Location: On-site (Washington, DC)
The Cybersecurity Operations Engineer serves as a senior-level technical resource supporting cybersecurity operations, continuous monitoring, systems engineering, and incident response activities within a Federal Government environment.
This position provides hands-on cybersecurity engineering and operational support within hybrid on-premises and Microsoft Azure environments. The Cybersecurity Operations Engineer will perform security assessments, support ongoing security operations, monitor for suspicious activities, develop automation capabilities, and assist with incident response and systems security improvements with minimal supervision and guidance.
Position supports a long-term Federal IT and Cybersecurity Services effort.
Employment is contingent upon contract award.
-
Apply knowledge and skills of information systems security principles, NIST guidelines, FISMA, CISA directives, and federal cybersecurity requirements to conduct ongoing security assessments of installed systems and networks and recommend corrective actions
-
Perform systems engineering and maintenance activities according to established standards
-
Apply knowledge of networking technologies including LAN, Microsoft Azure, and wireless management in security solutions implementation and troubleshooting
-
Develop security operations capabilities by evaluating current strategies and aligning operations with best practices
-
Ensure effective configuration and daily operation of cybersecurity tools including: o Security Information and Event Management (SIEM)
-
Syslog oNetwork Detection and Response (NDR)
-
Endpoint Detection and Response (EDR) oFirewalls
-
Microsoft 365 Cloud Security oDefender for Cloud
-
Continuous Diagnostics and Mitigation (CDM) capabilities
-
Collaborate with the CISO and Privacy Officer to develop plans, techniques, and measurable objectives to improve cybersecurity and privacy measures protecting sensitive information
-
Collaborate with other teams to ensure applications and IT services meet security requirements
-
Maintain threat awareness and monitor information systems for exploits and suspicious activities
-
Analyze aggregated logs from security tools and perform regular threat hunting activities
-
Develop Security Orchestration and Automation capabilities
-
Adhere to Continuous Monitoring practices to evaluate the effectiveness of implemented security controls and execute proactive threat hunting activities
-
Develop detection and response configuration policies to increase automation
-
Execute Incident Response activities according to the incident response plan
-
Develop incident handling procedures
-
Validate that sufficient and relevant information is captured and retained from security tools to support actionable security awareness and incident investigations
-
Collect security operations performance and security posture management metrics and prepare threat reports to support risk management decisions
-
Develop and maintain accurate security operations documentation including standard operating procedures for recurring tasks
-
Minimum six (6) years of continuous experience performing seniorlevel cybersecurity operations or cybersecurity engineering activities
-
Experience supporting: o Cisco Networking
-
Cisco Firewalls oMicrosoft Cloud Technologies (IaaS, PaaS, SaaS)
-
Microsoft Entra ID oMultifactor Authentication (MFA)
-
Mobile iOS Device Management oLinux Operating System Administration
-
Endpoint Detection and Response (EDR) oNetwork Detection and Response (NDR)
-
Patch Management oPowerShell
-
Log Management and Syslog oSecurity Information and Event Management (SIEM)
-
Security Orchestration, Automation, and Response (SOAR) oDisaster Recovery
-
Demonstrated handson experience performing required cybersecurity operational tasks
-
Relevant industryrecognized cybersecurity certifications preferred
-
Must successfully complete applicable background investigations
-
Must obtain and maintain a Public Trust clearance
-
Must execute a NonDisclosure Agreement (NDA)
-
Must comply with all customer security policies, procedures, and Rules of Behavior
-
Must use approved Government Furnished Equipment (GFE) when accessing customer environments
-
Must obtain a Governmentissued PIV Card
Candidates who do not meet the full security requirements listed below will not be considered.
-
Relevant degree and/or industryrecognized IT or cybersecurity certifications may be substituted based on demonstrated handson experience performing required tasks
-
Prolonged periods of sitting at a desk and working on a computer
-
Ability to operate standard office and IT equipment
-
Ability to participate in technical discussions and reviews
-
Primarily onsite at a customer location in Washington, DC
-
Limited remote work may be authorized at Government discretion
-
Standard work schedule is Monday through Friday, 8:00 AM to 5:00 PM excluding Federal holidays
-
Fastpaced Federal Government environment supporting missioncritical operations
-
Minimal travel anticipated
-
Occasional local travel may be required to support operational or meeting requirements
-
U.S. Citizenship is required for all applicants in accordance with federal contract requirements.
-
All candidates must be able to successfully pass a background check in accordance with government and company standards.
H2L Solutions, Inc. (H2L) is a leading cybersecurity and IT solutions provider dedicated to delivering cutting-edge security, compliance, and technology services to government and commercial clients. Headquartered in Huntsville, Alabama, H2L specializes in cybersecurity compliance, risk management, and mission-critical IT solutions, helping organizations navigate complex regulatory environments and safeguard their digital assets. Our team of experts is committed to innovation, integrity, and excellence, ensuring our clients meet their security and operational goals. At H2L, we foster a collaborative and dynamic work environment where professionals can grow, contribute, and make a meaningful impact.
Salary will be determined based on experience, qualifications, and contract-specific guidelines. A competitive compensation package will be discussed during the interview process.
H2L offers a competitive benefits package that supports the well-being, growth, and success of our employees. Benefits include, but are not limited to:
-
Health and Medical Insurance
-
Dental and Vision Insurance
-
401(k) Retirement Plan
-
CompanyPaid Life Insurance
-
ShortTerm and LongTerm Disability Coverage
-
Supplemental Insurance Options
-
Professional Development Opportunities to include licenses, training, and certifications
-
Education Reimbursement
-
Employee Referral Program
-
And more!
H2L Solutions, Inc. is committed to investing in our team by providing resources that support both personal and professional growth. Specific benefit details will be provided during the hiring process.
H2L Solutions, Inc. (H2L) is an Equal Opportunity Employer and federal contractor. We comply with all applicable federal, state, and local laws regarding nondiscrimination and affirmative action. We do not discriminate based on race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, age, disability, genetic information, veteran status, or any other legally protected status under applicable law.
As a federal contractor, H2L is committed to affirmative action and complies with the regulations set forth by the Office of Federal Contract Compliance Programs (OFCCP), including Executive Order 11246, Section 503 of the Rehabilitation Act, and the Vietnam Era Veterans’ Readjustment Assistance Act (VEVRAA). We encourage applications from women, minorities, individuals with disabilities, and protected veterans. If you need assistance or accommodation during the hiring process, please contact the Human Resources Department by emailing human.resources@h2lsolutions.com.
Cybersecurity Operations Engineer – [YOUR FULL NAME]
NOTE: Only candidates selected for interviews will be contacted. Applicants who do not meet the Mandatory Requirements will not be considered and should not apply. Applicants that do not follow application or submission instructions will not be considered.
H2L Solutions is a HUBZone and Service Disabled Veteran Owned Small Business (SDVOSB) cybersecurity company based in Huntsville, Alabama. Through a comprehensive range of cybersecurity services - including penetration testing, vulnerability assessments, skill training, and compliance audits - we excel in providing quality and reliable deliverables that government and commercial organizations can use to ensure information systems are thoroughly protected from outside sources.