Lead Cyber Security Engineer

22nd Century Technologies, Inc.
Washington, DC, United States
15 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows CompTIA Security+ Cyber Security Information Systems System Configuration Monitoring of Systems McAfee VirusScan Windows PowerShell Security Information and Event Management Software Vulnerability Management Scripting Malware
+2 more
Information Technology Vulnerability Analysis

Job description

We are seeking an experienced Cyber Security Lead / Subject Matter Expert (SME) to support the National Defense University (NDU) at Fort McNair, Washington, DC. This is a hands-on technical leadership role responsible for securing enterprise endpoints, leading endpoint security initiatives, and supporting the organization’s cybersecurity operations. The ideal candidate is an expert in Trellix Endpoint Security (formerly McAfee/HBSS) and has extensive experience protecting enterprise environments within DoD or other federal agencies.

This position requires a proactive cybersecurity professional who can provide technical leadership, implement security best practices, and collaborate with stakeholders to strengthen the organization’s overall security posture., Serve as the technical lead and Subject Matter Expert (SME) for enterprise endpoint security. Administer, maintain, and optimize Trellix Endpoint Security and Host-Based Security System (HBSS) solutions. Monitor endpoint security posture and respond to emerging threats and vulnerabilities. Lead deployment, configuration, and lifecycle management of endpoint protection technologies. Develop and implement endpoint security policies, standards, and procedures. Conduct security assessments, vulnerability analysis, and remediation activities. Investigate security incidents and coordinate response efforts related to endpoint threats. Collaborate with system administrators, network engineers, and security teams to ensure secure system configurations. Support compliance with DoD cybersecurity policies, DISA Security Technical Implementation Guides (STIGs), RMF, and applicable security requirements. Provide technical guidance and mentorship to cybersecurity team members. Prepare technical documentation, reports, and security recommendations for leadership.

Requirements

Active Top Secret Security Clearance (required). Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Information Systems, Engineering, or another technical discipline. 8+ years of cybersecurity experience supporting enterprise environments. Demonstrated expertise administering and supporting: Trellix Endpoint Security Host-Based Security System (HBSS) Strong knowledge of: Endpoint Detection and Response (EDR) Malware prevention and threat mitigation Endpoint hardening Vulnerability management Security incident response Experience with Windows enterprise environments and endpoint security administration. Working knowledge of DoD cybersecurity frameworks, including RMF and STIG compliance. Excellent analytical, troubleshooting, and problem-solving skills. Strong verbal and written communication skills. Preferred Qualifications Experience supporting DoD or federal government environments. Trellix (McAfee) certifications or equivalent endpoint security certifications. Security+, CASP+, CISSP, or other industry-recognized cybersecurity certifications. Experience with SIEM platforms and enterprise security monitoring tools. Familiarity with PowerShell or other scripting languages for automation. Experience supporting enterprise vulnerability management programs.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

Videos

See all

Related articles

See all