External Job Description
ADVANCED CONCEPTS is an entity within EDGE dedicated to the design and deployment of advanced, innovative technologies. ADVANCED CONCEPTS is fast-tracking the development of high-technology autonomous systems, including three Medium Endurance, High Altitude, fixed-wing unmanned aerial systems, a family of precision loitering munitions, a cost- effective family of cruise missiles, and a range of guided artillery munitions.
Core Accountabilities:
- Install, configure, maintain, and upgrade cybersecurity platforms
- Integrate SIEM, EDR, DLP, IAM, and IDS/IPS solutions
- Manage log collection, normalization, and SIEM ingestion
- Tune and optimize detection rules and platform performance
- Troubleshoot platform, integration, and log flow issues
- Manage patching, configurations, and system hardening
- Ensure availability, performance, and reliability of all security platforms
- Maintain CMDB, documentation, and standard configurations
- Maintain secure configurations aligned with NIST SP 800-53 and NIST SP 800-171
- Ensure compliance with internal security policies and standards
- Support Cybersecurity Analyst in log visibility and detection improvements
- Coordinate with systems and network teams
- Onboard new log sources and security tools into the platform
- Provide logs and technical data to support incident investigations
- Support platform upgrades, patching, and lifecycle activities
- Provide documentation and evidence for audit and compliance
- Perform other responsibilities and additional duties as assigned in a timely manner.
Qualification / Experience
- Bachelor's degree in Cybersecurity, IT, or related field
- 4–6 years of experience in cybersecurity engineering or platform administration
- Hands-on experience with SIEM platforms such as Splunk or QRadar
- Experience with endpoint security tools such as EDR/XDR
- Experience in log management and system integration
- Experience in classified or high-security environments is preferred
- Understanding of NIST and cybersecurity frameworks
- Knowledge of cybersecurity platforms and technologies (SIEM, EDR, DLP, IDS/IPS, IAM)
- Knowledge of log management, data ingestion, and correlation techniques
- Knowledge of system and network security principles and practices
- Knowledge of infrastructure integration and cybersecurity architecture concepts
- Knowledge of incident response processes and security monitoring workflows
- Knowledge of security configuration standards and hardening practices
- Relevant certifications such as Security+, CySA+, or SIEM vendor certifications are preferred