Job Requirements
Remote
Public Trust Polygraph None
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries
Job Description
CIRT Detection Engineer
Location: Remote
Required Clearance: Public Trust
Since 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities. Employees hired through this process will join MGPS and receive a comprehensive benefits package and competitive pay.
Job Description:
We are seeking a CIRT Detection Engineer who will be responsible for identifying and developing audit logging and monitoring detections for systems/applications.
Job Responsibilities:
- Confirm stakeholder requirements.
- Collaborate with IT project team and CIRT to design, engineer and implement security initiatives for audit logging and monitoring.
- Develop Detection Logic: Create, implement, and maintain custom detection rules and signatures in the Security Information and Event Management (SIEM) Sentinel Solution.
- Collaborate with project and operations teams to provide recommendations to increase the organizations security posture and ensure industry and government standard(s) compliance.
- Work with project team to tune detections to raise security-relevant events to the triage and response team.
- Conduct risk assessments and validate solutions confirming functionality and tools comply with security controls.
- Document solutions, recommendations, test results as needed.
- Identify issues as they arise and provide potential solutions.
Required Skills:
- SIEM/Sentinel – Advanced
- Cloud Security – Advanced
- NIST-800-171 – Advanced
- Python Scripting – Intermediate
- Deep knowledge of operating systems (Windows, Linux, macOS), cloud infrastructure, network protocols, and the location of critical logs - Advanced
Desired Skills:
- Information Security – Advanced
- Application Security – Intermediate
- Data Loss Prevention (DLP) – Intermediate
- Agile methodologies - Intermediate
group id: 91138733B