Назад
Company hidden
2 часа назад

Cybersecurity & Compliance Administrator

140 000 - 175 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cybersecurity & Compliance Administrator (Microsoft Purview/Defender, CMMC): Operating and continuously improving security, compliance, and data privacy programs for fusion-energy infrastructure with an accent on Microsoft security administration, incident response, and audit-ready CMMC Level 2 evidence. Focus on maintaining NIST SP 800-171 controls, securing on-premises and air-gapped environments, and building centralized monitoring and response capabilities.

Location: Denver, Colorado; full-time onsite at headquarters. Applicants must be U.S. citizens or nationals, current U.S. permanent residents, or lawfully admitted refugees or asylees.

Salary: $140,000–$175,000 per year

Company

hirify.global develops inertial fusion energy technology and laser architecture to deploy clean fusion power plants and support global decarbonization.

What you will do

  • Configure and administer Microsoft Purview for data classification, labeling, DLP, retention, deletion, eDiscovery, reporting, and compliance evidence.
  • Operate Microsoft Defender controls across identity, endpoints, email, collaboration, and cloud applications; investigate alerts and coordinate remediation.
  • Lead incident response from identification through containment, eradication, recovery, root-cause analysis, and lessons learned.
  • Maintain the CMMC Level 2 System Security Plan, POA&M, CUI boundary, control implementations, and audit-ready evidence aligned with NIST SP 800-171.
  • Design centralized logging and monitoring across cloud, on-premises, restricted, and air-gapped environments, including SIEM, IDS/IPS, and network segmentation.
  • Establish secure transfer and removable-media procedures for air-gapped environments and collaborate on Zero Trust, firewall, and OT/ICS security controls.

Requirements

  • Bachelor’s degree or equivalent practical experience in information technology, cybersecurity, information systems, or a related field.
  • 7+ years of experience in security administration, security operations, compliance operations, or adjacent IT roles with direct security responsibility.
  • Hands-on enterprise experience administering Microsoft 365 security and compliance services, including Microsoft Purview and Microsoft Defender.
  • Experience with security incident response, investigation, documentation, access control, secure configuration, and audit logging in regulated or high-risk environments.
  • Strong written, verbal, technical, and interpersonal communication skills, with the ability to translate security risks into actionable documentation.
  • Must be eligible to work in the United States under the stated citizenship, permanent residence, refugee, or asylum requirements and work onsite in Denver.

Nice to have

  • Experience implementing or operating CMMC Level 2 and/or NIST SP 800-171 controls, including evidence collection and assessment preparation.
  • Experience with SIEM platforms, detection playbooks, cloud integrations, webhooks, REST APIs, and security automation.
  • Scripting or automation experience with Python, JavaScript, Ansible, or SOAR-style workflows.
  • Familiarity with hybrid cloud, on-premises infrastructure, regulated environments, and air-gapped networks.

Culture & Benefits

  • Medical, dental, and vision coverage, plus basic and supplemental life insurance.
  • Short- and long-term disability coverage and paid parental leave.
  • 401(k) with company matching of up to 6% and eligible employee equity.
  • Flexible paid time off, paid sick time, 13 company-paid holidays, and an annual paid company shutdown.
  • Collaborative, fast-paced work with leaders in tough technology, fusion science, and manufacturing.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →