Dual-hat Cybersecurity Lead (70% technical, 30% management) supervising an on-site team supporting a US DOJ program: overseeing the full incident-response lifecycle across SIEM/SOAR, vulnerability management, security policy, and compliance while reporting to the Government Lead. Requires US citizenship and a Public Trust security clearance.
The Cybersecurity Lead will serve as a “Dual-Hat” role providing senior technical authority and on-site supervisor for the team, operating with a 70% technical and 30% management focus. Reporting directly to the Government Lead, this role will provide expert oversight for the entire incident response lifecycle, from initial detection and log correlation within SIEM (Security Information and Event Management) and SOAR (Security Orchestration, Automation, and Response) platforms to final remediation and incident closure. Examine data from multiple disparate sources with the goal of providing new insight and maintaining situational awareness of current and future cyber threats.
Individual must be able to attain and maintain a valid US Government security clearance to be retained in the position.
Duties & Responsibilities
Provide Program Management
Oversee vulnerability management and scanning operations.
Manage daily tasks, ensure compliance with Department of Justice (DOJ) audit log
Assist in the development of security policies and analyzes the sensitivity of information and reviews vulnerability and risk assessments on the basis of defined sensitivity and information flow.
Researches and explains in both layman and technical terms current and emerging cyber/technological threats. Analyzes data/information from one or multiple sources to stay on top of current and future cyber threats.
Inspect numerous enterprise systems and networks.
Respond to requests for information, and help other cybersecurity, security, and intelligence personnel submit intelligence collection and production requirements in support planning and operations.
Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of mitigating threats.
Perform assessments of systems and networks within the environment and identify where those systems/networks deviate from acceptable configurations, enclave policy, or local policy.
Measure the effectiveness of defense-in-depth architecture against known vulnerabilities and threats.
Analyze and define the security requirements for information protection for enterprise systems and networks.
Develop security policies.
Analyze the sensitivity of information to perform vulnerability and risk assessments.
Provide supervision and management to team members.
Acts as focal point for customer communications for the team.
Ensure team tasks and deliverables are completed as scheduled.
Education & Experience Requirements
Bachelor`s degree in Cybersecurity, Computer Science, Information Security, or related field
3-10 Years of experience in operational cybersecurity, vulnerability identification, and assessment.
SECURITY CLEARANCE REQUIREMENTS: Public Trust
Required to be US Citizens and have security clearances in accordance with security requirements
Skill & Certification Requirements
Extensive knowledge vulnerabilities and exploit techniques
Cyber Security
Program Management
Policy, Planning, Communication and Compliance Support
Security Operations
Vulnerability Management
Insider Threat
Security Policy Development
Plan and Process Review
Compliance Reviews
Risk Assessment Experience
Excellent problem solving skills
Excellent communication skills
Strong written and verbal communications skills
Position requires sitting, for long periods of time. (Sedentary Work)
Most duties require extended use of a keyboard and computer monitor
Extended Telephone Use
May require lifting of 20-50 lbs
This position is considered contingent upon award.
LCI is an Equal Opportunity Employer Veteran/Disabled