Secure our Nation, Ignite your Future
Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International Corporation, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement.
Currently, ManTech is seeking a motivated, career, and customer-oriented Cybersecurity Engineer to join our SOC Cybersecurity team and provide unparalleled support to a federal customer and begin an exciting and rewarding career within ManTech.
Responsibilities include, but are not limited to:
Support and maintain SIEM and IPS/IDS implementation(s). Primary day-to-day job duties involve log sources management, Operation & Maintenance, and working with Splunk ES and Cisco SNA
Experience with infrastructure management, support and system administration in Red Hat Enterprise Linux and Windows environments
Expert in Security Information and Event Management (SIEM) system data onboarding and normalization, Splunk ES or equivalent
Demonstrated experience tuning Splunk ES or equivalent as an enterprise SIEM solution preferred
1+ years of hands-on experience with Cisco Secure Network Analytics (Cisco SNA) or equivalent NEXTGEN Firewall/IPS architecture or deployment for a large-scale enterprise environment
Reporting to the Security Operation Center Program Manager, you will perform requirements analysis, design, and integration of complex application add-on and functionalities associated with a SIEM and NEXTGEN Firewall/IPS.
Configuring and connecting Custom Log Sources for business applications.Client runs many custom business applications
Providing enterprise level disaster recovery solutions related to cybersecurity operations
As a part of the Cybersecurity Operation Team, your responsibilities include but are not limited to:
Experience with infrastructure management and support and system administration in Windows and Red Hat Enterprise Linux environments
Provide Security Engineering support including maintenance tickets for a large Intrusion Detection Management System
As a Security Engineer, you will be responsible for providing critical systems and application management support
Understanding for security event analysis and intrusion detection (IDS/IPS Incident response, triage, incident analysis and remediation)
Advanced Automation, Scripting and API Engineering Background
Knowledge of Active Directory, Windows security, endpoint security, IDS/IPS, or security tools
Experience with Cloud Solution build preferred
Ability to multitask and solve complex technical problems
Knowledge of networking protocols
Other duties as assigned
Basic Qualifications:
A minimum of 4 years of professional experience in Information Technology or a directly related field
BA/BS in Computer Science, Information Security, or related field
Possess strong technical written and verbal communication skills essential
CISSP, Security+ CE, Network+ certifications
Preferred Qualifications:
RHEL Certified Systems Engineer or RHEL Certified Systems Administrator or Linux+ certifications preferred
Preferred tool experience: Cisco Secure IPS/NGFW IPS, Splunk Enterprise Security, Splunk SOAR, Splunk UBA, CrowdStrike EDR, and Trellix Endpoint Security
Security Clearance Requirements:
US Citizenship
Must have an active Top Secret clearance
Physical Requirements:
Sedentary work that primarily involves sitting/standing/walking/Talking and must be able to remain in a stationary position 50%
Moving about to accomplish tasks or moving from one work site to another
The person in this position needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
Requires frequently communicates with co-workers, management, and customers
Communicating with others to exchange information
Working with computers
Must be able to lift and move hardware weighing up to 50 pounds
For all positions requiring access to technology/software source code that is subject to export control laws, employment with the company is contingent on either verifying U.S.-person status or obtaining any necessary license. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. ManTech may choose not to apply for a license for such individuals whose access to export-controlled technology or software source code may require authorization and may decline to proceed with an applicant on that basis alone.
ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.
If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at (703) 218-6000. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.
If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access http://www.mantech.com/careers/Pages/careers.aspx as a result of your disability. To request an accommodation please click [email protected] and provide your name and contact information.