Cybersecurity Officer (Entry to Senior Level) TS?SCI with Poly
Role details
Job location
Tech stack
Job description
The Cybersecurity Officer protects an organization's digital assets by monitoring systems for threats, investigating basic security alerts, and helping enforce company security rules. It is a foundational role focused on learning, triage, and assisting senior staff with day-to-day security operations., * System Monitoring: Watch security tools and dashboards for unusual network traffic or suspicious activity.
-
Alert Triage: Review basic security alerts, determine if they are false alarms, and escalate real threats to senior team members.
-
Access Management: Assist with granting or removing employee access to company software and sensitive files.
-
Security Awareness: Help educate staff on security best practices, such as recognizing phishing emails.
-
Incident Assistance: Follow established step-by-step procedures to respond to minor security incidents (e.g., locking a compromised account).
-
Documentation: Write simple reports outlining diagnostic test results or security events., Security Monitoring & Incident Response
-
Monitor Alerts: Continuously review security logs and network traffic for suspicious activity, anomalies, or breaches.
-
Triage Incidents: Serve as the first responder to basic security alerts, mitigating minor threats and collecting preliminary data.
-
Escalation: Escalate complex or high-severity cyber attacks to Level 2 or Level 3 senior security teams. Vulnerability Management
-
Diagnostic Testing: Execute diagnostic tests and vulnerability scans to identify potential loopholes in systems and networks.
-
Patch Management: Apply antivirus updates, firewall configurations, and security patches across enterprise systems.
-
Report Generation: Document known vulnerabilities and draft regular system status reports for management. Compliance & Governance
-
Data Protection: Enforce organizational security policies and ensure adherence to statutory or regulatory requirements regarding information access and privacy.
-
Access Control: Grant, review, and revoke user access credentials to maintain the principle of least privilege.
-
Auditing: Conduct periodic security audits to measure compliance and identify inefficiencies. Training & Awareness
-
Phishing Prevention: Lead or assist in employee cybersecurity awareness training and phishing simulations.
-
Resource Development: Provide technical consultation and security best-practice documentation to staff., * Incident Response & Triage: Lead the investigation of complex security alerts escalated from Level 1, determining root causes, scoping the blast radius, and executing rapid containment protocols.
-
Threat Hunting & Vulnerability Management: Conduct proactive threat hunting using endpoint data, network telemetry, and actionable intelligence. Analyze system logs to identify abnormalities and suspicious network signals.
-
Security Operations & Tooling: Configure, fine-tune, and deploy security solutions (e.g., SIEM, EDR, firewalls, and DLP). Author custom detection rules and detection playbooks.
-
Risk Management & Compliance: Conduct enterprise-level risk assessments, enforce adherence to security legislation, and manage system security documentation (e.g., SSPs, ATO lifecycle, and security controls).
-
Mentorship & Reporting: Guide junior SOC/Level 1 analysts, and communicate complex technical risks to executive leadership and IT teams through detailed post-mortem reports., * Proactive Threat Hunting: Design, develop, and execute deep-dive threat hunting missions using hypothesis-driven methodologies to uncover deeply embedded, covert, and zero-day threats within the enterprise architecture.
-
Malware Analysis & Reverse Engineering: Intercept, deconstruct, and analyze complex malware, ransomware, and malicious binaries to understand execution mechanisms, C2 infrastructure, and exfiltration pathways.
-
Advanced Incident Management: Lead the technical command of catastrophic and nation-state-level security incidents. Conduct forensic analysis across endpoints, networks, and cloud infrastructures to establish root causes and execute surgical eradication and recovery protocols.
-
Cryptographic & Security Architecture: Review highly complex system designs, microservices, and network topologies. Provide architectural oversight on encryption protocols, data-in-transit/at-rest safeguards, and secure hardware/software integrations.
-
Vulnerability & Exploitation Research: Conduct authorized red-team-style exploitation testing to simulate real-world attacks. Bridge the gap between offensive and defensive operations by contributing directly to threat intelligence and secure coding hardening guides.
-
Executive & Strategic Advising: Translate complex technical findings and threat landscapes into actionable, high-level strategic directives for executive leadership and stakeholders.
Requirements
CGI Federal has an exciting opportunity for a Cybersecurity Officers within our Intel sector advancing the national security mission through cutting edge technology. You must have a passion for keeping pace with rapidly evolving technology advancements and leveraging your knowledge on a highly collaborative team to deliver state-of-the-art capabilities., o High School Diploma/GED with 4 years of relevant experience, o Associates Degree with 2 years of relevant experience, o or Bachelor's Degree with 0 years of relevant experience
- Basic IT Knowledge: Understanding of computer networks (e.g., IP addresses, routers) and operating systems like Windows, macOS, or Linux.
- Problem-Solving: Strong critical thinking and the ability to research or "Google" answers when encountering unfamiliar issues.
- Communication: Ability to clearly explain technical issues to non-technical coworkers or management.
- Certifications: Foundational certifications such as CompTIA Security+, Network+, or ISC2 CC are highly recommended for beginners.
Junior Level:
-
Education: o High School Diploma/GED with 6 years of relevant experience, o Associates Degree with 4 years of relevant experience, o Bachelor's Degree with 2 years of relevant experience, o or Masters Degree with 0 years of relevant experience
-
Certifications: Foundational certifications such as CompTIA Security+, [ISC]² CCSP, or [CodeHS] are highly valued.
-
Technical Skills: Working knowledge of TCP/IP, firewalls, endpoint security, and intrusion detection systems., o High School Diploma/GED with 8 years of relevant experience, o Associates Degree with 6 years of relevant experience, o Bachelor's Degree with 4 years of relevant experience, o or Masters Degree with 2 years of relevant experience, o or PhD with 0 years of relevant experience
-
Technical Proficiencies: Strong working knowledge of various operating systems (Linux, Windows, macOS), networking protocols (TCP/IP), and cloud architecture (AWS, Azure). Basic understanding of scripting languages (Python, PowerShell).
-
Certifications: Industry-recognized certifications such as CompTIA Security+, GIAC Certified Incident Handler (GCIH), or Certified Information Systems Security Professional (CISSP).
Senior Level:
-
Education: o High School Diploma/GED with 10 years of relevant experience, o Associates Degree with 8 years of relevant experience, o Bachelor's Degree with 6 years of relevant experience, o or Masters Degree with 4 years of relevant experience, o or PhD with 2 years of relevant experience
-
Certifications: Elite credentials such as CISSP, GIAC Security Expert (GSE), OSCP, or CCIE Security.
-
Technical Proficiencies: Mastery of advanced SIEM, SOAR, and EDR platforms. Deep understanding of network protocols, cloud-native architecture security, and scripting/programming languages (Python, C, C++, or Assembly).
Benefits & conditions
CGI is required by law in some jurisdictions to include a reasonable estimate of the compensation range for this role. The determination of this range includes various factors not limited to skill set, level, experience, relevant training, and licensure and certifications. To support the ability to reward for merit-based performance, CGI typically does not hire individuals at or near the top of the range for their role. Compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range for this role in the U.S. is $89,600.00 - $204,000.00.
CGI Federal's benefits are offered to eligible professionals on their first day of employment to include: . Competitive compensation . Comprehensive insurance options . Matching contributions through the 401(k) plan and the share purchase plan . Paid time off for vacation, holidays, and sick time . Paid parental leave . Learning opportunities and tuition assistance . Wellness and Well-being programs
#CGIFederalJob #LI-LB1 #ClearanceJobs #CGIInternationalSecurity
Together, as owners, let's turn meaningful insights into action.
Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you'll reach your full potential because...