ECS

ECS

6 open positions available

1 location
1 employment type
Actively hiring
Full-time

Latest Positions

Showing 6 most recent jobs
ECS

VM Analyst

ECSAnywhereFull-time
View Job
Compensation$100K - 115K a year

Support vulnerability and exposure management operations across multiple client environments within an MSP SOC. | 3-5 years cybersecurity experience in vulnerability management, strong communication skills, familiarity with security frameworks, and ability to coordinate remediation. | The Vulnerability Management Analyst is responsible for supporting vulnerability and exposure management operations across multiple client environments within an MSP SOC. This role focuses on vulnerability assessment, risk analysis, remediation coordination, client reporting, and operational support across diverse enterprise security monitoring technologies and vulnerability management platforms. This role works closely with the Exposure Management Team, Security Engineering Team, SOC analysts, client technical teams, and internal engineering teams to deliver high-quality vulnerability management services, actionable risk intelligence, and effective remediation support across a multi-client portfolio. This role requires the ability to seamlessly transition between client environments, adapt to varied technology stacks, and communicate complex security risks to both technical and executive audiences. Salary Range: $100,000 - $115,000 General Description of Benefits • Experience: Minimum of 3-5 years of cybersecurity experience supporting vulnerability management or exposure management operations, preferably within an MSP, MSSP, or multi-client SOC environment. • Multi-Client Operations: Proven ability to manage security operations across multiple client environments simultaneously, with strong organizational and context-switching capabilities. • Vulnerability Management Platforms: Hands-on experience with multiple vulnerability management technologies such as Tenable (Nessus, Tenable.io, Tenable.sc), Crowdstrike Spotlight, or similar platforms. • Risk Assessment Expertise: Strong analytical skills in vulnerability risk assessment, prioritization methodologies, CVSS scoring, exploitability analysis, and business impact evaluation. • Client Communication Skills: Excellent verbal and written communication skills with demonstrated ability to explain technical security risks to diverse audiences including executives, IT teams, and non-technical stakeholders. • Asset and Environment Knowledge: Strong understanding of enterprise infrastructure, cloud environments (AWS, Azure, GCP), container technologies, endpoint systems, and network architecture across varied enterprise configurations. • Remediation Coordination: Experience coordinating vulnerability remediation efforts with IT teams, tracking remediation progress, and managing client expectations around timelines and priorities. • Security Framework Knowledge: Familiarity with cybersecurity frameworks such as NIST Cybersecurity Framework, CIS Critical Security Controls, ISO 27001, and industry-specific compliance requirements. • Able and willing to obtain a US Security Clearance. • On-Call Support: Participates in on-call support to assist with security incident response, operational issues, and investigation activities to maintain continuous SOC coverage and response capabilities.

Vulnerability Management
Risk Assessment
Security Frameworks
Verified Source
Posted about 2 months ago
ECS

VM Analyst

ECSAnywhereFull-time
View Job
Compensation$100K - 115K a year

Support vulnerability and exposure management operations across multiple client environments, including assessment, risk analysis, remediation coordination, and client reporting. | 3-5 years cybersecurity experience in vulnerability management within MSP/MSSP SOC, strong communication skills, familiarity with security frameworks, and willingness to obtain US Security Clearance. | The Vulnerability Management Analyst is responsible for supporting vulnerability and exposure management operations across multiple client environments within an MSP SOC. This role focuses on vulnerability assessment, risk analysis, remediation coordination, client reporting, and operational support across diverse enterprise security monitoring technologies and vulnerability management platforms. This role works closely with the Exposure Management Team, Security Engineering Team, SOC analysts, client technical teams, and internal engineering teams to deliver high-quality vulnerability management services, actionable risk intelligence, and effective remediation support across a multi-client portfolio. This role requires the ability to seamlessly transition between client environments, adapt to varied technology stacks, and communicate complex security risks to both technical and executive audiences. Salary Range: $100,000 - $115,000 General Description of Benefits • Experience: Minimum of 3-5 years of cybersecurity experience supporting vulnerability management or exposure management operations, preferably within an MSP, MSSP, or multi-client SOC environment. • Multi-Client Operations: Proven ability to manage security operations across multiple client environments simultaneously, with strong organizational and context-switching capabilities. • Vulnerability Management Platforms: Hands-on experience with multiple vulnerability management technologies such as Tenable (Nessus, Tenable.io, Tenable.sc), Crowdstrike Spotlight, or similar platforms. • Risk Assessment Expertise: Strong analytical skills in vulnerability risk assessment, prioritization methodologies, CVSS scoring, exploitability analysis, and business impact evaluation. • Client Communication Skills: Excellent verbal and written communication skills with demonstrated ability to explain technical security risks to diverse audiences including executives, IT teams, and non-technical stakeholders. • Asset and Environment Knowledge: Strong understanding of enterprise infrastructure, cloud environments (AWS, Azure, GCP), container technologies, endpoint systems, and network architecture across varied enterprise configurations. • Remediation Coordination: Experience coordinating vulnerability remediation efforts with IT teams, tracking remediation progress, and managing client expectations around timelines and priorities. • Security Framework Knowledge: Familiarity with cybersecurity frameworks such as NIST Cybersecurity Framework, CIS Critical Security Controls, ISO 27001, and industry-specific compliance requirements. • Able and willing to obtain a US Security Clearance. • On-Call Support: Participates in on-call support to assist with security incident response, operational issues, and investigation activities to maintain continuous SOC coverage and response capabilities.

Vulnerability Management
Risk Assessment
Security Frameworks
Incident Response
Cloud Security
Verified Source
Posted about 2 months ago
ECS

VM Analyst

ECSAnywhereFull-time
View Job
Compensation$100K - 115K a year

Support vulnerability and exposure management operations across multiple client environments within an MSP SOC. | 3-5 years cybersecurity experience in vulnerability management, strong communication skills, familiarity with security frameworks, and willingness to obtain US Security Clearance. | The Vulnerability Management Analyst is responsible for supporting vulnerability and exposure management operations across multiple client environments within an MSP SOC. This role focuses on vulnerability assessment, risk analysis, remediation coordination, client reporting, and operational support across diverse enterprise security monitoring technologies and vulnerability management platforms. This role works closely with the Exposure Management Team, Security Engineering Team, SOC analysts, client technical teams, and internal engineering teams to deliver high-quality vulnerability management services, actionable risk intelligence, and effective remediation support across a multi-client portfolio. This role requires the ability to seamlessly transition between client environments, adapt to varied technology stacks, and communicate complex security risks to both technical and executive audiences. Salary Range: $100,000 - $115,000 General Description of Benefits • Experience: Minimum of 3-5 years of cybersecurity experience supporting vulnerability management or exposure management operations, preferably within an MSP, MSSP, or multi-client SOC environment. • Multi-Client Operations: Proven ability to manage security operations across multiple client environments simultaneously, with strong organizational and context-switching capabilities. • Vulnerability Management Platforms: Hands-on experience with multiple vulnerability management technologies such as Tenable (Nessus, Tenable.io, Tenable.sc), Crowdstrike Spotlight, or similar platforms. • Risk Assessment Expertise: Strong analytical skills in vulnerability risk assessment, prioritization methodologies, CVSS scoring, exploitability analysis, and business impact evaluation. • Client Communication Skills: Excellent verbal and written communication skills with demonstrated ability to explain technical security risks to diverse audiences including executives, IT teams, and non-technical stakeholders. • Asset and Environment Knowledge: Strong understanding of enterprise infrastructure, cloud environments (AWS, Azure, GCP), container technologies, endpoint systems, and network architecture across varied enterprise configurations. • Remediation Coordination: Experience coordinating vulnerability remediation efforts with IT teams, tracking remediation progress, and managing client expectations around timelines and priorities. • Security Framework Knowledge: Familiarity with cybersecurity frameworks such as NIST Cybersecurity Framework, CIS Critical Security Controls, ISO 27001, and industry-specific compliance requirements. • Able and willing to obtain a US Security Clearance. • On-Call Support: Participates in on-call support to assist with security incident response, operational issues, and investigation activities to maintain continuous SOC coverage and response capabilities.

Vulnerability Management
Risk Assessment
Compliance Management
Verified Source
Posted about 2 months ago
ECS

Incident Detection/Response Manager (SOC Manager)

ECSAnywhereFull-time
View Job
Compensation$140K - 160K a year

Lead a 24x7 SOC team managing incident detection and response for a federal agency. | 8+ years IT experience with 4+ years incident response and SOC operations, relevant certifications, and federal clearance. | Everforth ECS is seeking an Incident Detection/Response Manager (SOC Manager) who lives in close proximity to the National Capital Region (NCR) to join a premier, enterprise-scale cybersecurity program supporting a major federal civilian agency. Please Note: This position is contingent upon contract award. Salary Range: $140,000 - $160,000 This flagship initiative unifies 24x7x365 Security Operations (SOC), proactive threat hunting, and advanced Security Engineering and Architecture into a cohesive defensive mission. As a key leader on this program, you will drive the protection of highly sensitive, national-level financial, and personally identifiable information (PII). You will be at the forefront of modernizing the agency's cyber posture, implementing advanced automation, and ensuring continuous operational resilience across a massive, highly complex federal IT enterprise. As the Incident Detection/Response Manager, you will serve as the operational commander of a high-performing, around-the-clock Security Operations Center supporting a major federal civilian agency. You will direct Tier I, II, and III incident response operations, ensuring rapid detection, containment, and recovery across a large-scale federal IT enterprise. Working closely with threat hunting teams, security engineers, agency stakeholders, and external service providers, you will lead the SOC's day-to-day operations while driving continuous improvement in detection capabilities, response procedures, and overall security posture. When incidents occur, you become the incident commander, orchestrating response from the moment a threat is detected through containment, eradication, and recovery. Position Responsibilities: • Manage SOC daily activities, including building and maintaining shift schedules and ensuring all documentation, including SOPs, Playbooks, and CONOPS, are current. • Manage Tier I, II, and III incident response operations across the federal enterprise, ensuring consistent, high-quality response at every level. • Coordinate containment, eradication, and recovery activities during active security incidents, serving as the primary incident commander and coordinating between the SOC team, IT operations, and relevant stakeholders. • Lead post-incident reviews and root cause analysis to identify lessons learned and drive continuous improvement in SOC processes and detection capabilities. • Ensure compliance with NIST SP 800-61 and federal incident response standard operating procedures across all SOC operations. • Manage SIEM event "notables" dashboards, ensuring timely triage, escalation, and resolution of security alerts. • Maintain the SOC coverage schedule per shift to ensure 24x7x365 operational readiness. • Maintain the call tree, including current contact information for all partner organizations and Cloud Service Providers (CSPs). • Apply MITRE ATT&CK framework to map attacker tactics, techniques, and procedures (TTPs) during investigations and incident response activities. • Encourage team collaboration by fostering a positive team culture, managing workloads effectively, and supporting professional development. • Collaborate with threat hunting, CTI, engineering, and architecture teams to ensure SOC operations are informed by the latest threat intelligence and detection capabilities. • Present incident findings, risk recommendations, and SOC performance metrics to both technical teams and senior government officials in a clear, actionable format. Support the development and continuous improvement of a comprehensive enterprise information security program grounded in the latest laws, regulations, and industry best practices. • U.S. Citizenship required. • 8+ years of IT experience, with 4+ years of dedicated incident response and SOC operations experience. • Remote but within close proximity to the NCR. • Active Public Trust 6c clearance, or the ability to obtain and maintain one. • At least one of the following certifications: GCIH, GCFA, GREM, or equivalent. • Hands-on experience with SIEM, SOAR, EDR, CDM, and malware analysis tools and platforms. • Strong experience with operating systems and networking fundamentals, including log analysis, traffic analysis, and endpoint forensics. • Experience with AWS native services and tools in a federal or enterprise cloud environment. • Demonstrated experience managing a SOC overseeing complex, large-scale federal or enterprise IT systems. • Strong command of incident response frameworks including NIST SP 800-61, SANS PICERL, and MITRE ATT&CK. • Practical malware analysis fundamentals, including static analysis, sandboxing, and Indicator of Compromise (IoC) extraction. • Experience with SOAR platforms to automate repetitive elements of incident response and improve analyst efficiency. • Proven ability to translate complex technical findings into clear, actionable language for both technical and executive audiences. • Strong written and verbal communication skills, with a track record of producing high-quality federal security documentation.

cybersecurity program management
product management
security research
Verified Source
Posted 2 months ago
ECS

ServiceNow Enterprise Architect

ECSAnywhereFull-time
View Job
Compensation$190K - 230K a year

Lead ServiceNow architecture, governance, and solution design for federal clients ensuring platform optimization and compliance. | Requires US citizenship, ServiceNow certifications, 5+ years SaaS configuration/development, and experience with federal and DoD programs. | Job Description Everforth ECS is seeking a ServiceNow Enterprise Architect to work remotely. We are currently seeking a strong ServiceNow Enterprise Architect with a strong process and governance background. Needs the ability to maintain awareness and provide feedback for application reviews. Experience leading a group of other Solution Architects and Technical Leads to drive consistent standards and outcomes. Provide feedback and maintain enterprise Roadmap. Creation of implementation, support ROMs. Understanding of ServiceNow licensing and best practices to minimize license utilization. Collaborate and improve on platform monitoring and health checks. Responsible to optimize, transform, and ensure organizations are efficient and effective across the ServiceNow platform. Solution Architect customer solutions, provide support to sales, participate in the SOW process, engage in setting standards and education on new or updated applications within ServiceNow. Salary Range: $190,000-$230,000 General Description Of Benefits Required Skills All Candidates Must Meet The Following Criteria • Must be a US Citizen per contract, no dual Citizenships • Must be able to obtain a Public Trust clearance or higher • Must be able to work across multiple programs across the Federal and DOD space. • Functional and technical knowledge of ServiceNow. • 5+ years of experience in SaaS software configuration and/or development. • Functional knowledge and implementation experience of a minimum of 2 ServiceNow modules. • Understanding of Enterprise Solutions including: Customer Service, Human Resources, Project Management, etc. • Knowledge of Integrations such as LDAP, AD, SSO, Email Infrastructure, Web Services. • 3+ years experience building custom applications in ServiceNow. • Knowledge of relational databases. • Strong desire to learn new technology. • Minimum of two ServiceNow Implementation Specialist Certification (or completion within 6 months of start of position). • ServiceNow Certified System Administrator. • ITIL® Certification v3+ (or completion within 6 months of start of position). • A high degree of passion, energy, and drive. • Ability to travel if required. • Strong customer relations and communication skills. • Ability to prepare for, facilitate and lead customer work sessions. • Demonstrates basic ServiceNow development skills. • Possesses ability to create process flow diagrams and high-level architecture and documentation. • Experience in Agile methodology. • Must have the ability to participate remotely and attend meetings on camera. Desired Skills General Responsibilities Include But Are Not Limited To • Architect or consult on the architecture of project. Responsible for ensuring the solution has long term viability vs short term gain. • Provide support in sales opportunities as needed. • Maintain training and knowledge of designated applications and IT and ServiceNow related certifications. • Ensure stories align to technical solution, which may include pointing, of stories for customer projects. • Perform discovery work sessions to determine the solution requirements. Assist in gathering and/or reviewing clients process requirements and assisting on how they map to ServiceNow. • Perform design work sessions and produce deliverables, including mock-ups, flow diagrams, high-level architecture and design documents etc. • Implement based on ServiceNow and ECS best practices. • Apply Agile software development practices for customizations to the platform and applications. • Organizing and prioritizing development effort, interfacing with vendors and management, and potentially coordinating effort of additional administrators. • Consider dependencies, relationships, and integration points to ensure proper solution integration with other systems when applicable. • Working with clients to assess current state processes and tools. • Assist customers with proof-of-concept activities. • Enable ECS delivery building efforts through development of intellectual property (IP). • Participate in growing and enhancing internal process for successful client delivery. • Identify new opportunities to provide additional value to clients and improve business performance. • Maintain high level of client satisfaction. • Provide training, technical consulting and mentoring to technical consultants to insure efficient use of ServiceNow capabilities. • Perform development and configuration activities as needed. • Understand Solution Architect role and responsibilities in the ECS Elite methodology. • Participate in recurring Solution Architect focused sessions. • Flexibility to perform or fill-in for any technical function. #EverforthECS1 ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. Everforth ECS is the federal segment of Everforth, a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies. Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow. We Value • Attracting and developing top talent and high-performing teams • Fostering a culture that is engaging, accountable, and mission-driven Meet the challenge. Make a difference with Everforth ECS!

ServiceNow
Enterprise Architecture
SaaS
Agile Methodology
ITIL
Verified Source
Posted 2 months ago
ECS

Network and Cybersecurity Delivery Lead

ECSAnywhereFull-time
View Job
Compensation$85K - 130K a year

Lead and manage network and cybersecurity delivery projects, analyzing user needs and defining functional requirements for complex IT systems. | Minimum 10 years IT infrastructure support experience, bachelor's degree in related field, relevant certifications, strong problem-solving skills, and ability to communicate effectively. | ECS is seeking an experienced Network and Cybersecurity Delivery Lead to work remotely providing infrastructure support for the work performed under this contract for NIH NIAID Enabling and Advancing Technologies (NEAT). All other tasks are intended to facilitate the implementation and operation of Network and Cybersecurity. This engagement supports current and future technologies including evaluating, planning for, and implementing new technologies in the NIAID and NIH environment in response to changing business strategies, policy, and regulatory changes. Please Note: This position is contingent upon [contract win]. The Network and Cybersecurity Delivery Lead will analyze user needs to determine functional requirements and define problems and develop plans and requirements in the subject matter area for moderately complex to complex systems. Key Responsibilities: • Analyze user needs to determine functional requirements and define problems and develop plans and requirements in the subject matter area for moderately complex to complex systems related to information systems architecture, networking; telecommunications, automation, communications protocols, risk management/electronic analysis, software, lifecycle management, software development methodologies, and modeling and simulation. • Perform functional allocation to identify required tasks and their interrelationships. Identify resources required for each task. • Demonstrate exceptional oral and written communication skills. • Commensurate experience in IT and in new and related older technology that directly relates to the required area of expertise. • Minimum 10 years of experience supporting IT infrastructure, systems, and applications, including support teams and ensuring quality of service operations. • Bachelor's degree in computer science, Information Security or related field. • Active Public Trust or higher security clearance. • Strong problem-solving and analytical skills, with the ability to evaluate complex security challenges and develop effective solutions. • Relevant certifications such as PMP, ITIL v4 Foundation, SAFe, COMP, Security+, CompTIA, etc. • Demonstrated expertise in database management, various operating systems (Windows, Linux, etc.), and multiple programming languages (Java, Python, SQL, etc.). • Reside within the Washington DC Metro area. • Travel within the Washington DC Metro Area, and CONUS as needed.

Cybersecurity operations leadership
Incident response and forensic investigation
SOAR automation and detection engineering
Verified Source
Posted 3 months ago

Ready to join ECS?

Create tailored applications specifically for ECS with our AI-powered resume builder

Get Started for Free

Ready to have AI work for you in your job search?

Sign-up for free and start using JobLogr today!

Get Started »
JobLogr badgeTinyLaunch BadgeJobLogr - AI Job Search Tools to Land Your Next Job Faster than Ever | Product Hunt