Senior Cyber Security Engineer

ASRC Federal Holding Company

Beltsville (MD)

Hybrid

USD 111,000 - 180,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health insurance
401(k)
Education assistance
Competitive pay

Job summary

ASRC Federal is seeking a Senior Cyber Security Engineer to join the Shared Services team in Beltsville, MD. The role emphasizes enterprise security engineering, vulnerability/compliance management, tool administration, incident response, and Tier II SOC support within an enterprise environment.

Ideal candidates have extensive hands-on experience with vulnerability management, STIG benchmarking, and Windows/AD environments.

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, IT or equivalent.
  • 9+ years hands-on in vulnerability scanning, compliance, STIG benchmarking, configuration, and adjudication.
  • U.S. Citizen or Permanent Resident (Green Card).
  • Experience in cybersecurity engineering, vulnerability management, security operations, incident response.
  • Strong Windows OS understanding: AD, GPOs, permissions, auth, access control.
  • Strong networking knowledge: TCP/IP, DNS, HTTP/S, VPNs, firewalls.
  • Experience with EDR/EPP/XDR endpoints.
  • PowerShell proficiency; Python or similar scripting helpful.
  • Analytical, troubleshooting, documentation, and communication skills.
  • Ability to work independently in a fast-paced enterprise.

Responsibilities

  • Operate and maintain enterprise vulnerability and compliance scanning platforms.
  • Perform vulnerability assessments, configuration assessments, and remediation tracking.
  • Conduct STIG benchmarking, adjudication, and documentation of exceptions.
  • Manage security techs like EDR/EPP/XDR and SIEM; identify gaps in coverage.
  • Investigate and respond to security alerts including phishing, malware, and credential compromise.
  • Serve as Tier II/III escalation for complex investigations and incidents.
  • Lead incident response activities: triage, containment, eradication, recovery, RCA.
  • Maintain understanding of Windows/AD, GPOs, permissions, authentication, access controls.
  • Support security engineering across Azure and Microsoft 365 including GCC/GCC High.
  • Develop scripts in PowerShell/Python to support operations.
  • Collaborate with cross-functional teams during investigations and remediation.
  • Document findings, timelines, remediation steps, and risk adjudications.
  • Develop security metrics, dashboards, and reports for stakeholders.

Skills

Vulnerability scanning
Security operations
PowerShell
Python
Windows AD
EDR/EPP/XDR
SIEM
Incident response
Networking

Education

Bachelor's degree

Tools

Tenable Security Center
GCC High
Microsoft Defender
Azure

Job description

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work.

ASRC Federal is seeking a Senior Cyber Security Engineer to be a member of our Shared Services team located in Beltsville, MD.

Work location : Hybrid/Primarily Remote (at least 2 days onsite)

Summary : The ideal candidate will be responsible for enterprise security engineering, vulnerability and compliance management, security tool administration, incident response, and Tier II Security Operations Center (SOC) support within an enterprise environment. This role focuses on implementing and maintaining security technologies, performing vulnerability and configuration assessments, identifying and remediating security weaknesses, responding to cyber incidents, and improving enterprise security capabilities.

The Senior Cyber Security Engineer will have strong hands-on experience with vulnerability management, security configuration assessments, STIG benchmarking and adjudication, Windows and Active Directory environments, endpoint security technologies, network architecture, and enterprise security operations. Experience with Tenable architecture, cloud security, and Microsoft GCC/GCC High environments is highly desirable.

Key Responsibilities
  • Operate and maintain enterprise vulnerability and compliance scanning platforms, including scan policies, repositories, asset groups, credentials, schedules, and reporting.
  • Perform vulnerability assessments, security configuration assessments, and compliance scans to identify, prioritize, and track remediation of security weaknesses.
  • Conduct STIG benchmarking, analyze findings, perform technical adjudications, and document remediation or applicable exceptions.
  • Manage and optimize enterprise security technologies such as EDR/EPP/XDR, and SIEM, and identify and remediate gaps in security coverage, configuration, logging, and telemetry.
  • Investigate and respond to security alerts involving phishing, malicious URLs, malware, credential compromise, suspicious authentication activity, and endpoint threats.
  • Serve as a Tier II/Tier III escalation point for complex security investigations, engineering issues, and cybersecurity incidents.
  • Perform incident response activities including triage, containment, eradication, recovery, and root cause analysis.
  • Maintain strong understanding of Windows and enterprise infrastructure, including Active Directory, Group Policy Objects (GPOs), permissions, authentication, authorization, and access controls.
  • Support security engineering and assessment activities across Microsoft Azure and Microsoft 365 environments, including GCC and GCC High where applicable.
  • Develop scripts and automation using PowerShell, Python, or similar technologies to support security operations, vulnerability management, assessment, and response activities.
  • Collaborate with infrastructure, networking, endpoint, identity, cloud, and application teams during security investigations, assessments, and remediation efforts.
  • Document technical findings, security assessments, incident timelines, remediation recommendations, and risk-based adjudications.
  • Develop and maintain security metrics, KPIs, dashboards, and on-demand reports to communicate security posture, trends, risks, and operational performance to technical and business stakeholders.
Required Qualifications
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent professional experience.
  • 9+ years of hands-on experience in vulnerability scanning, compliance assessments, STIG benchmarking, security configuration assessments, and technical adjudication.
  • Must be a U.S. Citizen or Permanent Resident (Green Card Holder).
  • Experience with cybersecurity engineering, vulnerability management, security operations, incident response, or related fields.
  • Strong understanding of Windows operating systems and enterprise Windows architecture, e.g., Active Directory, Group Policy Objects (GPOs), permissions, authentication, authorization, and access control.
  • Strong understanding of TCP/IP, DNS, HTTP/S, VPNs, firewalls, and enterprise network architecture.
  • Experience with endpoint security technologies such as EDR, EPP, or XDR.
  • Proficiency in PowerShell; experience with Python or similar scripting languages preferred.
  • Strong analytical, troubleshooting, documentation, and communication skills.
  • Ability to work independently and collaboratively in a fast-paced enterprise environment.
Preferred Qualifications
  • Certifications such as CISSP, GCIH, GCIA, Security+, CEH, or equivalent (at least one is required).
  • Experience with Tenable Security Center/Tenable Vulnerability Management, including enterprise architecture, repositories, asset tagging, scan configuration, credentialed scanning, and compliance scanning.
  • Experience with DISA STIGs, SCAP, security benchmarks, and STIG adjudication.
  • Experience with Microsoft security technologies such as Defender for Endpoint, Defender for Identity, Defender for Office 365, and Microsoft Sentinel.
  • Experience with Microsoft Azure, Microsoft 365, GCC, and GCC High security configurations.
  • Experience with MITRE ATT&CK, threat intelligence platforms, SOAR, or security automation.
  • Experience supporting cybersecurity frameworks such as CMMC, NIST 800-53, NIST 800-171, FedRAMP, or DISA security requirements.

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

EEO Statement

ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.

Job Details

Job Family Information Technology

Job Function Cyber Security

Pay Type Salary

Hiring Min Rate 111,000 USD

Hiring Max Rate 180,000 USD

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cyber Security Engineer
Senior Cyber Security Engineer

Colonial Group • Beltsville (MD)

Hybrid
USD 120,000 - 160,000
Senior Cyber Tools Architect/Engineer
Senior Cyber Tools Architect/Engineer

ASRC Federal • Quantico (VA)

On-site
USD 140,000 - 210,000
Health care
Dental
Vision
+4
Expert Penetration Tester
Expert Penetration Tester

ASRC Federal • Washington

Hybrid
USD 140,000 - 190,000
Competitive pay and benefits
Cloud Threat Analyst
Cloud Threat Analyst

ASRC Federal • Hanover (MD)

On-site
USD 115,000 - 135,000
Health benefits
401(k)
Education assistance
+1
RMF Cybersecurity Analyst
RMF Cybersecurity Analyst

ASRC Federal • Virginia (IL), Northern (KY)

On-site
USD 90,000 - 120,000
Health care
Dental
Vision
+4
Senior Software Engineer Developer - Secret clearance
Senior Software Engineer Developer - Secret clearance

ASRC Federal • Patterson (OH)

On-site
USD 100,000 - 125,000
Health care
401(k)
Paid time off
+1
RMF Cybersecurity Analyst
RMF Cybersecurity Analyst

ASRC Federal • Quantico (VA)

On-site
USD 70,000 - 100,000
Health care
Dental
Vision
+4
Senior Cyber Security Engineer
Senior Cyber Security Engineer

ASRC Federal • Ashburn (VA)

On-site
USD 120,000 - 190,000
Health insurance
401(k)
Education assistance
Senior Cyber Defense Engineer (Hybrid/Remote)
Senior Cyber Defense Engineer (Hybrid/Remote)

ASRC Federal Holding Company • Beltsville (MD)

Hybrid
USD 111,000 - 180,000
Health insurance
401(k)
Education assistance
+1
Senior Software Engineer
Senior Software Engineer

ASRC Federal • Washington

On-site
USD 110,000 - 150,000
Health care
Dental
Vision
+4