Cybersecurity Engineer - CBO

INNOVIM•,
•$90,000 - $107,000•Hybrid

About The Position

The Cybersecurity Engineer designs, implements, and maintains enterprise security controls that enforce Zero Trust principles — identity-centric access, least-privilege enforcement, continuous monitoring, and threat detection — across cloud, network, and endpoint environments for a U.S. legislative branch agency. The role strengthens the organization's overall security posture and improves detection and response capabilities in alignment with NIST SP 800-53 and NIST SP 800-207.

Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (equivalent experience considered).
  • Minimum 8 years of hands-on cybersecurity engineering experience.
  • Demonstrated experience with SIEM (e.g., Microsoft Sentinel or Splunk), EDR/XDR (e.g., Microsoft Defender), IAM/MFA, and vulnerability management (e.g., Tenable).
  • Working knowledge of NIST SP 800-53, NIST SP 800-207 Zero Trust, and the NIST Risk Management Framework.
  • CompTIA Security+ (DoD 8140/8570 IAT/IAM) required; higher-level certification preferred.
  • S. citizenship or permanent residence status; ability to obtain a Public Trust (Tier 2) determination.

Nice To Haves

  • CISSP, CySA+, GIAC (e.g., GCIH, GCIA), or CEH.
  • Microsoft (SC-200/AZ-500) or AWS security certifications.
  • Hands-on experience with Microsoft Sentinel, Microsoft Defender, and Tenable.sc.
  • Experience securing hybrid Active Directory / Entra ID and M365 GCC environments.
  • Prior experience supporting federal or Congressional / legislative branch environments.

Responsibilities

  • Implement and maintain enterprise security controls aligned with NIST SP 800-53 (AC, CM, SC, AU, IR, SI control families).
  • Enforce Zero Trust Architecture per NIST SP 800-207, including continuous verification, identity-centric security, and least-privilege access across cloud, network, and endpoint environments.
  • Configure and manage Identity and Access Management (IAM): authentication, authorization, role-based access control (RBAC), privileged access management (PAM), and multi-factor authentication (MFA).
  • Monitor, analyze, and respond to security events using enterprise tools (SIEM, EDR/XDR); support incident triage, containment, investigation, and remediation.
  • Maintain continuous monitoring capabilities — centralized log collection, correlation, and analysis with compliant log retention.
  • Conduct vulnerability scanning, assessment, and remediation across systems and applications; coordinate patching and mitigation.
  • Support cloud and application security (e.g., AWS, Azure): secure configuration, identity controls, and workload security.
  • Harden systems, applications, and cloud environments to secure configuration baselines; implement segmentation to limit lateral movement.
  • Perform risk analysis aligned with the NIST Risk Management Framework (RMF); conduct RCA for security incidents and control failures.
  • Develop and maintain cybersecurity SOPs, security baselines, and audit-ready documentation; support 24/7 security monitoring operations.

Benefits

  • health, dental, and vision coverage
  • retirement savings
  • paid time off
  • professional development support
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service