MANTECH seeks a motivated, career and customer-oriented Cyber Security Engineer Lead to join our team in Springfield, VA.
The Cyber Security Engineer Lead is responsible for the detection, identification, analysis, and reporting of cyber threats, intrusions, anomalous activities, and potential misuse of systems. This role supports the protection of customer’s digital assets and sensitive data through the administration, monitoring, and continuous improvement of cybersecurity technologies and processes.
Responsibilities include but are not limited to :
- Threat Detection & Response : Identify, assess, and report potential cyber-attacks, intrusions, and abnormal system behaviors. Participate actively in incident response and recovery activities.
- Technology Administration : Administer and maintain systems supporting Identity Management, Privileged User Access, Access Control (firewall), End Point Protection, Internet Protection, Vulnerability Scanning, and Security Information and Event Management (SIEM) tools.
- Mitigation & Remediation : Develop and implement enterprise-level mitigation strategies to address complex vulnerabilities.
- Operational Support : Ensure proper installation, testing, patching, upgrading, and performance of cybersecurity tools and applications. Maintain system resiliency and availability across all managed technologies.
- Policy Enforcement & Compliance : Enforce cybersecurity policies, standards, and best practices in alignment with ManTech’s security framework and regulatory requirements.
- Leadership & Collaboration : Lead or participate in cross-functional projects and initiatives. Provide technical mentorship and subject matter expertise to junior team members.; Continuous Improvement : Interpret internal and external cybersecurity trends and business challenges; recommend and implement innovative solutions to strengthen the enterprise security
posture.
Monitor intrusion detection and prevention systems and other security event data sources; determine if security events monitored should be escalated to incidents and follow all applicable incident response and reporting processes and procedures.Minimum Qualifications :
Bachelor’s Degree in Cybersecurity, Information Technology, Computer Science, or a related Cyber Security field.Certified Information Systems Security Professional (CISSP) certification (required within 6 months of assignment to the position, otherwise failure to obtain certification within 6 months of assignment to the position may result in removal).8+ years of relevant cybersecurity experience, including hands-on technical administration and operational security support.Strong analytical and problem-solving abilitiesDeep knowledge of cybersecurity frameworks, principles, and technologiesProficiency in SIEM, endpoint protection, and identity management toolMust be able to travel up to 25%Preferred Qualifications :
Have a good understanding of DISA compliance directives and recommend having knowledge of the JSIG.Ability to lead small teams or projectsExcellent communication and influence skills; Strong judgment in identifying and mitigating security risksCorrelate data from intrusion detection and prevention systems with data from other sourcesClearance Requirements :
Must have current / active TS / SCI with the ability to obtain and maintain a Yankee White security clearancePhysical Requirements :
Must be able to remain in a stationary position 50%The person in this position needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.The person in this position frequently communicates with co-workers, management and customers, which may involve delivering presentations.Must be able to exchange accurate information in these situations.