Skip to content

Open nowPosted 29 hours ago

Senior Cyber Security Engineer

asrcfh404 open roles

Where
Beltsville, MD, USA
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Cyber Security Engineerasrcfh · Beltsville, MD, USA
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on asrcfh's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 29 hours ago

The posting

ASRC Federal is seeking a Senior Cyber Security Engineer to be a member of our Shared Services team located in Beltsville, MD.  Work location: Hybrid/Primarily Remote (at least 2 days onsite) Summary: The ideal candidate will be responsible for enterprise security engineering, vulnerability and compliance management, security tool administration, incident response, and Tier II Security Operations Center (SOC) support within an enterprise environment. This role focuses on implementing and maintaining security technologies, performing vulnerability and configuration assessments, identifying and remediating security weaknesses, responding to cyber incidents, and improving enterprise security capabilities. The Senior Cyber Security Engineer will have strong hands-on experience with vulnerability management, security configuration assessments, STIG benchmarking and adjudication, Windows and Active Directory environments, endpoint security technologies, network architecture, and enterprise security operations. Experience with Tenable architecture, cloud security, and Microsoft GCC/GCC High environments is highly desirable. Key Responsibilities

Operate and maintain enterprise vulnerability and compliance scanning platforms, including scan policies, repositories, asset groups, credentials, schedules, and reporting. Perform vulnerability assessments, security configuration assessments, and compliance scans to identify, prioritize, and track remediation of security weaknesses. Conduct STIG benchmarking, analyze findings, perform technical adjudications, and document remediation or applicable exceptions. Manage and optimize enterprise security technologies such as EDR/EPP/XDR, and SIEM, and identify and remediate gaps in security coverage, configuration, logging, and telemetry. Investigate and respond to security alerts involving phishing, malicious URLs, malware, credential compromise, suspicious authentication activity, and endpoint threats. Serve as a Tier II/Tier III escalation point for complex security investigations, engineering issues, and cybersecurity incidents. Perform incident response activities including triage, containment, eradication, recovery, and root cause analysis. Maintain strong understanding of Windows and enterprise infrastructure, including Active Directory, Group Policy Objects (GPOs), permissions, authentication, authorization, and access controls. Support security engineering and assessment activities across Microsoft Azure and Microsoft 365 environments, including GCC and GCC High where applicable. Develop scripts and automation using PowerShell, Python, or similar technologies to support security operations, vulnerability management, assessment, and response activities. Collaborate with infrastructure, networking, endpoint, identity, cloud, and application teams during security investigations, assessments, and remediation efforts. Document technical findings, security assessments, incident timelines, remediation recommendations, and risk-based adjudications. Develop and maintain security metrics, KPIs, dashboards, and on-demand reports to communicate security posture, trends, risks, and operational performance to technical and business stakeholders.

Required Qualifications

Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent professional experience. 9+ years of hands-on experience in vulnerability scanning, compliance assessments, STIG benchmarking, security configuration assessments, and technical adjudication. Must be a U.S. Citizen or Permanent Resident (Green Card Holder). Experience with cybersecurity engineering, vulnerability management, security operations, incident response, or related fields. Strong understanding of Windows operating systems and enterprise Windows architecture, e.g., Active Directory, Group Policy Objects (GPOs), permissions, authentication, authorization, and access control. Strong understanding of TCP/IP, DNS, HTTP/S, VPNs, firewalls, and enterprise network architecture. Experience with endpoint security technologies such as EDR, EPP, or XDR. Proficiency in PowerShell; experience with Python or similar scripting languages preferred. Strong analytical, troubleshooting, documentation, and communication skills. Ability to work independently and collaboratively in a fast-paced enterprise environment.

Preferred Qualifications

Certifications such as CISSP, GCIH, GCIA, Security+, CEH, or equivalent (at least one is required). Experience with Tenable Security Center/Tenable Vulnerability Management, including enterprise architecture, repositories, asset tagging, scan configuration, credentialed scanning, and compliance scanning. Experience with DISA STIGs, SCAP, security benchmarks, and STIG adjudication. Experience with Microsoft security technologies such as Defender for Endpoint, Defender for Identity, Defender for Office 365, and Microsoft Sentinel. Experience with Microsoft Azure, Microsoft 365, GCC, and GCC High security configurations. Experience with MITRE ATT&CK, threat intelligence platforms, SOAR, or security automation. Experience supporting cybersecurity frameworks such as CMMC, NIST 800-53, NIST 800-171, FedRAMP, or DISA security requirements.

 

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against asrcfh's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on asrcfh's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    asrcfh's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.