What are the responsibilities and job description for the Senior Cybersecurity Operations Engineer position at Creative Visions?
Job Description:
Creative Visions, LLC is seeking a Senior Security Operations Engineer to support a federal cybersecurity program onsite in Washington, DC. This role is responsible for leading security operations, implementing detection and response capabilities, and maintaining visibility across a hybrid IT environment.
The selected candidate will support a Microsoft-centric environment integrated with Cisco infrastructure and will play a key role in strengthening continuous monitoring, incident response, and threat detection capabilities.
Key Responsibilities:
- Configure, manage, and optimize SIEM/SOAR platforms (Microsoft Sentinel preferred)
- Perform threat hunting and analyze security events across endpoint, identity, and network systems
- Support incident response activities including containment, eradication, and recovery
- Integrate and manage security tools including EDR, NDR, and cloud security platforms
- Develop detection rules, automation workflows, and response procedures
- Monitor logs and telemetry from Microsoft 365, Azure, and network infrastructure
- Support compliance with NIST, FISMA, and CISA directives
- Perform continuous monitoring activities to evaluate effectiveness of security controls
- Conduct proactive threat hunting across NIGC systems
- Configure and maintain SIEM, Syslog, EDR, NDR, and CDM tools
- Develop and maintain incident handling procedures
- Develop Security Orchestration and Automation (SOAR) capabilities
- Collect and report security operations metrics and cybersecurity posture data
- Develop and maintain standard operating procedures (SOPs)
Required Qualifications:
- 6 years of cybersecurity operations experience
- Security certification
- Hands-on experience with SIEM (Sentinel preferred), EDR, and log analysis
- Experience with Microsoft 365, Azure, and Entra ID
- Familiarity with Cisco networking and security tools
- Experience with incident response and threat hunting
Preferred Certifications:
CISSP, GCIA, GCIH, Azure Security Engineer (AZ-500)