Cyber Security Engineer
Indexed description
CEIA USA provides nationwide sales, service and customer support to public (federal, state and local governments) and private sector customers in North America. Dynamic solutions are the foundation of CEIA USA's commitment to customer satisfaction.
www.ceia-usa.com
The Cyber Security Analyst is responsible for driving the organization's cybersecurity governance, compliance, and continuous security improvement initiatives. This role serves as the primary owner of cybersecurity monitoring, security program maturity, regulatory compliance, and risk management while partnering closely with Infrastructure, IT Operations, Engineering, and business stakeholders to strengthen the organization's overall security posture.
This position requires a strong technical understanding of enterprise networks, infrastructure, and security technologies to effectively monitor risks, evaluate controls, identify vulnerabilities, and recommend practical improvements.
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Requirements
- Lead the end-to-end process of achieving and maintaining Company cyber security certifications, including CMMC, SOC 2, and ISO 27001.
- Conduct regular internal assessment and gap analyses against these frameworks to identify security deficiencies and develop remediation plans.
- Author, review, and maintain the company’s security policies, procedures, and System Security Plans (SSP) to ensure they align with current and future relevant standards.
- Monitor changes to applicable cyber security standards and recommend updates to organizational policies, controls, and practices.
- Serve as the primary point of contact for external cyber security audits, coordinating audit readiness, evidence collection, and remediation activities.
- Serve as the primary point of contact for customer security questionnaires, due diligence requests, and security-related inquiries.
- Develop and execute a vendor security assessment program to evaluate the security posture of all third-party providers and subcontractors
- Review SOC reports, ISO certifications, and security questionnaires from providers to ensure they meet the company's security requirements, and work with vendors to remediate identified security gaps and maintain a risk register.
- Work collaboratively with vendors to address identified security gaps and maintain an enterprise vendor risk register.
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, Computer Engineering, or a related discipline.
- Equivalent professional experience may substitute for formal education.
- 5+ years of cybersecurity experience.
- Proven track record of successfully leading an organization through one of the main established cyber security frameworks, like SOC 2 Type II, ISO 27001, or CMMC.
- Experience implementing a Risk Management Framework (RMF) to identify, assess, and mitigate organizational risk
- Deep understanding of the specific requirements of the CMMC levels.
- Strong analytical, troubleshooting, and problem-solving skills.
- Excellent written and verbal communication skills.
- Ability to work independently and collaboratively.
- Ability to manage multiple priorities in fast-paced environments.
Preferred Qualifications
- Professional cyber security certifications are preferred.
While performing the duties of this job, the employee is occasionally required to stand; walk; sit; use hands to finger, handle, or feel objects, tools or controls; reach with hands and arms; climb stairs; talk and hear.
The employee must occasionally lift or move office products and supplies, up to 20 pounds. Specific vision abilities are required by this position that include close vision, distance vision, color vision, peripheral vision, depth perception and the ability to adjust focus
Travel is not required for this position.
Supervisory Responsibility
This job has no supervisory responsibility.
AAP/EEO
An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Summary
At CEIA USA, we believe that taking care of our people is the key to building a thriving, high-performing team. That’s why we offer a comprehensive and market-leading benefits package, designed to support your well-being both inside and outside of work.
- Paid Training opportunities to enhance your Career, and Educational Assistance
- A Rich Paid Time Off Plan—20-day (4-week) annual accrual starting at DOH that progressively increases with tenure.
- Select Paid Holidays, including the FULL period between Christmas and New Years - paid as Holiday Time.
- Premium health benefits, and wellness resources to keep you and your family supported.
- Medical Plan options that include a $250/$500 PPO Deductible that is lucratively subsidized by the Company.
- Company Paid life insurance, short-term disability, and long-term disability.
- 401(k) with % match that is only capped by IRS maximums, and profit sharing; subject to eligibility requirements.
- Annual Bonus Potential after 1 full year of employment.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search