Location: Remote (U.S.)
Employment Type: Full-Time Contract (6-Month Initial Term)
Potential for Extension: Yes, based on program needs and performance
Position Overview
We are seeking a Cybersecurity Engineer with hands-on experience in Tenable and Splunk to support a National Institutes of Health (NIH) cybersecurity program. This is a fully remote opportunity supporting a federal environment through a subcontractor. The initial period of performance is approximately six months, with a strong possibility of extension based on contract needs and performance.
The ideal candidate will have experience with vulnerability management, security monitoring, log analysis, and incident investigation in enterprise environments. Experience supporting federal agencies or regulated environments is highly desirable.
Key Responsibilities
- Manage and maintain Tenable vulnerability management solutions.
- Perform vulnerability assessments, analysis, prioritization, and reporting.
- Configure, monitor, and optimize Splunk dashboards, searches, alerts, and reports.
- Analyze security logs and investigate suspicious events.
- Support incident response and security investigations.
- Collaborate with IT and security teams to remediate identified vulnerabilities.
- Develop and maintain documentation related to security operations and vulnerability management.
- Assist with compliance and security reporting requirements.
- Recommend improvements to strengthen the organization's security posture.
Required Qualifications
- Hands-on experience administering or supporting Tenable products (Tenable.sc, Tenable.io, or Nessus).
- Experience using Splunk Enterprise for log analysis, dashboard creation, and alerting.
- Strong understanding of the vulnerability management lifecycle.
- Knowledge of cybersecurity principles, network security, and security monitoring.
- Experience analyzing Windows and Linux system logs.
- Strong analytical and troubleshooting skills.
- Excellent written and verbal communication skills.
- Ability to work independently in a remote environment.
Preferred Qualifications
- Experience supporting NIH or other federal government agencies.
- Security certifications such as Security+, CySA+, GSEC, Splunk Core Certified, Splunk Enterprise Security, or Tenable Certified.
- Experience with SIEM technologies, EDR solutions, and vulnerability remediation.
- Familiarity with NIST cybersecurity frameworks and federal security requirements.