Defensive Cybersecurity Operations Specialist
MANTECH · Miami, FL · 2 wk ago
On-siteInformation TechnologyFull-time
MANTECH seeks a motivated, career and customer-oriented Defensive Cybersecurity Operations Specialist to join our team in Doral, FL.
Responsibilities
- Develops and implements a comprehensive defensive cybersecurity strategy aligned with industry best practices (e.g., NIST Cybersecurity Framework, CIS Controls), including defining security architecture, selecting security tools, and establishing Incident Response Plans.
- Proactively monitors threat landscapes, analyzes threat intelligence, and conducts threat hunting activities to identify and mitigate potential threats before they impact the organization.
- Oversees the organization’s Security Information and Event Management (SIEM) system and other security monitoring tools.
- Assists leadership in managing incident response efforts, including containment, eradication, recovery, and post-incident analysis, and develops and maintains incident response playbooks.
- Establishes and manages a thorough vulnerability management program, including regular vulnerability scanning, penetration testing, and remediation tracking.
- Contributes to the design and implementation of secure IT architectures and evaluates and recommends security solutions to address identified vulnerabilities and improve security posture.
- Develops and delivers security awareness training programs to educate employees about cybersecurity best practices and promote a security-conscious culture.
- Provides technical expertise and mentorship to other members of the Security Team and fosters a collaborative and high-performing team environment.
- Ensures compliance with relevant industry regulations and security frameworks (e.g., HIPAA, PCI DSS, GDPR) and supports internal and external audits related to cybersecurity.
Requirements
- BA/BS degree in Computer Science, Cybersecurity, or a related field. Four (4) years of additional relevant experience may be substituted in lieu of degree.
- Five (5) or more years of experience in a Defensive Cyber Operations focused position (e.g., incident response analyst, defensive cyber operations planner, or cyber defense analyst).
- Deep understanding of cybersecurity concepts, principles, and best practices.
- Extensive experience with security monitoring tools (e.g., SIEM, IDS/IPS), vulnerability management tools, and incident response methodologies.
- Strong knowledge of network security, endpoint security, and cloud security.
- Experience with threat intelligence platforms and threat hunting techniques.
- Familiarity with relevant industry regulations and security frameworks (e.g., NIST, CIS, ISO 27001).
- Must have a current/active Secret security clearance.
- Must be eligible to obtain and maintain a TS/SCI security clearance.
Qualifications
- Master’s degree in Computer Science, Cybersecurity, or a related field.
- Experience with scripting languages (e.g., Python, PowerShell), cloud security platforms (e.g., AWS, Azure, GCP), and DevSecOps practices.
- Relevant certifications (e.g., CISSP, CISM, SANS GIAC).
- Experience at a DoD Combatant Command (e.g., SOUTHCOM, NORTHCOM, CENTCOM, CYBERCOM, INDOPACOM, EUCOM, AFRICOM, STRATCOM, TRANSCOM, SOCOM, SPACECOM) or a component is desired.
Physical Requirements
- The person in this position must be able to remain in a stationary position 50% of the time.
- Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers via email, phone, and/or virtual communication, which may involve delivering presentations.