- Location
- Norfolk, VA
- Type
- Full-time
- Department
- IT
- Seniority
- Lead
- Experience
- 4+ years
- Clearance
- Required
- Source
- ApplicantPro
Description
PRINCIPAL TECHNICIAN (CYBER SECURITY)
DEFTEC delivers mission-critical solutions through skillfully delivered services and innovative products. We are inspired by our clients' critical missions and driven to provide the most effective solutions to execute their missions, operational challenges, and requirements. Our dedicated, experienced, and talented employees work closely with our clients to ensure the delivery of exceptional services and products.
POSITION OVERVIEW
The Technician (Cyber Security) assists with maintaining the ongoing confidentiality, integrity and availability of Agency systems and services. This is achieved with a focus on cyber security awareness and compliance, accreditation support and cyber incident response. The Technician serves as the primary point of contact for endpoint security management, firewall and network management monitoring solutions, and vulnerability scan operations. This role supports cyber event investigations and events.
JOB RESPONSIBILITIES:
Information security
- Applies and maintains specific security measures as required by organizational policy and local risk assessments.
- Contributes to the identification of risks that arise from potential technical solution architectures.
- Suggests alternate solutions or countermeasures to mitigate risks.
- Defines secure systems configurations in compliance with intended architectures.
- Supports investigation of suspected attacks and security breaches.
Information assurance
- Follows standard approaches for the technical assessment of information systems against information assurance policies and business objectives.
- Makes routine accreditation decisions.
- Recognizes decisions that are beyond their scope and responsibility level and escalate accordingly.
- Reviews and performs risk assessments and risk treatment plans.
- Identifies typical risk indicators and explains prevention measures.
- Maintains integrity of records to support and justify decisions.
IT infrastructure
- Carries out routine operational procedures, including the execution of specified automation tools/scripts.
- Contributes to maintenance and installation.
- Monitors and reports on infrastructure performance to enable service delivery.
- Resolves issues or refers to others for assistance.
Vulnerability assessment
- Undertakes low-complexity routine vulnerability assessments using automated and semi-automated tools.
- Escalate issues where appropriate.
- Contributes to documenting the scope and evaluating the results of vulnerability assessments.
Information Security Administration
- Works with access controls for firewalls and endpoint security solutions.
- Assists in the operation of day-to-day administrative transactions and systems.
- Performs periodic system backups and produces standard monitoring reports.
- Coordinates user access and maintains security checklists and authorization tables.
- Tests the effectiveness of new or revised information security procedures and tools.
Information Technology (IT) Security Policies
- Performs information gathering and research on key elements of IT security policies.
- Assists senior colleagues in identifying and analysing critical issues in IT security policies.
- Executes IT security policies and standards within a specific region in organization.
- Conducts performance reviews on implementation of IT security policies.
- Generates status reports for senior management to ensure the implementation of IT security policies.
REQUIRED QUALIFICATIONS:
- The candidate must have a currently active NATO SECRET security clearance
- Secondary educational qualification with 3 years post-related experience.
- At least 4 years' practical experience of implementation and maintenance of cyber security systems within a large organization.
- Working experience administrating and monitoring cyber security software.
- Good understanding of cyber security systems and the ability to work independently to solve problems.
- Working experience troubleshooting technical issues and providing technical support to end-users.
- Detailed knowledge and working experience of security and networking technologies including IPv4, Firewalls, Virtual Private Networks, Proxy Servers, Intrusion Detection and Forensic tools.
PREFERRED QUALIFICATIONS:
- Training/Certifications (Desirable): Security Professional certification (CEH, GIAC, ISC2, or other relevant certification)
DEFTEC offers a comprehensive whole-life benefits package that includes medical, dental, vision, holiday, paid time off, 401K with a match, life insurance, short/long-term disability, and educational reimbursement. The DEFTEC team comprises professionals who make a difference daily in crucial national security missions. Our leadership knows that this happens by employing a diverse team that is well cared for. Our top priority is our employees, making DEFTEC an ideal workplace.
Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions. Please get in touch with [email protected] if you require reasonable accommodations.
DEFTEC is a Drug-Free Workplace where post-offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria are met as outlined in our policies.
AAP/EEO STATEMENT
DEFTEC Corp is an Equal Opportunity and Affirmative Action Employer and prohibits discrimination and harassment of any type based on actual or perceived race, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding and medical conditions related to pregnancy, childbirth or breastfeeding), gender, gender identity, and gender expression, religious creed, disability (mental and physical) including HIV and AIDS, medical condition (cancer and genetic characteristics ), genetic information, age, marital status, civil union status, sexual orientation, military and veteran status, denial of family and medical care leave, arrest record and/or any other characteristic(s) protected by federal, state or local law.
This policy applies to all terms of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, training, compensation, benefits, employee activities, and general treatment during employment.
OTHER DUTIES
Please note that this job description is not designed to cover or contain a comprehensive listing of the activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time, with or without notice.