Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior IT Cybersecurity Specialist (On-Site)

groundswell
Companygroundswell
CategorySecurity
LocationMcLean VA
RemoteOn-site (inferred)
EmploymentNot stated
LevelSenior
SalaryNot stated by the employer
Posted29 Jul 2026
Last verified8 Aug 2026
SourceEmployer ATS (workday)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
Who Are We? Groundswell is a premier technology integrator and solution provider, resolutely committed to solving the most complex challenges facing federal agencies today. Our name, Groundswell, represents our commitment to be an unstoppable, seismic change in government. Ours is a small company culture with big company reach and results.  Are you ready to be audacious, be bold and drive change at a rapid pace?  Join us, where we’ll make a greater impact together. What You'll do: Groundswell is seeking   an   experienced, hands-on Cybersecurity   Specialist   to serve as the senior on-site technical   support   for cybersecurity operations, Microsoft Azure Government, Microsoft 365 GCC High, cloud infrastructure, identity, endpoint security, networking, and incident response. This role   will serve as   an   escalation point for complex security and infrastructure issues,   and to help   strengthen Groundswell's internal cyber capabilities,   supporting   the company's ongoing compliance   with CMMC level 2 . The positio n will   be    responsible   for investigations, configuration, troubleshooting, control implementation, and high-impact issue resolution. The   individual contributor   position works closely with   small internal operations team   and External Supplier teams. Key Responsibilities • Own   cybersecurity operations   to include   incident respons e,   investigations,   response, threat id entification   threat ,   containment, recovery, root-cause analysis, and post-incident improvements. • escalation point for complex security, cloud, identity, endpoint, network, Azure Virtual Desktop, and infrastructure issues. • Administer privileged access and identity controls, including Conditional Access, multifactor authentication, service principals, Privileged Identity Management, least privilege, separation of duties, and time-limited elevation. • Maintain   Cisco   Meraki   environment, including firewalls, switches, wireless access points, VLANs, access-control lists, segmentation, logging, site connectivity, outage response, and recovery documentation. •  vulnerability and configuration management using Tenable, Microsoft Defender, Microsoft Secure Score, vendor advisories, and threat-intelligence sources. Prioritize findings based on severity, exploitability, exposure, asset criticality, known exploitation, operational risk, and CUI impact; coordinate remediation, document   exceptions   and residual risk, and confirm corrective actions are effective. • Lead AvePoint backup and recovery for Microsoft 365 GCC High, including monitoring jobs, resolving failures, testing restores, and   maintaining   recovery practices for Exchange, SharePoint, OneDrive, and Teams. • Serve as a technical subject matter expert for CMMC Level 2 and related certification programs by   maintaining   the System Security Plan, Plans of Action and Milestones,   etc • Provide senior   escalation support while preserving the Helpdesk's responsibility for routine ticket intake and normal user support, and mentor Helpdesk personnel in incident recognition, evidence preservation, escalation, troubleshooting, and documentation. • Prepare, review, implement, and document technical changes   in support   of    CMMI -SVC, ISO 9001, ISO/IEC 20000-1, ISO/IEC 27001, UK Cyber Essentials, and CMMC requirements. Required Qualifications: • Bachelor's degree in cybersecurity, computer science, information systems, engineering, network engineering, or a related technical field. • 10   year    years   +   experience in cybersecurity operations, cloud security, infrastructure engineering, network engineering, incident response, or a related field. • Direct hands-on experience with Microsoft GCC High, Azure Government, Department of Defense cloud environments, or a comparable regulated Microsoft environment. • Advanced production experience with Microsoft Sentinel, Defender XDR, Entra ID, Intune, Purview, Exchange Online, SharePoint Online, Teams, Azure networking, Azure Virtual Desktop, KQL, and PowerShell. • Hands-on experience administering enterprise network infrastructure and resolving complex cloud, identity, endpoint, and network issues. • Demonstrated experience producing technical evidence for audits or assessments, remediating security findings,   validating   corrective actions, and explaining technical risks and controls to technical and nontechnical audience s • Ability to lead incident response under pressure, remain personally hands-on, exercise discretion with CUI and sensitive records, manage competing priorities, and work effectively with   a variety of customers • US Citizenship required for clearance purposes. • Location: position is full time on-site in our Mclean, VA office. Preferred Qualifications: • Microsoft Cybersecurity Architect Expert, Microsoft Security Operations Analyst Associate, or Microsoft Azure Security Engineer Associate certification. • Demonstrated experience leading AvePoint backup and recovery, security automation, or large-scale operational improvement in a regulated Microsoft Government cloud environment. • Advanced Cisco networking experience, including CCNP Enterprise or Cisco Meraki Solutions Specialist certification. Skills: Certification: Why You’ll Never Want to Leave: • Comprehensive medical, dental, and vision plans • Flexible Spending Account • 4% 401K Match (immediate vesting) • Paid Time Off • Tuition reimbursement, certification programs, and professional development • Flexible work schedule • On-site gym and childcare option The salary range for this role takes into account the wide range of factors that are considered in making compensation decisions, including but not limited to skill sets, experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for any applicable geographic differential associated with the location at which the position may be filled. At Groundswell, it is not typical for an individual to be hired at or near the top of the range for their role, and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is: $116,724.00 - $209,019.00 NOTE :  Groundswell does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Groundswell, and Groundswell will not be obligated to pay a placement fee. Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws. Read a copy of the Company’s Non-Discrimination Policy Statement . Additional Resources : • EO 13496 Notification of Employee Rights under NLRA • Know your rights: Workplace Discrimination is Illegal Disability Accessibility Accommodation: If you are an individual with a disability and would like to request a reasonable accommodation as part of the employment selection process, please contact us at  [email protected]  or 703-639-1777.