Deloitte - Richmond, VA

posted 9 days ago

Full-time - Mid Level
Richmond, VA
10,001+ employees
Professional, Scientific, and Technical Services

About the position

The Cybersecurity Engineer position at Deloitte's Government and Public Services Cyber Practice focuses on supporting a hyperconverged, multitenant private cloud hosting environment. The role involves implementing and managing cybersecurity solutions across various verticals, ensuring compliance and security for enterprise and tactical applications. The position requires a strong technical background in cybersecurity, particularly within cloud environments, and offers opportunities for professional growth and development.

Responsibilities

  • Serve as overall subject matter expert on Cybersecurity engineering technology and market capabilities/trends.
  • Conduct security scans against the organization's cloud-deployed infrastructure, produce and interpret compliance reports.
  • Validate technical security controls are in place for operating systems, applications, and network appliances, and recommend enhancements.
  • Review proposed configuration changes for security impact.
  • Operate endpoint-protection mechanisms, including high-level reporting and day-to-day administration activities.
  • Work between technical and policy teams to implement, maintain, and monitor technical security configuration controls, including: STIGs, SRGs, and other industry security hardening guidance.
  • Collaborate with internal and external parties to transform high-level technical objectives into comprehensive technical requirements.
  • Use results of vulnerability scans to determine vulnerabilities and develop operational plans to remediate or mitigate vulnerabilities as they are discovered.
  • Install, operate, and maintain Endpoint Security System.
  • Manage Cybersecurity training and certification program Training and Certification Tracking System.
  • Assist hosted customers in obtaining and maintaining RMF and other certifications as required.
  • Review and document change requests; and determine approval or denial of requests.
  • Update and/or assist the hosted system's personnel in updating artifacts of the RMF; i.e., system diagrams (logical and physical) Hardware/Software/Firmware Inventory, Interface & Ports, Protocols and Services listing, etc.
  • Interact with the CSSP, C5ISR, and customer ISSOs/ISSMs on a regular basis.

Requirements

  • Bachelors degree
  • Min of 5 years experience with Mid to senior level Cybersecurity Technical Administration in a cloud environment
  • Active Secret Clearance
  • DoD 8570.01-M IAT level II certification
  • Possess both Baseline and Computing Environment certification as defined in DoD Instruction 8570.01-M
  • Understanding of DOD Risk Management Framework Assessment & Authorization (RMF A&A), FedRAMP, the DOD cloud provisional authorization (PA) process, and the processes to successfully acquire and maintain an Authorization to Operate (ATO)
  • Understanding of network, storage, server, and application technologies
  • Strong understanding of common cyber threat patterns, indicators of compromise, and defenses
  • Working knowledge of DoD STIGs, and IA Vulnerability Management (IAVM)
  • Ability to work onsite 5 days a week in Radford, VA
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Nice-to-haves

  • Strong verbal and written communication skills
  • Experience automating routine administrative tasks desired

Benefits

  • Competitive salary
  • Opportunities for professional growth and development
  • Access to cutting-edge cybersecurity tools
  • Supportive work environment
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service