Job DescriptionThe Technical Lead will support enterprise cybersecurity operations, security engineering, tool integration, risk management, and technical modernization efforts across a complex federal environment.
The position will work closely with government stakeholders, system owners, security personnel, and technical teams to ensure cybersecurity capabilities are effectively implemented, maintained, integrated, and aligned with mission requirements.
Required SkillsKey Responsibilities- Provide technical leadership for enterprise cybersecurity operations and initiatives.
- Lead the architecture, engineering, integration, deployment, configuration, and lifecycle management of cybersecurity technologies.
- Support the implementation and continuous monitoring of security controls and cybersecurity requirements.
- Develop and maintain technical documentation, security artifacts, dashboards, metrics, and reports.
- Integrate cybersecurity platforms, enterprise systems, APIs, connectors, and automated workflows.
- Support SIEM, SOAR, EDR/XDR, vulnerability management, cloud security, identity monitoring, and related cybersecurity technologies.
- Analyze cybersecurity data and metrics to identify trends, risks, vulnerabilities, and opportunities for improvement.
- Coordinate technical activities with enterprise architecture, security engineering, change management, and government stakeholders.
- Evaluate emerging cybersecurity technologies and provide recommendations regarding adoption, integration, optimization, or consolidation.
- Support continuous improvement of cybersecurity operations, detection capabilities, reporting, and overall security posture.
- Provide technical guidance and mentorship to cybersecurity personnel and other team members.
- Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.
- Minimum 8 years of relevant experience in cybersecurity, security operations, security engineering, or a related technical discipline.
- Active Secret security clearance.
- Demonstrated experience supporting enterprise cybersecurity environments.
- Experience with cybersecurity tools, platforms, and enterprise security technologies.
- Experience developing or managing integrations, APIs, connectors, or automation between security tools and enterprise systems.
- Strong understanding of cybersecurity operations, risk management, and security best practices.
Desired SkillsPreferred Qualifications- CISSP, CISM, GCIA, or equivalent cybersecurity certification.
- Experience administering and integrating enterprise SIEM/SOAR platforms.
- Experience with EDR/XDR, vulnerability management, and Cloud Security Posture Management (CSPM) tools.
- Experience developing cybersecurity dashboards, metrics, KPIs, and automated reporting.
- Experience supporting Department of State or other civilian federal agency cybersecurity programs.
- Experience with NIST RMF, FISMA, NIST SP 800-37, and NIST SP 800-53.
- Experience reducing false positives and improving detection content and cybersecurity analytics.
- Relevant vendor, cloud, or cybersecurity platform certifications.
- Experience supporting 24/7/365 security operations environments.
Additional DetailsSecurity Clearance- Active Secret security clearance required.
- Ability to maintain the required clearance throughout employment.