Responsibilities
- Evaluate security incidents, system vulnerabilities, and the performance of existing controls
- Assist in managing incident response activities, RMF adherence, and ongoing system monitoring
- Carry out intermediate-level investigations and link log data across multiple platforms
- Execute vulnerability scans using industry-standard tools including Nessus or Qualys
- Operate SIEM solutions such as Splunk or QRadar and manage endpoint defense systems
- Create standard operating procedures and runbooks to streamline security operations
- Support the maintenance and resolution tracking of Plans of Action and Milestones (POA&Ms)
- Maintain alignment with regulatory and compliance frameworks like NIST 800-53, FISMA, and ISO 27001
- Apply 3 to 7 years of professional experience in cybersecurity or IT security domains
- Demonstrate solid analytical thinking, troubleshooting capabilities, and clear communication
- Partner with diverse teams to strengthen organizational security defenses
- Participate in incident handling and fundamental digital forensics tasks
- Engage with cloud infrastructure security tools, particularly in AWS or Azure environments (desired)
- Employ scripting with Python or PowerShell to automate repetitive security tasks (desired)