Cybersecurity Specialist

CEF Industries, LLC
United States
2 days ago
Apply on www.cefindustries.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$90,000.0 - $115,000.0
Working hours
Shift work
Languages
Korean

Tech stack

Microsoft Windows Active Directory Artificial Intelligence Software System Penetration Testing User Authentication Backup Devices Bash Shell Bioinformatics CompTIA Security+ Cyber Security Dynamic Host Configuration Protocol Disaster Recovery
+25 more
Domain Name System (DNS) Firmware Identity and Access Management Networking Hardware Virtual Private Networks (VPN) Python (Programming Language) Network Security Network Troubleshooting Windows Search Network Administration Password Management Windows PowerShell Phishing TCP/IP Virtual Local Area Networks Virtualization Technology Software Vulnerability Management Cyber Threat Analysis Firewalls (Computer Science) Tanium Platform Expertise Information Technology Fortinet Network Server Commvault Server Operating Systems & Platforms

Job description

The Cybersecurity Specialist is a hands-on member of the CEF Industries IT team responsible for day-to-day cybersecurity execution, technical security controls, cyber resilience, and related compliance activities. The role works closely with the IT Director and IT Specialist and is expected to take ownership of assigned security issues, remediation activities, recurring control reviews, and technical projects., Cybersecurity is the primary focus of this position; however, CEF operates with a small, collaborative IT team. The successful candidate must be comfortable working across technical disciplines and assisting with general IT troubleshooting, applications, endpoints, servers, infrastructure, workstation deployments, and end-user technology when departmental or business needs require it., Essential duties and responsibilities include the following. Other duties may be assigned.

  • Own day-to-day cybersecurity operations and follow-through, including security alert review, threat investigation, incident response support, coordination with managed security providers, and tracking required remediation through closure.
  • Administer and support endpoint and security platforms, including EDR, vulnerability management, security monitoring, authentication, password-management, encryption, and related controls. Maintain endpoint coverage, sensor health, security policies, and response readiness.
  • Manage vulnerability, patching, and system-hardening activities across endpoints, servers, applications, network devices, and other technology platforms. Prioritize findings, apply or coordinate fixes, validate resolution, document exceptions, and drive identified risks through closure.
  • Support identity and access management security controls, including MFA, SSO, privileged access, authentication technologies, periodic access reviews, stale account/entitlement cleanup, and other access-control activities.
  • Support network security and related infrastructure, including firewalls, wireless, VPNs, switching, firmware maintenance, firewall-rule reviews, segmentation, troubleshooting, and implementation of technical security controls.
  • Own backup and cyber-resilience activities, including backup-health review and remediation, validation of backup coverage, restore testing, disaster recovery exercises, recovery documentation, and improvements to backup and recovery capabilities.
  • Perform recurring cybersecurity and compliance activities required by TransDigm policies, CMMC, NIST 800-171, customer requirements, or other applicable standards. Support audit readiness by collecting evidence, validating technical controls, maintaining documentation, and assisting with assessments.
  • Coordinate cybersecurity testing and risk-reduction activities, including internal/external penetration testing, remediation of findings, third-party security/access reviews, security awareness activities, phishing simulations, and other recurring security-control validation.
  • Lead or support cybersecurity and infrastructure projects from planning through completion. Work with consultants and vendors, understand contracted scope and responsibilities, coordinate the appropriate division of internal and external work within the approved project scope, complete internal prerequisites, track actions, validate deliverables, test results, document changes, and escalate material scope, cost, business-impacting, or risk-related decisions to the IT Director.
  • Evaluate technical solutions and recommendations with consideration for cybersecurity risk, business operations, user impact, supportability, cost, operational practicality, and ongoing administrative workload.
  • Create and maintain cybersecurity and technical documentation, including procedures, runbooks, diagrams, incident and recovery documentation, project records, and evidence supporting recurring control activities. Maintain awareness of emerging threats and technologies, including AI-enabled cybersecurity risks.
  • Serve as a cybersecurity resource for employees and business teams while working collaboratively with the IT Specialist and IT Director. Assist with broader IT support and troubleshooting when business or departmental needs require it.
  • Serve as the primary after-hours contact for cybersecurity alerts, incidents, and escalations. Respond to or coordinate investigation and remediation as required, escalating significant business-impacting incidents, risk decisions, or situations requiring management involvement to the IT Director.
  • Remain flexible to support cybersecurity incidents, maintenance, patching, planned changes, and project work outside normal business hours when required., The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

While performing the duties of this Job, the employee is regularly required to talk or hear. The employee is frequently required to sit. The employee is occasionally required to stand; crouch; walk; use hands to handle or feel and reach with hands and arms. The employee must occasionally lift and/or move up to 25 pounds. Specific vision abilities required by this job include ability to adjust focus. Walk through manufacturing areas requiring personal protective equipment: safety glasses, hearing protection, etc

Work Environment

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

The noise level in the work environment is usually moderate.

Work Schedule and Availability

Regular Shift Hours: An 8-hour work schedule generally beginning between 7:00 AM and 8:00 AM and ending between 4:00 PM and 5:00 PM, based on departmental coverage and business needs.

After Hours/Weekend Support: This position serves as the primary after-hours contact for cybersecurity alerts, incidents, and escalations and is expected to respond to or coordinate investigation and remediation as required. Flexibility is also required to support emergencies, system maintenance or patching, planned changes, and project work outside normal business hours as needed.

The employee is expected to adhere to all company policies.

NOTE: This job description is not intended to be all-inclusive. Employee may perform other duties assigned to meet the ongoing needs of the organization.

Full Benefits including: Medical, Dental, Vision, Supplemental Health Benefits, FSA/HSA, Vacation, Personal Time, 11 Paid Holidays + 3 Floating Holidays, 401K/Match, ST/LT Disability, Life/AD&D Ins., Legal Ins., Identity Theft, Pet Ins., Auto & Home Ins., Commuter Benefits, Tuition Reimbursement, Discretionary Bonus Eligible

Salary Range $90-$115k depending on experience

Equal Employment Opportunity

CEF Industries is an Equal Opportunity Employer. CEF is committed to ensuring equal employment opportunities for all job applicants and employees. Employment decisions are based upon job related reasons regardless of race (and traits associated with race including but not limited to hair texture and protective hairstyles such as braids, locks, and twists), religion, color, sex (including pregnancy and gender identity), sexual orientation, national origin, ancestry, age, gender identity or expression, disability, family medical history or genetic information, veteran status, military service, marital status, order of protection status, citizenship status, or any other characteristic protected by applicable law. Must be authorized to work in the U.S., ITAR/EAR compliance is required for all positions. To conform to U.S. export control regulations, applicant should be eligible for any required authorizations from the U.S. Government. (Disability/Veteran/VEVRAA Federal Contractor”) If you would like more information about Equal Employment Opportunity as an applicant under the law, please go to https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf, Completion of this information is voluntary and is not a requirement of employment. This information will in no way affect the decision regarding your application for employment. This information will be kept confidential. We hope that you will complete this form to assist us in recording information for statistical reports that we are obliged to file periodically with various government agencies. Gender Veteran Status Male Female Veteran Not a Veteran Race American Indian or Alaska Native Asian Black or African American Hispanic or Latino Native Hawaiian or Other Pacific Islander White Two or More Races Invitation to Self-Identify Protected Veteran Status This employer is a government contractor subject to the Vietnam Era Veterans†Readjustment Assistance Act of 1974, as amended (Section 4212), which requires government contractors to employ and advance in employment: (1) disabled veterans; (2) recently separated veterans; (3) active duty wartime or campaign badge veterans; and (4) Armed Forces service medal veterans. The law requires us to provide equal opportunity to protected veterans as defined by the Vietnam Era Veterans†Readjustment Assistance Act, as amended. The below invitation is made pursuant to this policy., Do you identify as one (or more) of the following protected veteran categories? Please check the appropriate box below. NOTE: You do not have to indicate which specific category applies.

Disabled Veteran: (i) a veteran of the U.S. military, ground, naval, or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veteran Affairs; or (ii) a person who was discharged or released from active duty because of a service-connected disability.

Recently Separated Veteran: any veteran during the three-year period beginning on the date of such veteran’s discharge or release from active duty in the U.S. military, ground, naval, or air service.

Armed Forces Service Medal Veteran: a veteran who, while serving on active duty in the U.S. military, ground, naval, or air service, participated in a United States military operation for which an Armed Forces medal was awarded pursuant to Executive Order 12985.

Active Duty Wartime or Campaign Badge Veteran: a veteran who served on active duty in the U.S. military, ground, naval, or air service either during a “period of war” as defined below or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

“Period of war” is defined for these purposes by the Department of Labor as:

  • June 27, 1950 to January 31, 1955 (Korean conflict)
  • February 28, 1961 to May 7, 1975 (for veterans serving in the Republic of Vietnam)
  • August 5, 1964 to May 7, 1975 (for all other veterans who served during the Vietnam conflict)
  • August 2, 1990 to the present (Gulf War)

I Am a Protected Veteran I Am Not a Protected Veteran I Prefer Not to Answer We value all forms of military service. If you do not meet the criteria of one or more of the categories above, but would otherwise like to disclose your status as a member of the U.S. Armed Forces, you may do so below. Providing this information is completely voluntary. I am either currently serving, or have served, in the Armed Forces of the United States of America. I Prefer Not to Answer Are you a U.S. Citizen or hold a valid Green Card?* Yes No What is your highest level of Education?* What is your desired Salary?

Requirements

To perform the job successfully, an individual should demonstrate the following competencies:

  • Ownership and Results - Takes responsibility for assigned work, follows issues and remediation through completion, and independently manages assigned priorities and projects.
  • Problem Solving - Analyzes technical and cybersecurity problems, develops practical solutions, and knows when to escalate matters requiring additional expertise, risk acceptance, or business decisions.
  • Technical and Business Judgment - Balances cybersecurity best practices with operational risk, user impact, supportability, cost, and ongoing administrative workload.
  • Project and Vendor Coordination - Coordinates technical projects involving internal staff, consultants, and vendors; understands scope and responsibilities; validates deliverables; and drives work to completion.
  • Adaptability and Task Switching - Works comfortably across cybersecurity and broader IT disciplines and adjusts priorities as incidents, operational needs, compliance requirements, projects, and business priorities change.
  • Continuous Learning - Maintains current knowledge of cybersecurity threats, technologies, and practices and independently develops knowledge of new tools and systems as needed.
  • Communication and Documentation - Communicates clearly with technical and non-technical audiences and maintains accurate, timely technical, project, incident, and compliance documentation., * Minimum of 7 years of progressive, hands-on IT and cybersecurity experience is required. A bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field is preferred; equivalent education, training, or certifications may be considered in place of the degree.
  • At least 3 years of direct, hands-on responsibility in cybersecurity, information security, infrastructure security, systems/network administration with security responsibilities, vulnerability remediation, incident response, or a closely related technical area is strongly preferred.
  • Demonstrated experience independently owning technical work and projects and working effectively with external consultants or vendors is required. Experience in manufacturing, aerospace, defense, or another regulated or compliance-driven environment is preferred.

Language Skills

Demonstrated analytical, written, and oral communication skills, including the ability to explain technical and cybersecurity concepts to non-technical audiences.

Computer Skills

Required technical knowledge and experience:

  • Strong working knowledge of Microsoft Windows desktop/server environments and systems-administration fundamentals.
  • Solid understanding of Active Directory, Entra ID, Group Policy, identity/access management, authentication, and Microsoft 365 security concepts.
  • Strong networking fundamentals, including TCP/IP, DNS, DHCP, VLANs, switching, wireless, firewalls, VPNs, and network troubleshooting.
  • Hands-on experience with cybersecurity technologies and processes such as EDR, vulnerability management, patch/remediation, MFA, security monitoring, incident response, and technical security controls.
  • Experience with backup/recovery, disaster recovery, virtualization, and general infrastructure technologies.
  • Ability to troubleshoot systems, applications, endpoints, and infrastructure and to work effectively with software vendors and technical consultants.

Preferred experience:

  • Experience with enterprise firewall and network security platforms, such as Fortinet or comparable technologies.
  • Experience with endpoint detection and response (EDR), vulnerability management, and security operations platforms, such as CrowdStrike, Tanium, or comparable technologies.
  • Experience with backup, disaster recovery, and virtualization platforms, such as Commvault or comparable technologies.
  • Familiarity with network detection and response, enterprise password management, and other security platforms is a plus.
  • PowerShell, Python, Bash, or similar scripting/automation methods.
  • CMMC, NIST 800-171, or similar cybersecurity/compliance frameworks and regulated environments.
  • Relevant IT or cybersecurity certifications from recognized industry organizations such as CompTIA, ISC2, ISACA, GIAC, Fortinet, Microsoft, or equivalent are preferred.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.cefindustries.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:17 min

Fortinet firewall administrative passwords leaked on the dark net

Chris Heilmann +1 · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all