← Back to results

gcih jobs in San Diego

Posted 1 day ago

Lead high-severity incident investigations, mentor L1/L2 analysts, and drive detection engineering at a cybersecurity services firm. Responsibilities include threat hunting, malware analysis, digital/network forensics, SIEM/EDR tuning (KQL, SPL, Sigma, YARA), playbook development, and automation scripting in Python/PowerShell/Bash.… This is a 5+ year senior incident responder role requiring deep hands-on expertise across the full incident response lifecycle, MITRE ATT&CK, and client-facing technical briefings.

San DiegoLast seen today
Posted 27 days ago

The Cybersecurity Engineer III will support Assessment and Authorization accreditation efforts, maintaining cybersecurity monitoring operations, performing incident triage, identifying vulnerabilities, and recommending remediation strategies. Responsibilities include analyzing cybersecurity directives and policies (CTOs, FRAGOs, IAVMs, STIG requirements), developing compliance strategies aligned with federal and defense security standards, and performing risk analysis and independent verification of security configurations.… The role requires in-depth Risk Management Framework knowledge, FISMA data reporting support, and use of compliance tracking tools such as VRAM. This position requires a Secret clearance, IAT Level III certification (CASP+, CCNP Security, CISA, CISSP, GCED, or GCIH), and 10+ years of cybersecurity or incident response experience.

San DiegoLast seen 26 days ago
$135,000 – $150,000 · Posted 1 month ago

Implement, assess, and authorize security controls for IT management systems under the Risk Management Framework (RMF). Conduct security reconnaissance, identify gaps, develop Plans of Action and Milestones (POA&Ms), and maintain A&A documentation (SSPs, SAPs, SARs).… Manage eMASS compliance, STIG assessments, and coordinate accreditation workflows. Requires 10+ years of cybersecurity experience, an active Secret clearance, IAT Level III certification (CISSP preferred), and hands-on A&A and ATO submission experience.

San DiegoLast seen 1 month ago
Posted 1 month ago

The Cybersecurity Engineer III will support Risk Management Framework (RMF) activities, Assessment & Authorization (A&A) processes, and continuous monitoring for DoD accredited systems. Responsibilities include developing and maintaining security documentation (SSPs, SAPs, SARs, POA&Ms), performing vulnerability assessments, managing eMASS tasking, and conducting security control validation and testing.… The role requires 10+ years in cybersecurity, RMF compliance, or incident response; expertise with eMASS, DISA STIGs, and vulnerability assessment tools; and an active Secret clearance with DoD 8570/8140 IAT Level III certification (CASP+, CCNP Security, CISA, CISSP, GCED, or GCIH).

San DiegoLast seen 1 month ago
$140,000 – $150,000 · Posted 1 month ago

The Cybersecurity Engineer III will support Assessment and Authorization (A&A) accreditation efforts, including maintaining cybersecurity monitoring operations, performing incident triage, identifying vulnerabilities, and recommending remediation strategies. Responsibilities include testing and applying security controls, conducting reconnaissance, authoring Plans of Milestones and Actions (POA&Ms), developing A&A documentation (SSP, SAP, SARs), and managing eMASS tasking throughout the accreditation cycle.… The role requires in-depth knowledge of the Risk Management Framework, DISA circuit connections, and cloud service provider inheritance. This position requires a Secret clearance, IAT Level III certification, and one of several advanced certifications (CASP+, CCNP Security, CISA, CISSP, GCED, or GCIH), plus 10+ years of cybersecurity or incident response experience.

San DiegoLast seen 1 month ago
$80,000 – $110,000 · Posted 1 month ago

This cybersecurity engineer role focuses on securing cloud infrastructure (AWS, Azure, GCP), containerized environments (Docker, Kubernetes), and applications through vulnerability management, risk assessment, and security architecture review. The position requires hands-on experience with SIEM, EDR, WAF configuration, and embedding security scanning (SAST, DAST, SCA) into CI/CD pipelines.… The engineer will conduct threat modeling, manage IAM policies, perform penetration testing coordination, support incident response and post-incident reviews, and partner with engineering teams to balance security with delivery. The role also includes compliance support, vendor risk assessments, and serving in an on-call rotation for after-hours security incidents.

San DiegoLast seen 25 days ago
$80,000 – $110,000 · Posted 1 month ago

This role is a hands-on cybersecurity engineer responsible for securing cloud infrastructure (AWS, Azure, GCP), containerized environments (Docker, Kubernetes), and applications. Key duties include vulnerability scanning and penetration testing, threat modeling, Web Application Firewall (WAF) deployment and tuning, CI/CD security integration (SAST, DAST, SCA), incident response, and compliance support.… The engineer will work closely with DevOps and application teams to embed security controls, conduct code and architecture reviews, and provide risk-based guidance. Required experience includes 3–5+ years in cybersecurity or security engineering, hands-on SIEM/EDR/vulnerability management tools, cloud platforms, WAF configuration, and scripting (Python, Bash, PowerShell).

San DiegoLast seen 1 month ago