Defensive Cybersecurity Operations Specialist

Mantech International Corporation
Doral, FL, United States
24 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Software System Penetration Testing Microsoft Azure Cloud Computing Security Cyber Security Intrusion Detection Systems Python (Programming Language) Network Security PCI Data Security Standards Windows PowerShell Security Information and Event Management Software Vulnerability Management
+9 more
Scripting Google Cloud IT Architecture Information Technology Cybercrime CIS Benchmarks Cyber Warfare Devsecops Vulnerability Analysis

Job description

  • Develops and implements a comprehensive defensive cybersecurity strategy aligned with industry best practices (e.g., NIST Cybersecurity Framework, CIS Controls). This includes defining security architecture, selecting security tools, and establishing Incident Response Plans.
  • Proactively monitors threat landscapes, analyzes threat intelligence, and conducts threat hunting activities to identify and mitigate potential threats before they can impact the organization. They also oversee the organization’s Security Information and Event Management (SIEM) system and other security monitoring tools.
  • Assists leadership in managing incident response efforts, including containment, eradication, recovery, and post-incident analysis. This includes developing and maintaining incident response playbooks. They also establish and manage a thorough vulnerability management program, including regular vulnerability scanning, penetration testing, and remediation tracking.
  • Contributes to the design and implementation of secure IT architectures and evaluates and recommends security solutions to address identified vulnerabilities and improve security posture. They also develop and deliver security awareness training programs to educate employees about cybersecurity best practices and promote a security-conscious culture.
  • Provides technical expertise and mentorship to other members of the Security Team, fosters a collaborative and high-performing team environment.
  • Ensure compliance with relevant industry regulations and security frameworks (e.g., HIPAA, PCI DSS, GDPR) and support internal and external audits related to cybersecurity.

Requirements

  • BA/BS degree in Computer Science, Cybersecurity or a related field. Four (4) years of additional relevant experience may be substituted in lieu of degree.
  • Five (5) or more years experience in a Defensive Cyber Operations focused position for example incident response analyst, defensive cyber operations planner or cyber defense analyst.
  • Deep understanding of cybersecurity concepts, principles, and best practices.
  • Extensive experience with security monitoring tools (e.g., SIEM, IDS/IPS), vulnerability management tools, and incident response methodologies. Strong knowledge of network security, endpoint security, and cloud security.
  • Experience with threat intelligence platforms and threat hunting techniques.
  • Familiarity with relevant industry regulations and security frameworks (e.g., NIST, CIS, ISO 27001)., * Master’s degree in Computer Science, Cybersecurity, or a related field.
  • Experience with scripting languages (e.g., Python, PowerShell), cloud security platforms (e.g., AWS, Azure, GCP), and DevSecOps practices. Relevant certifications (e.g., CISSP, CISM, SANS GIAC).
  • Experience at a DoD Combatant Command (e.g., SOUTHCOM, NORTHCOM, CENTCOM, CYBERCOM, INDOPACOM, EUCOM, AFRICOM, STRATCOM, TRANSCOM, SOCOM, SPACECOM) or a component is desired.

Clearance Requirements:

  • Must have a current/active Secret security clearance
  • Must be eligible to obtain and maintain a TS/SCI security clearance, * The person in this position must be able to remain in a stationary position 50% of the time. Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers, via email, phone, and or virtual communication, which may involve delivering presentations.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

2:57 min

Securing sensitive defense infrastructure with dual-vendor cloud strategies

Boris Hecker Boris Hecker +3 · World Congress 2025

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all