Search Remote Jobs

Cybersecurity Operations Engineer

🕒 August 31

🇺🇸 United States – Remote

💵 $93.8k - $120k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Granicus

Granicus

501 - 1000 employees

Founded 1999

🏛️ Government

☁️ SaaS

📋 Compliance

Government • SaaS • Compliance

Granicus is a company focused on transforming the way governments interact with their constituents through digital services and technology solutions. It provides the Government Experience Cloud to improve service delivery, community engagement, and operational efficiency across local, state, and federal governments. Granicus offers tools for agenda and meeting management, digital communication and engagement, public records management, and more, all designed to enhance customer experience and foster transparent and equitable interactions between governments and the people they serve.

📋 Description

• Operate, monitor, and continuously improve cybersecurity controls protecting a mission-critical SaaS product • Perform day-to-day security operations and security engineering for the SaaS product and supporting AWS environment • Execute security controls and procedures preserving confidentiality, integrity, and availability • Apply FedRAMP, NIST SP 800-53, CJIS Security Policy, and Granicus security requirements • Complete continuous monitoring, control testing, audit evidence, corrective action, and authorization maintenance activities • Identify control gaps, configuration deviations, and emerging technical risk; resolve or escalate issues • Operate endpoint detection and response, centralized security logging and analytics, vulnerability scanning and management, and cloud security capabilities • Maintain asset inventories, security telemetry, agents, sensors, log sources, integrations, dashboards, and operational reporting • Execute vulnerability scans, validate findings, prioritize risk, coordinate remediation, track exceptions, and verify corrective actions • Monitor alerts and telemetry, triage events, manage cases, and investigate identity, endpoint, network, application, and cloud activity • Develop, test, and tune detections, correlation logic, and investigative queries • Perform or support incident response, including scoping, evidence preservation, containment, eradication, recovery, root-cause analysis, and corrective action tracking • Execute incident response playbooks, escalation paths, notification procedures, exercises, and post-incident reviews • Maintain auditable investigation records, incident timelines, evidence, decisions, and required reports; participate in after-hours response when required • Improve runbooks, operating procedures, quality standards, service metrics, shift handoffs, and escalation practices • Execute data protection activities covering discovery, classification, handling, access, encryption, monitoring, retention, and secure disposal • Investigate suspected data leakage, misuse, or policy violations with Incident Response, Privacy, Legal, and business teams • Use AI-assisted analysis, scripting, APIs, query languages, and workflow orchestration to automate and improve security operations • Partner with Product, Engineering, Cloud, Compliance, Privacy, Legal, and business teams on architecture, releases, remediation, risk decisions, customer assurance, and cybersecurity projects • Report to the Cybersecurity Operations Lead within the Global Cyber Defense organization

🎯 Requirements

• 3+ years of experience in cybersecurity engineering, security operations, cloud security, incident response, or related roles • Hands-on experience operating security monitoring, endpoint protection, vulnerability management, and incident response capabilities in an AWS-hosted production cloud or SaaS environment • Experience triaging and investigating security events and supporting incidents from initial detection through containment, recovery, and lessons learned • Experience with cloud and application logs, security analytics, detection queries, case management, and vulnerability remediation workflows • Strong knowledge of security operations and security engineering for cloud-hosted SaaS products • Practical understanding of AWS environments and the cloud shared-responsibility model • Working knowledge of FedRAMP continuous monitoring, NIST SP 800-53 security controls, and the CJIS Security Policy • Hands-on ability to operate endpoint detection and response, centralized logging and security analytics, vulnerability management, and cloud security monitoring capabilities • Strong understanding of AWS identity, networking, compute, storage, logging, encryption, key management, and security-relevant configuration practices • Ability to maintain security telemetry pipelines, including log collection, parsing, normalization, enrichment, retention, access, and quality monitoring • Ability to write and modify investigative queries, detections, and correlation logic • Practical incident response skills, including scoping, evidence handling, containment, eradication, recovery, root-cause analysis, and corrective action management • Knowledge of vulnerability management, asset discovery, scanning, validation, risk prioritization, remediation coordination, exception handling, and verification • Knowledge of enterprise data protection, including data discovery, classification, access governance, encryption, monitoring, retention, data loss prevention, and response to suspected misuse or exfiltration • Experience using scripting, APIs, query languages, and workflow automation • Ability to use AI-enabled capabilities responsibly, including human validation, prompt and data handling controls, quality measurement, explainability, and auditability • Ability to maintain operational metrics, runbooks, case records, evidence, and technical documentation suitable for regulated and audited environments • Strong analytical, troubleshooting, and decision-making skills • Ability to translate cybersecurity and compliance requirements into practical technical actions and sustainable operating procedures • Strong collaboration and written/verbal communication skills • Ability to manage multiple priorities independently and recognize when escalation is required • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent professional experience • Must be based in the United States • Must possess or be able to obtain and maintain personnel screening and access authorization required for CJIS-regulated environments • Relevant cybersecurity, cloud security, incident response, or security operations certifications are preferred • Experience supporting a FedRAMP-authorized, CJIS-regulated, or similarly controlled environment is strongly preferred • Experience supporting operational data protection activities and applying automation or AI-assisted capabilities to security workflows is preferred

🏖️ Benefits

• Flexible Time Off • Company-Wide Wellbeing Days • Work From Home Reimbursement • Multiple Health Plan Options, including a 100% employer-paid plan • Employer HSA Contributions • Fitness Reimbursement Program • On-Demand Mental Health Support, including Headspace and other wellness tools • Paid Parental Leave for birthing and non-birthing parents • Traditional & Roth 401(k) with a generous company match • 100% employer-paid Life & AD&D Insurance • Online Learning Platforms • Competitive Salary & Bonuses • Employee Resource Groups • Coffee with Mark sessions • Microsoft Teams communities focused on wellness, art, furbabies, family, parenting, and more

Apply Now

Similar Jobs

🕒 August 31

CDW

10,000+ employees

💼 Consulting

🏥 Healthcare

📚 Education

Consulting Engineer designing, implementing, and supporting physical security systems for CDW technology customers. Configuring surveillance, access control, sensors, and network integrations.

🇺🇸 United States – Remote

💵 $77.7k - $108.3k / year

💰 Post-IPO Equity on 2015-07

⏰ Full Time

🟢 Junior

🟡 Mid-level

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

🕒 August 31

Valon

51 - 200

🛡️ Insurance

🏥 Healthcare

💼 Consulting

Senior Security Engineer strengthening offensive security and threat operations. Protecting Valon’s AI-native mortgage servicing platform for regulated finance.

🕒 August 31

CDW

10,000+ employees

💼 Consulting

🏥 Healthcare

📚 Education

Information System Security Officer auditing and securing classified DoD systems for CDW, a Fortune 500 technology solutions provider. Validating cybersecurity controls and supporting RMF compliance.

🇺🇸 United States – Remote

💵 $140k - $175k / year

💰 Post-IPO Equity on 2015-07

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

🕒 August 31

Dark Wolf Solutions

51 - 200

💼 Consulting

📦 Logistics

🏥 Healthcare

Senior Cybersecurity Engineer leading RMF authorization, risk assessments, and compliance for Dark Wolf Solutions. Securing systems and cyber defense operations under NIST and DoD regulations.

🇺🇸 United States – Remote

💵 $150k - $170k / year

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🕒 August 31

Cisco

10,000+ employees

🔧 Hardware

🔐 Security

🏢 Enterprise

Cisco regional security sales leader driving SLED and public-sector revenue growth. Coaching account executives and expanding cybersecurity opportunities with customers and partners.