Kentro.us

Kentro, formerly IT Concepts, Inc., is a mission-driven digital modernization and transformation firm founded in the early 2000s and headquartered in McLean, Virginia. Kentro speci

Cybersecurity Engineer

Location

Worldwide

Posted

9 days ago

Salary

0

Seniority

Senior

Job Description

Cybersecurity Engineer

Kentro.us

Title: Cybersecurity Engineer (TS Cleared) Location: Remote, United States Department: Information Technology Job Description: Category Information Technology Position Type Contingent Location Type Remote Location/Org Data : Name United States Overview Thank you for considering IT Concepts dba Kentro, where innovation drives opportunity and collaboration leads to success. Our dynamic community of experts is fully committed to advancing our customers' missions, fostering professional growth, and making a positive impact on our communities. By joining our supportive community, you will find that Kentro is dedicated to your personal and professional development. Together, we can drive meaningful change, spark innovation, and achieve extraordinary milestones. Kentro is always interested in connecting with experienced Cybersecurity Engineers who hold an active Top Secret clearance and are passionate about protecting enterprise systems, supporting mission-critical operations, and advancing cybersecurity initiatives within complex environments. Ideal candidates bring strong technical expertise, collaboration skills, and experience supporting cybersecurity operations, compliance efforts, and secure infrastructure in government, defense, or highly regulated environments. This posting is intended for candidates who would like to be considered for future opportunities as hiring needs evolve. Our team regularly reviews resumes for both immediate and upcoming openings. If your background aligns with a current or future position, we’ll be in touch. Location: TBD Responsibilities You may be a great fit if you have experience with: - Implementing and maintaining cybersecurity tools, technologies, and security controls across enterprise environments. - Supporting security operations, incident response, threat detection, and vulnerability remediation activities. - Conducting system hardening, patch management, and secure configuration activities in accordance with security standards. - Monitoring and analyzing security events, logs, and alerts to identify and mitigate potential threats. - Supporting RMF, NIST, STIG, ICD 503, or other compliance and accreditation requirements. - Performing vulnerability assessments, risk analysis, and security impact evaluations. - Collaborating with system administrators, network engineers, developers, and leadership to improve overall security posture. - Supporting cloud security initiatives within AWS, Azure, or hybrid environments. - Developing and maintaining cybersecurity documentation, procedures, diagrams, and reports. - Assisting with audits, assessments, POA&M management, and continuous monitoring activities. - Managing multiple competing priorities while supporting mission-critical operations and timelines. Qualifications - Active Top Secret (TS) security clearance or higher. - Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field, or equivalent experience. - 5+ years of experience in cybersecurity, information assurance, or security engineering roles. - Experience supporting enterprise cybersecurity operations in government, defense, or regulated environments. - Strong understanding of cybersecurity principles, network security, system hardening, and risk management frameworks. - Experience with security tools such as SIEM platforms, vulnerability scanners, endpoint protection, or monitoring solutions. - Highly polished communication, presentation, and stakeholder engagement skills. - Ability to work independently and collaboratively in fast-paced environments. Nice to Haves - Security certifications such as Security+, CISSP, CASP+, CEH, or GIAC certifications. - Experience supporting RMF accreditation and authorization processes. - Familiarity with Splunk, Tenable, CrowdStrike, Microsoft Defender, ACAS, or similar tools. - Experience supporting Windows, Linux, and/or cloud-based environments. - Knowledge of scripting or automation using PowerShell, Python, or Bash. - Experience supporting DevSecOps or cloud modernization initiatives. Benefits The Company We believe in generating success collaboratively, enabling long-term mission success, and building trust for the next challenge. With you as our partner, let’s solve challenges, think innovatively, and maximize impact. As a valued member of our team, you have the unique opportunity to work in a diverse range of technology and business career paths, all while supporting our nation and delivering innovative technology solutions. We are a close community of experts that pride ourselves on creating an environment defined by teamwork, dedication, and excellence. We hold three ISO certifications (27001:2013, 20000-1:2011, 9001:2015), two CMMI ML 3 ratings (DEV and SVC) and CMMC Level 2 Certification. Industry Recognition Growth | Inc 5000’s Fastest Growing Private Companies, DC Metro List Fastest Growing; Washington Business Journal: Fastest Growing Companies, Top Performing Small Technology Companies in Greater D.C. Culture | Northern Virginia Technology Council Tech 100 Honoree; Virginia Best Place to Work; Washington Business Journal: Best Places to Work, Corporate Diversity Index Winner – Mid-Size Companies, Companies Owned by People of Color; Department of Labor’s HireVets for our work helping veterans transition; SECAF Award of Excellence finalist; Victory Military Friendly Brand; Virginia Values Veterans (V3); Cystic Fibrosis Foundation Corporate Breath Award Benefits We offer competitive benefits package including paid time off, healthcare benefits, supplemental benefits, 401k including an employer match, discount perks, rewards, and more. We invest in our employees – Every employee is eligible for education reimbursement for certifications, degrees, or professional development. Reimbursement amounts may fluctuate due to IRS limitations. We want you to grow as an expert and a leader and offer flexibility for you to take a course, complete a certification, or other professional growth and networking. We are committed to supporting your curiosity and sustaining a culture that prioritizes commitment to continuous professional development. We work hard; we play hard. Kentro is committed to incorporating fun into every day. We dedicate funds for activities – virtual and in-person – e.g., we host happy hours, holiday events, fitness & wellness events, and annual celebrations. In alignment with our commitment to our communities, we also host and attend charity galas/events. We believe in appreciating your commitment and building a positive workspace for you to be creative, innovative, and happy. Commitment Equal Opportunity Employment & VEVRAA Kentro is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state or local law. Kentro is strongly committed to compliance with VEVRAA and other applicable federal, state, and local laws governing equal employment opportunity. We have developed comprehensive policies and procedures to ensure our hiring practices align with these requirements. As part of our VEVRAA compliance efforts, Kentro has established an equal opportunity plan outlining our commitment to recruiting, hiring, and advancing protected veterans. This plan is regularly reviewed and updated to ensure its effectiveness. We encourage protected veterans to self-identify during the application process. This information is strictly confidential and will only be used for reporting and compliance purposes as required by law. Providing this information is voluntary and will not impact your employment eligibility. Our commitment to equal employment opportunity extends beyond legal compliance. We are dedicated to fostering an inclusive workplace where all employees, including protected veterans, are treated with dignity, respect, and fairness.. #LI-PR1

Related Categories

Related Job Pages

More Security Engineer Jobs

Gartner logo

Senior Director Analyst – Network Security

Gartner

We deliver actionable, objective insight that drives smarter decisions and stronger performance.

Full TimeRemoteTeam 10,001+Since 1979H1B Sponsor

• Create innovative and thought-provoking insights • Develop new insights and offer actionable approaches to clients • Research, analyze, and predict market trends and shifts • Provide clients with actionable advice via virtual or face-to-face interactions • Deliver high-value presentation materials at various events • Actively participate in innovation discussions and collaborate with peers

Texas
$172K - $202.5K / year
Jobandtalent logo

Senior Information Security Engineer

Jobandtalent

The world-leading digital job platform connecting great people with endless opportunities

Full TimeRemoteTeam 1,001-5,000Since 2009H1B Sponsor

• Improve and take ownership of incident management • Improve detection capabilities and reduce noise for the SIEM. Create and improve playbooks. Improve email security. • Developing security guides along with defining, implementing, and monitoring security measures to protect Job&talent. • Improving security tooling, processes, and standards to provide security assurances across the business. • Mentoring and guiding more junior engineers • Use our CSPM tool to monitor cloud security configurations across AWS, Azure, and Google Cloud Platform. • Working closely with DevOps teams to integrate security into the cloud deployment environment and pipeline. • Performing risk assessments, threat modeling, and security reviews. • Improve logging, visibility, and evidence collection across corporate and production systems.

Spain
ProArch logo

Security Analyst L1

ProArch

Consulting and technology- enabled by cloud, guided by data, fueled by apps, and secured by design.

Full TimeRemoteTeam 201-500H1B Sponsor

Role Description Are you passionate about cybersecurity and eager to make a difference? Join our Security Operations Center (SOC) as a Security Analyst I (SOC). In this role, you'll be at the forefront of monitoring, detecting, and responding to security incidents. With 2-3 years of experience in cybersecurity, you'll bring your strong understanding of security principles and excellent analytical skills to our fast-paced environment. You'll work closely with our team to ensure effective incident response and resolution, contributing to the continuous improvement of our SOC processes and procedures. If you're ready to take your career to the next level and be part of a dynamic and challenging environment, we encourage you to apply! Communication skills are essential, as you will be the technical escalation point for the SOC Team. You'll need to act proactively to ensure smooth security operations and effective collaboration during your shift. A key outcome of this position is to continuously improve the efficiency and quality of the Security Operations Center. Adhering to the processes and procedures documented is an important aspect to successful SOC operations. Responsibilities: - SOC Dashboard Monitoring. - First Response to Alerts generated from Security Solutions ingested in the SIEM/SOAR Tool. - Verifying the Facts and Enriched Data in Incidents using SOAR Platform. - Preliminary triage based on the facts from the SOAR. - Sending email notifications for Medium & lower priority alerts to the client for confirmation on potentially false or benign alerts. - Helping seniors in triage, evidence collection, incident documentation, etc. - Reporting to the Shift Lead about the alerts handled during the shift and updating the SHO Sheet. - Escalation of Incidents based on the preliminary triage using the escalation workflow in case of possible true positives. - Identifying daily repeat false positive alerts, and interesting patterns based on monitoring of alerts. - Reporting any tool outages or monitoring downtime during one’s own shift to the Shift Lead or Leads asap. - Performing Monthly Maintenance Tasks for Health Checks for the Security Monitoring and Response Tools. - Develop, test, and fine-tune detection rules and use cases based on log sources, threat intelligence, attack patterns, and client requirements. - Identify emerging threats and incorporate them into use-cases for alerts and detections. - Optimize and refine alert thresholds and logic to minimize false positives and enhance detection accuracy. - Leverage expertise in Microsoft 365 Defender/Defender XDR, Microsoft Defender for Endpoint, Defender for Office 365 and Entra ID Protection to improve overall threat detection and response. - Analyze security logs and telemetry data for signs of compromise, anomalous activities, or malicious behavior. - Prioritize the work effectively and handle shifting priorities professionally. - Work closely with cross-functional teams (IT, Cloud Operations, Application Development) to mitigate security risks and improve SOC capabilities. - Create detailed reports and post-analysis reports to communicate findings and recommendations to technical and non-technical stakeholders. - Contribute to continuous improvement of SOC processes, including SOPs, playbooks, runbooks, and escalation procedures. - Stay updated with the latest threat landscape, vulnerabilities, and attack methods. - Share knowledge and insights with other SOC analysts and participate in team knowledge-sharing sessions. - Participate in red/blue team exercises to test and improve detection and response capabilities. Qualifications - Strong understanding of cybersecurity principles and best practices. - Proficiency in using security monitoring tools and technologies. - Excellent analytical and problem-solving skills. - Strong communication skills, both written and verbal. - Ability to work effectively in a team environment. - Attention to detail and a proactive approach to identifying and addressing security issues. - Experience working with Security Information and Event Management (SIEM) systems, preferably Microsoft Sentinel. - Knowledge of network security, endpoint security, identity protection and cloud security. - Familiarity with incident response frameworks and methodologies. - Knowledge of Microsoft Sentinel KQL (Kusto Query Language) for custom queries and rule creation is preferred. - Familiarity of how SOAR (Security Orchestration and Automated Response) works and ability to provide workflows which can be used for automating SOC responses. - Knowledge of security frameworks such as MITRE ATT&CK. - Industry knowledge and experience in Managed Detection and Response (MDR) technologies. - Experience working in a Managed Security Operations or Security Team is preferred. - Knowledge of ITIL Foundation Framework. - Experience or knowledge of various Microsoft Security and Compliance tools is preferred: - Microsoft Sentinel - Defender for Endpoint - Defender for Office 365 - Entra ID Identity Protection - Defender for Identity - Defender for Cloud Apps - Defender for Cloud - Defender XDR - Defender for IoT - Entra ID & Intune - Microsoft Purview, IRM, DLP, Insider Risk - Experience of CrowdStrike EDR and/or IDP is highly desirable. - Knowledge / Experience handling OT Security alerts is desirable. - Working Knowledge of Vulnerability Management tool. - Security Awareness Training using tools such as KnowBe4. - Desirable to have knowledge of Privacy Compliance Frameworks like HIPPA, GDPR, SHIELD. - Bachelor’s degree in computer science/engineering/IT/Computer Applications or significant demonstrable experience in IT Security / IT. - Outstanding Written, Verbal, Technical, Non-Technical, communication & presentation skills. - Self-directed with the ability to prioritize and handle SOC Operations and Alert inflow. - Eager learner continually improving skill sets, earning certifications, and gaining industry knowledge. - Very good analytical skills. - Outstanding written communication and verbal skills. - 95% of our clients are from USA. Thus, a good command over English language is a must. - Good to have any of these Microsoft Certifications: SC-200, SC-900, AZ-500, SC-300, SC-400. - Relevant certifications such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH) are preferred.

India
Full TimeHybridTeam 1,001-5,000Since 1997H1B No Sponsor

Title: Senior Cyber Security Engineer (Job 1356) Location: Bethesda, Maryland Job Description: About Us DLH delivers improved health and national security readiness solutions for federal programs through science research and development, systems engineering and integration, and digital transformation. Our experts in public health, performance evaluation, and health operations solve the complex problems faced by civilian and military customers alike by leveraging advanced tools – including digital transformation, artificial intelligence, data analytics, cloud enablement, modeling, and simulation, and more. With over 2,400 employees dedicated to the idea that “Your Mission is Our Passion,” DLH brings a unique combination of government sector experience, proven methodology, and unwavering commitment to innovation to improve the lives of millions. Overview The Senior Cybersecurity Engineer serves as a technical leader within the National Institute on Aging (NIA) Information System Security Office (ISSO) by designing, implementing, and maintaining security controls that protect NIA information systems, data, and infrastructure. This role ensures compliance with federal cybersecurity standards while proactively identifying and mitigating risks across systems supporting scientific research and administrative operations. This senior-level role is critical to safeguarding systems that support cutting-edge aging research. The ideal candidate is proactive, detail-oriented, and committed to continuous learning in a rapidly evolving cybersecurity landscape. The position requires strong technical expertise, familiarity with federal security frameworks, and the ability to collaborate with system owners, researchers, and IT teams. Responsibilities - Advise on ZTA road map and provide system specific Zero Trust report cards - Conduct security assessments, vulnerability scans, and risk analyses - Monitor system security posture and respond to incidents in coordination with NIH security operations - Implement and manage security tools such as SIEM, endpoint protection, and vulnerability management platforms - Ensure compliance with FISMA, NIST SP 800-53, and NIH/HHS security policies - Design, implement, and maintain cybersecurity controls aligned with NIST RMF (Risk Management Framework) - Support system Authorization to Operate (ATO) processes, including preparation and maintenance of security documentation (SSP, POA&M, SAR) - Provide technical guidance to system owners on secure architecture and system hardening - Support continuous monitoring activities and reporting requirements - Assist with incident response, forensic analysis, and remediation activities - Participate in audits and provide required artifacts and evidence Qualifications - Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent experience) - 10+ years of progressive experience in cybersecurity engineering, information security, or related roles - CISSP industry certification - Hands-on experience with NIST RMF and federal compliance frameworks (e.g., FISMA, NIST SP 800-53) - Experience supporting ATO processes and developing security documentation (SSP, POA&M, SAR) - Strong understanding of network security, system hardening, identity and access management, and vulnerability management - Experience with security tools such as SIEM (e.g., Splunk), vulnerability scanners (e.g., Tenable, Qualys), and endpoint protection platforms - Experience with Zero Trust Architecture principles - Knowledge of cloud security principles (e.g., AWS, Azure, or GCP) - Familiarity with incident response processes and security operations - Must be able to obtain a Public Trust clearance - On-site or hybrid depending on organizational needs. - Works closely with ISSOs, system owners, cloud engineers, and research staff - Supports a mission-driven environment focused on protecting sensitive biomedical research data - Participates in cross-functional security and compliance initiatives Preferred Qualifications - Master’s degree in Cybersecurity, Information Assurance, or related field - Relevant industry certifications such as CGRC, CISA, CISM, CEH, Security+, or GSEC - Experience within federal agencies, NIH, or HHS environments - Knowledge of FedRAMP and cloud authorization processes - Experience with DevSecOps practices and automation tools - Familiarity with container security and modern application architectures - Strong scripting skills (e.g., Python, PowerShell, Bash) - Excellent communication skills and ability to translate technical risks for non-technical stakeholders. Basic Compensation: $157,000 - $171,000 yearly salary The salary range listed reflects what we reasonably expect to pay for this role at the time of posting. The final offer may vary based on skills, experience, geographic location, market conditions, and internal equity. Additional compensation may include performance incentives and program-specific awards. We do not use salary history to determine compensation, in line with applicable law. Benefits DLH Corp offers our employees an excellent benefits package, including Personal Time Off (PTO), medical, dental, vision, supplemental life with AD&D, short and long-term disability, flexible spending accounts, parental leave, legal services, and more. We want our employees to save for their future; therefore, we offer a 401(k) Retirement Plan, which includes a matching component. DLH is dedicated to your career development, providing training to help drive success, with access to our best-in-class e-learning suite for formal and informal learning, professional and technical certification preparation, and education assistance at accredited institutions.

Maryland
$157K - $171K / year