> Markdown version of [/jobs/ext/3594930-security-operations-engineer](https://www.wearedevelopers.com/jobs/ext/3594930-security-operations-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Operations Engineer - **Company:** Information Technology, Inc. - **Location:** Arlington, VA, United States - **Experience:** Expert - **Salary:** $145,000.0 - $175,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Windows, Apple Mac Systems, Bash Shell, Software as a Service, Cloud Computing Security, Cloud Storage, Cyber Security, Information Leak Prevention, Domainkeys Identified Mail, Domain-Based Message Authentication Reporting and Conformance (DMARC), Domain Name System (DNS), Hypertext Transfer Protocols (HTTP), Identity and Access Management, Intrusion Detection and Prevention, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Routing, Windows PowerShell, Anti-Phishing, Zero Trust Network Access, TCP/IP, Software Vulnerability Management, Wide Area Networks, Workflow Management Systems, Data Logging, Enterprise Software Applications, Cloud Platform System, Okta, Software Troubleshooting, Firewalls (Computer Science), Sender Policy Framework (SPF), Spoofing, Patch Management, Nessus, Fortinet, CIS Benchmarks, Cisco, Plan of Action and Milestones, Vulnerability Analysis - **Published:** October 6, 2026 - **Apply:** https://startup.jobs/security-operations-engineer-umbra-company-10303849 ## About the Role * 5+ years of experience in security engineering, security operations, or infrastructure security roles. * Hands-on experience managing the vulnerability lifecycle, including authenticated scanning, finding validation, risk-based prioritization, remediation coordination, and verification of closure. * Strong hands-on experience designing and deploying: * Email authentication: SPF, DKIM, and DMARC * Enterprise DLP controls Strong hands-on experience implementing security controls across: * Identity & Access Management * Endpoint management (Windows/macOS) * Network and cloud platforms Demonstrated ability to translate security policy into enforceable technical implementation. Experience coordinating patches, upgrades, and configuration changes across technical teams while balancing security risk, operational availability, and change-management requirements. Experience supporting & automating audit and compliance evidence collection. Strong troubleshooting and incident response skills., * 10+ years of experience in security engineering, security operations, or infrastructure security roles. * Experience with vulnerability assessment platforms, such as Tenable/Nessus, and patch management tooling, such as BigFix. * Experience with Okta: IdP, SSO, MFA, SCIM, and workflows. * Strong hands on experience designing and deploying eDiscovery and retention workflows. * Experience with FortiGate & Cisco network technologies. * Strong understanding of TCP/IP, DNS, HTTP/S, VPNs, SD-WAN, and routing/switching. * Experience deploying DLP in regulated environments. * Familiarity with NIST, CMMC, and FedRAMP. * Experience automating security controls, vulnerability remediation workflows, or evidence collection. * Exposure to cloud security tooling and observability platforms. * Proficiency in Python, Bash, or PowerShell. ## Description The Security Operations Engineer is a hands-on technical role responsible for designing, implementing, operating, and continuously improving security controls across Umbra's corporate technology platforms. This position serves as the primary conduit between Information Security (InfoSec) and IT execution, ensuring security policy is translated into durable, auditable technical controls. Sitting within Core Infrastructure, this role owns the security configuration control plane for corporate IT: identity, access, email security, data protection, network security, endpoint posture, vulnerability management, logging, and detection. The role partners closely with InfoSec on risk management, program deployment, POA&M execution, and audit readiness. This is an engineering-first role focused on building and integrating secure-by-default platforms, not a SOC-only or alert-triage position., * Security Engineering: Design, implement, and operate technical security controls across identity, endpoint, network, cloud, email, and SaaS environments, translating InfoSec policies and standards into enforceable configurations and platform guardrails. * Vulnerability Management: Own the technical vulnerability management lifecycle across corporate IT platforms, including scanning and coverage, risk-based prioritization, remediation coordination, validation, exception tracking, and reporting. * Administer vulnerability scanning tools and partner with infrastructure and application owners to drive remediation of vulnerabilities, configuration issues, and critical or actively exploited exposures. Email Security: Design and maintain email security controls, including SPF, DKIM, DMARC, secure mail routing, monitoring, and protection against phishing, spoofing, and domain abuse. Data Loss Prevention: Design, implement, and tune DLP controls across email, endpoints, cloud storage, messaging, and SaaS platforms, including controls supporting CUI and other regulated data. Identity & Access: Secure and operate IAM capabilities including SSO, MFA, SCIM/JIT, PAM, least-privilege access, and access-review remediation. Endpoint Security: Partner with IT teams to implement and maintain security baselines across Windows and macOS environments, including encryption, patching, device trust, and endpoint security tooling. Network & Cloud Security: Implement and maintain security controls across network and cloud environments, including segmentation, firewalls, ZTNA/VPN, logging, and cloud security guardrails. Detection & Incident Response: Operate and tune security monitoring and detection capabilities, integrating signals across identity, endpoint, email, and DLP platforms and supporting investigation and remediation of security incidents. Compliance & Audit Readiness: Maintain technical documentation, configuration artifacts, and evidence supporting NIST, CMMC, FedRAMP, and other applicable security and compliance requirements. Automation & Continuous Improvement: Automate security controls, vulnerability management, evidence collection, and compliance workflows to improve reliability and reduce manual effort. Cross-Functional Collaboration: Partner closely with InfoSec, Core Infrastructure, Digital Workplace, Enterprise Applications, Legal, and other stakeholders to implement security requirements and remediate technical risks. Participate in security-related change reviews, CABs, and other governance forums as needed. Perform other duties as assigned.