user avatar

Cyber Security Project Engineer

GRVTY

Posted today

Job Requirements

McLean, VA
Top Secret/SCI Polygraph Unspecified
Career Level not specified
$150,000 - $250,000

Job Description

What You'll be Owning

GRVTY is seeking a Cyber Security Project Engineer with a TS/SCI + Poly clearance (applicable to this customer) to join one of our top projects in McLean, VA.The Sponsor's proactive cyber defense team is responsible for timely identification, triage, analyze, quantify, and track remediation of newly discovered or withstanding vulnerabilities and weaknesses across all of the organization's networks and systems. The Sponsor requires support specializing in the application of theoretical and practical knowledge of cybersecurity, specifically vulnerability management, to maintain an optimal security and risk posture of networks, systems, and information. This is a tactical role and the work may be performed independently or within a team environment. The Sponsor needs polished skills in data analysis, fundamental understanding of types of vulnerabilities, network attacks, and current industry threats, executing within a moderate to heavy workload. To include analysis across data sources and tools, correlated with threat intelligence from numerous sources, with detailed remediation/mitigation plans to be tracked via KPI metrics.

What You Must Have

  • Active TS/SCI with Polygraph Clearance
  • Experience in cyber security or related IT field.
  • Experience with adversarial tactics, techniques, & procedures (TTPs).
  • Experience with computer attack methods and system exploitation techniques.
  • Experience with cyber security principles for Linux, Windows, virtual platforms, networking, and Cloud.
  • Experience with network architectures and fundamentals.
  • Experience developing risk management methodologies.
  • Experience analyzing test results to develop risk and threat mitigation plans.
  • Experience with market-leading vulnerability management tools including the ability to deploy, configure, and run these tools.
  • Experience with vulnerability concepts and prevalent vulnerability types such as SQL injection, cross-site scripting (XSS), cross- site request forgery (CSRF), path traversals, denial of service (DoS), buffer overflows, command injection, race conditions, open redirects, privilege escalation, authentication bypasses, XML External Entity (XXE) attacks and similar.
  • Experience with privilege and high/low trust boundaries and what defines a vulnerability vs. weakness.
  • Experience with vulnerability and risk scoring frameworks and methodologies such as CVSSv2 and CVSSv3.
  • Experience with vulnerability repositories (NVD, CVE MITRE, and VULdb) and exploitation techniques (MITRE ATT&CK and DEFEND).
  • Experience with web application (OWASP) and OS-level vulnerability categories and documentation.
  • Experience communicating how an attacker would exploit vulnerabilities and the types of attacks they could be used for.
  • Experience with the general threat landscape of an IT network and how vulnerabilities and exploitation of them impact it.
  • Experience with patch management and software development lifecycle (SDLC).
  • Experience in security operations, vulnerabilities and exploitation, network security, cloud security, and a comprehensive background in information security.
  • Experience with commercially available threat intelligence sources and toolsets.
  • Experience with using open-source and human information sources to track and collect information on adversaries, malware, campaigns, and related malicious infrastructure.
  • Experience conducting all-source research on a wide range of cyber issues.
  • Experience with leveraging Tableau or PowerBI to collect and visualize metric data.
  • Experience administering a SharePoint environment.
  • Experience with portfolio management.
  • Experience resolving complex problems including organizing and structuring solutions.
  • Experience developing executive level briefing materials and reports.
  • Experience with Program and Project Management methodologies.
  • Experience with ServiceNow and JIRA.
  • Experience eliciting and identifying requirements.
  • Experience reviewing program and generating formal review documentation.
  • Experience coordinating, supporting, and participating in program meetings and reviews.
  • Experience reviewing and identifying inconsistencies in program plans.
  • Experience supporting division-level budget and plans activities.
  • Experience with project management activities such as planning projects, meeting objectives, developing contingencies, and producing schedules.
  • Experience managing meetings to include meeting minutes, organizing, scheduling, and facilitating.


What Would be Nice to Have

  • Experience communicating vulnerability results and risk posture to senior executives.
  • Experience performing complex technical tasks with minimal direction.
  • Bachelor's degree in Computer Science, Information Systems, Engineering, or other related scientific or technical discipline.
  • Experience with Confluence.
  • Experience with advanced analytic features within Excel such as PivotTables, PivotCharts, VLOOKUP.
  • Experience in malware reverse-engineering techniques.
  • Experience in threat hunting in large distributed environments.


Pay Range: At GRVTY, we understand that compensation is influenced by many factors-such as geographic location, federal contract labor categories, wage rates, prior experience, skillsets, education, and certifications. We're proud to offer a work environment that empowers our team to achieve a strong work-life balance. GRVTY provides competitive pay, comprehensive benefits, and meaningful opportunities for professional growth. Our benefits package is designed to support the well-being of our employees and their families, and includes coverage in areas such as healthcare, financial wellness, retirement planning, family assistance, continued education, and paid time off.

Virginia Pay Range

$150,000-$250,000
group id: 90883154
Find GRVTY on Social Media
Recruiters
user avatar
About Us
The next challenge is coming. We're here to answer it. Global threats are mounting. Turbulence and volatility are the new norm. But as America has proven for centuries, when we embrace daring ideas and resourceful development, we light the way forward. GRVTY exists to restore that ethos to American defense. We accelerate national security and advance our strategic edge with every challenge answered. GRVTY is a defense technology company. Our automated ISR&T platforms, software and data solutions help our defense, intelligence and homeland security customers turn insight into action faster and with confidence. Every day, our dedicated employees answer the challenge to rapidly deliver mission and technical expertise to keep America safe and secure.

GRVTY Jobs


Job Category
IT - Security
Clearance Level
Top Secret/SCI
Employer
GRVTY