Назад
Company hidden
1 день назад

Cyber Security Analyst II

98 311 - 147 468$
Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cyber Security Analyst II (Microsoft Security/CMMC): Operating and maturing a Microsoft security stack for a Defense Industrial Base environment handling controlled data with an accent on Microsoft Defender, Entra ID, Intune, Purview, and CMMC Level 2 compliance. Focus on authoring NIST SP 800-171 procedures and evidence, managing vulnerabilities and incidents, and mentoring a junior analyst.

Location: Edgewood, Maryland, USA; full-time onsite role. U.S. citizenship required.

Salary: $98,311–$147,468 per year, plus a competitive Business Profit Plan and benefits.

Company

hirify.global develops and manufactures threat detection and security screening solutions for aviation, ports and borders, defense, and urban security markets.

What you will do

  • Administer and tune Microsoft Defender for Endpoint, Defender for Office 365, Defender for Cloud Apps, Entra ID, Intune, and Purview.
  • Draft and operationalize security policies, procedures, runbooks, checklists, and evidence artifacts mapped to NIST SP 800-171 Rev. 2 and CMMC Level 2.
  • Own joiner/mover/leaver processes, quarterly access reviews, privileged access management, and authorized-user onboarding and offboarding with HR, IT, and Facility Security.
  • Run vulnerability and patch management cycles, prioritize remediation, track SLAs, and report progress.
  • Respond to tier-2 Defender and Entra alerts, investigate and contain incidents, lead post-incident reviews, and exercise the incident response plan.
  • Maintain audit evidence, the System Security Plan and POA&M, deliver phishing-awareness activities, and mentor the Cyber Security Analyst I.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related field, or an equivalent combination of certifications and hands-on experience.
  • 3–5 years of hands-on cybersecurity experience, including at least 2 years administering Microsoft 365, Entra ID, Intune, and Defender in production.
  • Experience authoring security policies and procedures and working with NIST SP 800-171 Rev. 2 and/or CMMC Level 2 control mapping and evidence production.
  • U.S. citizenship is required.
  • Experience in a Defense Industrial Base, defense contractor, or cleared-facility environment, with strong written communication skills.
  • Experience with SIEM platforms, vulnerability management, and incident response; familiarity with Microsoft GCC or GCC High, DFARS 252.204-7012, ITAR, and SPRS is required or valuable for the role.

Nice to have

  • Microsoft certifications such as SC-200, SC-300, SC-400, MS-500, or AZ-500.
  • CMMC Registered Practitioner or Certified CMMC Professional credential.

Culture & Benefits

  • Training and career-growth opportunities across local and global operations.
  • Inclusive workplace with emphasis on leadership, safety, wellbeing, professionalism, integrity, and respect.
  • Medical, dental, and vision insurance.
  • 401(k) with company match and paid time off.
  • Additional financial, lifestyle, and wellbeing benefits for employees and their families.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →