Intermediate Cybersecurity Automation & Assessment Engineer
MITRE · San Diego, CA · 1 mo ago
Engineering$104k–$130k/yrFull-time
Roles & Responsibilities
- Develop and maintain automation tools and scripts using Python, PowerShell, Bash, or similar languages to improve assessment and operational workflows.
- Perform cybersecurity assessments, vulnerability analyses, and compliance evaluations across systems, applications, and networks.
- Design and implement automated data collection, validation, and reporting capabilities to improve assessment efficiency.
- Analyze logs and security events using SIEM and endpoint security tools to identify risks, anomalies, and opportunities for automation.
- Support vulnerability management by validating findings, prioritizing remediation efforts, and tracking corrective actions.
- Collaborate with cross-functional teams to integrate automation solutions and improve security processes.
- Create and maintain technical documentation, assessment reports, and standard operating procedures.
- Evaluate and implement emerging technologies, including AI-enabled automation and large language models (LLMs), to enhance assessment capabilities and operational effectiveness.
Basic Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related technical field with 2–5 years of relevant experience, or equivalent combination of education and experience.
- Experience developing automation solutions using Python, PowerShell, Bash, or similar scripting languages to improve operational efficiency and reduce manual effort.
- Experience performing security assessments, vulnerability analysis, or compliance reviews using industry frameworks such as NIST, ISO 27001, CIS Controls, or similar.
- Familiarity with SIEM and endpoint security platforms (e.g., Splunk, Microsoft Defender, CrowdStrike, Sentinel, QRadar) for log analysis and incident investigation.
- Knowledge of enterprise networking concepts including TCP/IP, DNS, firewalls, VLANs, and Windows/Linux administration.
- Experience documenting technical procedures, developing runbooks, and communicating technical findings to both technical and non-technical stakeholders.
- Demonstrated analytical and problem-solving skills with the ability to troubleshoot complex technical issues independently and collaboratively.
- Ability to obtain and maintain a U.S. Government security clearance, if required.
Preferred Qualifications
- Master's degree in Cybersecurity, Computer Science, Engineering, or a related technical field.
- 5 years of experience conducting cybersecurity assessments, penetration testing, vulnerability analysis, or systems security engineering activities.
- Experience using cybersecurity assessment and testing tools such as Kali Linux, Burp Suite, Wireshark, Nessus, Nmap, or similar technologies.
- Experience supporting offensive and defensive cybersecurity operations, including vulnerability assessment and penetration testing activities.
- Experience securing, integrating, administering, or assessing enterprise IT environments, networks, cloud platforms, or mission systems.
- Knowledge of cybersecurity standards such as NIST RMF, MITRE ATT&CK, STIGs, or CIS Benchmarks.
- Relevant cybersecurity certifications such as CISSP, GPEN, GCIA, GSEC, or comparable credentials.