Cyber Security Engineer

Daniels Manufacturing Corporation

Orlando (FL)

On-site

USD 80,000 - 110,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Daniels Manufacturing Corporation in Orlando, Florida is seeking a Cyber Security Engineer to support CMMC Level 2 certification efforts. The candidate will manage NIST SP 800‑171 control domains and oversee security operations for both on-premises and cloud environments.

This role requires strong skills in Windows Server and Active Directory, along with knowledge of Microsoft Sentinel and security fundamentals. The ideal candidate will assist in ensuring a robust security posture while supporting team compliance and operations.

Qualifications

  • Hands-on experience with Windows Server, Active Directory, and Group Policy.
  • Familiarity with Microsoft Defender (Endpoint, Identity, or O365).
  • Experience with Hyper-V or equivalent enterprise virtualization platform.

Responsibilities

  • Support CUI / FCI scoping activities for CMMC Level 2.
  • Maintain assessment-ready evidence mapped to NIST SP 800‑171 control domains.
  • Administer and tune Microsoft Sentinel for security alerts.

Skills

NIST SP 800‑171 knowledge
Windows Server experience
Active Directory management
Microsoft Defender knowledge
Network security fundamentals
Documentation skills

Education

3+ years in systems administration

Tools

Microsoft Sentinel
Hyper-V
Microsoft Azure

Job description

Description

We are seeking a Cyber Security Engineer with a strong security focus to support our CMMC Level 2 certification effort under DFARS. The right candidate will own assigned NIST SP 800‑171 control domains, drive Microsoft security platform operations, and help protect a hybrid environment spanning on‑premises infrastructure and cloud services including Azure, Defender, Sentinel, and Hyper‑V.

Essential Job Functions
CMMC Level 2 / Cybersecurity Compliance
  • Support CUI / FCI scoping activities, including identifying systems, users, data flows, enclaves, cloud services, endpoints, and third‑party services in scope for CMMC Level 2.
  • Maintain assessment‑ready evidence mapped to NIST SP 800‑171 control domains and CMMC assessment requirements in the System Security Plan (SSP).
  • Identify, track, and remediate gaps via the Plan of Action & Milestones (POA&M).
  • Support C3PAO third‑party assessment preparation; build and maintain assessment‑ready evidence packages including screenshots, configuration exports, policy references, ticket records, vulnerability scan results, audit logs, training records, and control implementation narratives.
  • Maintain audit logging, log integrity, and SIEM operations.
  • Conduct periodic vulnerability scans and coordinate remediation with the team.
  • Assist in developing and enforcing security policies, procedures, and user awareness training.
  • Ensure security‑relevant changes are documented, approved, tested, and traceable through the ITSM or change management process.
Microsoft Security Platform Operations
  • Administer and tune Microsoft Sentinel — build and maintain analytics rules, workbooks, and incident response playbooks.
  • Manage Microsoft Defender for Endpoint, Identity, and Office 365 — configure policies, investigate alerts, and drive remediation.
  • Maintain Azure security posture including Entra ID (Azure AD), Conditional Access, PIM, and role‑based access controls.
  • Support and manage Hyper‑V virtualization environments including VM provisioning, snapshots, and performance monitoring.
  • Leverage Microsoft Purview for data classification, sensitivity labeling, and compliance reporting.
Infrastructure & Systems Administration
  • Administer and harden Windows Server, Active Directory, and Group Policy environments.
  • Maintain network security posture including firewall rules, VLANs, and access control configurations.
  • Maintain asset inventory, software inventory, secure configuration baselines, and change control evidence for servers, endpoints, network devices, cloud services, and security tools.
  • Support endpoint management and patch compliance using enterprise ITSM and endpoint management tooling.
  • Provide Tier 2/3 escalation support for security‑relevant endpoint, identity, access, and infrastructure issues.
  • Support ERP and line‑of‑business application integrations from an IT infrastructure and security perspective as needed.
Security Operations
  • Monitor security alerts across Microsoft Sentinel and Defender, investigate incidents, and expedite per defined IR procedures.
  • Support DFARS 252.204‑7012 cyber incident response obligations, including evidence preservation, incident documentation, escalation, and coordination with leadership and external partners.
  • Manage privileged access, MFA enforcement, and identity governance across on‑premises and cloud environments.
  • Assist with endpoint detection and response (EDR) configuration and hardening baselines.
  • Participate in tabletop exercises and contribute to business continuity and DR planning.
  • Support backup, recovery, business continuity, and disaster recovery controls, including backup monitoring, restore testing, retention validation, and protection of backup data from unauthorized modification or deletion.
  • Coordinate with external MSPs, CMMC consultants, C3PAOs, auditors, software vendors, and managed security providers to support remediation, evidence collection, and assessment readiness.
Requirements
Qualifications
Required
  • 3+ years of experience in systems administration or IT infrastructure, with demonstrated hands‑on security responsibilities and willingness to grow into CMMC control ownership.
  • Demonstrated knowledge of NIST SP 800‑171 or CMMC Level 2 requirements.
  • Hands‑on experience with Windows Server, Active Directory, and Group Policy.
  • Working knowledge of Microsoft Defender (Endpoint, Identity, or O365) and Microsoft Sentinel.
  • Familiarity with Microsoft Azure and Entra ID administration.
  • Experience with Hyper‑V or equivalent enterprise virtualization platform.
  • Understanding of network security fundamentals: firewalls, VLANs, DNS, DHCP.
  • Strong documentation skills — SSP/POA&M experience a significant plus.
Preferred
  • CompTIA Security+, CySA+, or SSCP certification (or actively pursuing).
  • Microsoft certifications: SC‑200, AZ‑500, SC‑300, SC‑400 a strong plus.
  • Familiarity with enterprise ITSM platforms and endpoint management tooling.
  • Familiarity with DoD SPRS reporting and GRC tools.
  • Prior experience working in a Defense Industrial Base (DIB) environment.
  • Exposure to ERP security scoping (Infor CloudSuite or similar).

Management reserves the right to assign or reassign duties and responsibilities to this job at any time.

EOE, including disability/vets

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

Dmctools • Orlando (FL)

On-site
USD 80,000 - 120,000
Cyber Security Compliance Engineer
Cyber Security Compliance Engineer

Leonardo • Philadelphia

On-site
USD 120,000 - 160,000
Cybersecurity Compliance Engineer: NIST/CMMC 2.0 Specialist
Cybersecurity Compliance Engineer: NIST/CMMC 2.0 Specialist

Leonardo • Philadelphia

On-site
USD 120,000 - 160,000
Senior Information Security Specialist
Senior Information Security Specialist

Insight Global • Horsham (PA)

On-site
USD 120,000 - 170,000
Cybersecurity Administrator
Cybersecurity Administrator

QED Systems Inc • Virginia Beach (VA)

On-site
USD 55,000 - 76,000
Competitive benefits package
Employee Assistance Program
CMMC Security Engineer
CMMC Security Engineer

Red Cup IT, Inc. • United States

On-site
USD 90,000 - 120,000
CMMC Security Engineer
CMMC Security Engineer

Red Cup IT, Inc. • Los Angeles (CA)

On-site
USD 90,000 - 130,000
IT and Security Manager
IT and Security Manager

brightline • Ashburn (VA)

On-site
USD 150,000 - 190,000
Cyber Security Specialist
Cyber Security Specialist

X-Bow Systems Inc. • Luling (TX)

On-site
USD 70,000 - 110,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

AV • North Carolina

On-site
USD 111,000 - 170,000
Medical, dental, vision benefits
401(k) with company matching
9/80 work schedule
+1