protection of sensitive data and maintain enterprise resilience. Drives risk reduction by analyzing incidents, implementing controls, and collaborating with cross-functional teams to strengthen the organization’s security posture. •
Key Requirements
Perform threat triage, incident investigation, and risk analysis to protect the confidentiality, integrity, and availability of Department of Education (DOE) systems, applications, and data assets. •
Analyze security alerts and events to identify indicators of compromise (IOCs), attack patterns, and emerging threats across on-premises, cloud, and hybrid environments. •
Correlate security data from disparate sources to develop a unified view of organizational cyber risk, enabling informed decision-making and prioritization. •
Identify vulnerabilities, misconfigurations, and protection gaps across infrastructure, cloud platforms, and data-centric environments; validate findings and assess potential business impact. •
Ensure alignment with federal and regulatory security standards (e.g., NIST, FISMA) and internal cybersecurity policies and control frameworks. •
Contribute to continuous improvement of security operations by documenting findings, trends, and lessons learned from incidents and risk assessments. •
Monitor, analyze, and detect cybersecurity threats across multiple security domains, including Security Operations (SOC), Cloud Security, Infrastructure Security, Information Protection, and Data Protection.