Blue Team Engineer

ShorePoint, Inc

Today
Top Secret
Unspecified
Unspecified
Remote/Hybrid (Off-Site/Hybrid)

Who we are:

ShorePoint is a fast-growing, industry recognized, and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a "work hard, play hard" mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion, and a focus on giving back to our community.

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation's critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individual technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 18 days of PTO, 11 holidays, 80% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement, etc.

Who we're looking for:

We are seeking a motivated Blue Team Engineer with expertise in defensive cybersecurity tools and techniques to conduct threat simulations. The ideal candidate will replicate both insider and external threats to operational systems and networks, contributing to the defense of high-profile environments. This is a unique opportunity to shape the growth and culture of an exciting and fast-growing company in the cybersecurity market.

What you'll be doing:
  • Conduct automated and manual tests on information systems using industry-standard tools such as vulnerability scans, source code reviews, and web application testing.
  • Develop test plans, execute tests, and prepare detailed after-action reports.
  • Document testing processes in accordance with agency regulations and Standard Operating Procedures (SOPs).
  • Contribute to Authorization & Accreditation (A&A), Plan of Action & Milestones (POA&M), vulnerability management, and continuous monitoring efforts.
  • Use signature-based scanners, data collection tools, and hardware analysis tools to assess potential threat events.
  • Perform Security Information and Event Management (SIEM) reviews to ensure proper detection and notification of threats.
  • Support vulnerability analysis and develop mitigation strategies to prevent future threats.
  • Support remote locations with traveling assessments as scheduled (30% travel expected, Continental United States).

What you need to know:
  • Broad knowledge of security methodologies, solutions, and industry best practices.
  • Experience with open-source and commercial testing tools such as Nessus, Metasploit, Burp Suite, App Detective, and Nmap.
  • Advanced understanding of security tools with the ability to configure and troubleshoot them as needed.
  • Expertise in Unix/Linux or Microsoft operating systems, with extensive experience in at least one.
  • Familiarity with security policies of the Department of Justice (DOJ), FBI, and National Institute of Standards and Technology (NIST) guidelines (e.g., 800-53, 800-53a).
  • Strong critical thinking and analytical skills, with the ability to interpret and synthesize complex data.

Must have's:
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Mathematics, Engineering or a related field, or 10 years of relevant IT experience.
  • Demonstrated ability to apply critical thinking to develop undefined tasks into actionable processes and work streams.
  • Expertise in at least one of the following areas: Web applications and technologies, Networking technologies, Enterprise solutions, storage, and databases, Cross-domain solutions, Virtualization technologies, Mainframes.
  • One or more of the following certifications: CISSP, ISACA, OSCP, CISA, GPEN, GWAPT, or CEH.
  • Active Top Secret with SCI eligibility and ability to pass a Counterintelligence (CI) polygraph.

Where it's done:
  • Washington, DC (Hybrid: 3 days onsite/2 days remote per week.)
  • Remote Locations (Travel to these locations once per quarter.)
group id: 91085370
N
Name HiddenRecruiter

Match Score

Powered by IntelliSearch™
Create an account or Login to see how closely you match to this job!

Similar Jobs


Clearance Level
Top Secret