
Principal Defense Cyber Operations Engineer, Mandiant, Public Sector
- Columbus, OH
- Permanent
- Full-time
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.
- 8 years of experience in a Detection Engineering or related role.
- 6 years of experience with detection tuning and creation leveraging various security tools (e.g., SIEM, EDR, or NDR tools).
- Active US Government Top Secret/Sensitive Compartmentalized Information security clearance.
- GIAC Certified Intrusion Analyst (GCIA), GIAC Certified Incident Handler (GCIH), CompTIA PenTest+, CompTIA Cloud+, or equivalent qualifications listed in DoD 8140.3's Cyber Defense Analyst role.
- Experience with SPL, KQL, YARA-L, Kusto or similar SIEM query languages, with an understanding of SIEM log flow, aggregation, and forwarding.
- Ability to engage and collaborate with client stakeholders and other groups within the customer environment to drive resolution for security issues.
- Completed relevant military cyber training, such as the Joint Cyber Analysis Course (JCAC), Intermediate Cyber Core (CTN), or Navy Interactive ON-NET Operator.
- Analyze network traffic, use SIEM platforms, and hunt for active and dormant threats to strengthen cyber defenses. This also involves operationalizing threat intelligence and developing custom detection signatures.
- Perform initial breach detection, assess threats, and provide comprehensive support during security incidents. This includes conducting deep technical analysis and performing root cause analysis of incidents.
- Configure and manage enterprise firewalls, and apply cybersecurity principles to organizational requirements to improve defenses.
- Use security validation tools for continuous testing of security controls. Identify systemic issues based on vulnerability and configuration data.
- Assist with government Authorization to Operate (ATO) efforts, create documentation, and deliver on-the-job training and cyber exercises to improve team readiness.