Job Description
Note: The job is a remote job and is open to candidates in USA. Nightwing is a company that provides advanced cyber, data operations, and intelligence mission support services. They are seeking a Cybersecurity Engineer focused on email and endpoint security, responsible for implementing and improving security measures across various platforms.
- Responsibilities
- Plan, implement, configure, upgrade, and monitor security controls protecting enterprise networks, endpoints, and collaboration/email platforms (Proofpoint, O365, MS Defender, CrowdStrike)
- Engineer and maintain email security capabilities including anti-phishing, malware detonation/analysis, impersonation protection, URL/attachment defense, and policy tuning; support improvements to mail flow and authentication (e.g., SPF/DKIM/DMARC alignment as applicable)
- Engineer and maintain endpoint security (EDR/NGAV) capabilities including prevention policies, detection tuning, containment workflows, device isolation/quarantine procedures, and fleet-wide deployment/health monitoring
- Assess vulnerabilities and security risks across email and endpoint ecosystems; propose, implement, and validate risk mitigation strategies (hardening, policy updates, rule tuning, and control coverage improvements)
- Ensure appropriate security controls and governance are in place to safeguard digital files and critical infrastructure, including configuration baselines, access controls, and monitoring/telemetry standards
- Respond to security incidents (phishing, account compromise, malware, ransomware, endpoint outbreaks) by coordinating triage, containment, eradication, recovery, and lessons learned—leveraging Defender and CrowdStrike response actions and Proofpoint intelligence/workflows
- Integrate and optimize tooling outputs (alerts, logs, and threat intelligence) across platforms to improve detection fidelity, reduce false positives, and enhance operational response (including workflow automation where applicable)
- Support year-round tracking, reporting, and guidance for POA&Ms and CMMC assessments, including control implementation evidence, remediation planning, and ongoing control effectiveness validation for email and endpoint security domains
- Skills
- Experience with Proofpoint, Microsoft 365/O365, Microsoft Defender, and CrowdStrike
- Ability to plan, implement, configure, upgrade, and monitor security controls protecting enterprise networks, endpoints, and collaboration/email platforms
- Experience in engineering and maintaining email security capabilities including anti-phishing, malware detonation/analysis, impersonation protection, URL/attachment defense, and policy tuning
- Knowledge of mail flow and authentication improvements (e.g., SPF/DKIM/DMARC alignment as applicable)
- Experience in engineering and maintaining endpoint security (EDR/NGAV) capabilities including prevention policies, detection tuning, containment workflows, device isolation/quarantine procedures, and fleet-wide deployment/health monitoring
- Ability to assess vulnerabilities and security risks across email and endpoint ecosystems
- Experience in proposing, implementing, and validating risk mitigation strategies (hardening, policy updates, rule tuning, and control coverage improvements)
- Knowledge of appropriate security controls and governance to safeguard digital files and critical infrastructure, including configuration baselines, access controls, and monitoring/telemetry standards
- Experience in responding to security incidents (phishing, account compromise, malware, ransomware, endpoint outbreaks) by coordinating triage, containment, eradication, recovery, and lessons learned
- Ability to integrate and optimize tooling outputs (alerts, logs, and threat intelligence) across platforms to improve detection fidelity, reduce false positives, and enhance operational response
- Experience in supporting year-round tracking, reporting, and guidance for POA&Ms and CMMC assessments, including control implementation evidence, remediation planning, and ongoing control effectiveness validation for email and endpoint security domains
- Company Overview
- We are the intelligence services company that continually redefines the edge of the possible to keep advancing our national security interests. It was founded in undefined, and is headquartered in , with a workforce of 1001-5000 employees. Its website is https://nightwing.com.
Apply Now
Apply Now