2930 IT & Software Developer jobs in the US

Security Operations Engineer - Cybersecurity Focus
$174,720 - 195,360
Eliassen Group
East 42nd Street 110, New York
$174,720 - 195,360
Requirements
Must:
- Minimum of 5 years in security operations engineering or incident response, with at least 2 years utilizing Microsoft security tools in Azure.
- Hands-on experience in configuring and optimizing Microsoft Sentinel detections and automating responses using Logic Apps and Playbooks.
- In-depth understanding of FedRAMP Moderate or High baselines and relevant NIST SP 800-53 control families, including AC, AU, CM, IR, RA, SC, and SI.
- Proficient in Defender for Cloud, Azure Policy, and Entra ID including elements like PIM and Conditional Access, as well as Key Vault, Azure Monitor, and Log Analytics.
- Strong incident response expertise encompassing triage, investigation, containment, and post-incident documentation with high-quality audit-ready evidence.
- Experience managing vulnerabilities and misconfigurations while adhering to remediation timelines compliant with FedRAMP.
- Familiarity with scripting and automation using KQL for Sentinel and PowerShell, including basics of ARM, Bicep, or Terraform.
- Excellent documentation and communication skills essential for creating playbooks, evidence packages, and providing updates to stakeholders.
- Preferred experience with Azure Government C High environments.
- Prior involvement in FedRAMP Continuous Monitoring reporting and POA&M lifecycle processes is preferred.
- Experience in aligning native controls and detections with payment or mission-critical workload risk profiles is preferred.
- Knowledge of Microsoft Purview, Defender for Cloud Apps, Entra ID Protection, and Private Link patterns is preferred.
- Relevant certifications such as AZ-500, SC-200, CISSP, or CCSP are preferred.
Responsibilities
- Design, deploy, and refine detections in Microsoft Sentinel, including analytic rules, workbooks, watchlists, and automation through Logic Apps and Playbooks.
- Develop incident response runbooks and orchestration processes for triage, enhancement, and response leveraging Sentinel automation.
- Oversee log onboarding pipelines, data connectors, and normalization within Log Analytics to ensure comprehensive coverage of in-scope resources.
- Perform daily SecOps activities including alert triage, investigations, threat hunting, containment, and reviews post-incident.
- Utilize Defender for Cloud, Defender for Cloud Apps, Entra ID Protection, and Microsoft Defender XDR signals to detect and address threats.
- Maintain documentation of evidence and audit-ready case records, supporting POA&M entries and necessary corrective actions.
- Address misconfigurations and enforce control measures utilizing recommendations from Defender for Cloud, Secure Score, and Azure Policy.
- Collaborate with platform engineering to fix vulnerabilities and manage configuration drift, ensuring timely closures aligned with FedRAMP standards.
- Maintain baseline guardrails via Azure Policy and Blueprints, while overseeing compliance and exceptions through Continuous Monitoring reporting.
- Establish and implement least-privilege access protocols with Entra ID, PIM, Conditional Access, RBAC, and managed identities.
- Coordinate the use of FIPS 140-2 validated cryptography via Key Vault and ensure that encryption standards for both data at rest and in transit are met and demonstrable.
- Manage Azure Firewall, NSGs, Private Link, and DDoS Protection, monitoring for and rectifying anomalies.
- Ensure complete logging and telemetry for network controls are retained, accessible, and analyzable within Sentinel.
- Produce monthly and quarterly artifacts for Continuous Monitoring and uphold necessary supporting evidence.
- Update detection coverage documentation, control implementation narratives, and operational runbooks as environmental changes occur.
- Work closely with compliance stakeholders and assessors, facilitating interviews, gathering evidence, and tracking remediation efforts.
- Integrate security checks seamlessly into CI/CD pipelines using native solutions and support policy adherence and validation.
- Uphold rigorous change management protocols, ensuring all modifications are recorded accurately in the SSP, control evidence, and detection measures.
Description
We are seeking a Security Operations Engineer to enhance and manage a FedRAMP-aligned Azure environment utilizing Microsofts security tools. This hybrid opportunity is open in either New York, NY or Pittsburgh, PA. In this role, you will design detections, oversee incident responses, and ensure continuous monitoring with audit-ready evidence. We offer a contract-to-hire position, and we are committed to providing competitive benefits for our W2 consultants, including medical, dental, and vision coverage, a 401k plan with company matching, and life insurance. As part of our community at Eliassen Group, you will collaborate with various teams to maintain operational excellence and compliance.
Something wrong or incorrect with this job? Tell us in the chat 💬 on the right ➡️
You can find Cyber Security Engineer salaries in the United States here.
How many Cyber Security Engineer jobs are in the United States?
Currently, there are 2930 Security openings. Check also: IAM jobs, SAML jobs, Cisco jobs, Splunk jobs - all with salary brackets.
Is the US a good place for Cyber Security Engineers?
The US is one of the best countries to work as a Cyber Security Engineer. It has a vibrant startup community, growing tech hubs and, most important: lots of interesting jobs for people who work in tech.
Which companies are hiring for Cyber Security Engineer jobs in the United States?
VenHub, AMERICAN SYSTEMS, Trimlite, Menusifu, Inc., Concordia Group, Peraton, Active Datacomm among others, are currently hiring for Security roles in the United States.
The company with most openings is Lockheed Martin Corporation as they are hiring for 272 different Cyber Security Engineer jobs in the United States. They are probably quite committed to find good Cyber Security Engineers.
The company with most openings is Lockheed Martin Corporation as they are hiring for 272 different Cyber Security Engineer jobs in the United States. They are probably quite committed to find good Cyber Security Engineers.