G

Lead Cybersecurity Engineer

GovServicesHub
Contract
On-site
Richmond, Virginia, United States
Cyber Security Engineer

Job Location: Richmond, VA (Hybrid – 2 days onsite: Tuesday and Wednesday, 3 days remote)

Note: Candidates must be currently local within a commutable distance. The manager is not interested in candidates who will need to relocate to accept the offer.

Job Description:

The Lead Cybersecurity Engineer will assist the CIO in planning and implementing key security initiatives, managing vulnerabilities, responding to security threats, ensuring compliance, and handling security operations and incidents. The role requires overseeing the daily security activities in collaboration with IT and IS teams, conducting security monitoring, and helping to design future network and application architectures to enhance security monitoring.

Key Responsibilities:

  • Lead cybersecurity operations and oversee daily security activities in coordination with IT and IS teams.
  • Monitor security events, logs, and anomalies, and manage Security Operations Center (SOC) tools and staff.
  • Analyze security data across the organization to recreate incidents and assess vulnerabilities.
  • Correlate security data to detect and investigate threats.
  • Manage SIEM operations, including creating security baselines and performing routine traffic analysis.
  • Participate in network and application architecture design to ensure robust security monitoring.
  • Provide security leadership, supervision, and performance management.
  • Ensure compliance with cybersecurity policies and regulations.

Certifications: CISSP or CISM is highly desired.

Interview Process: Initial web-based interview, with the possibility of an in-person follow-up interview if necessary.

Skill Matrix:

Skill
Required / Desired
Experience (Years)
Current experience as a Cybersecurity Lead or Manager
Required
3+
Analyzing data across an organization to recreate incidents/events
Required
7+
Overseeing daily workflow, schedules, and assignments of security staff
Required
5+
Leadership: Upholding integrity, leadership, and performance standards
Required
5+
Overseeing SIEM security operations, including creating baselines
Required
5+
Correlating security data to detect and investigate threats
Required
7+
Routine traffic analysis, log review, and anomaly detection
Required
7+
Experience using SIEM tools (Splunk, Trellix, etc.)
Required
5+
Managing an on-premise Security Operations Center (SOC)
Required
5+
Network and architecture design experience
Required
5+
CISSP or CISM Certification
Preferred