienced provider of information technology and communications. MicroTech offers a wide range of professional services focused on providing cutting-edge solutions with the customer at the forefront of every decision we make. Solving complex business challenges is our passion - we provide effective, practical solutions that can increase productivity, and decrease costs.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · WWC 2023

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · WWC 2023

Videos

See all

Related articles

See all