Summary - Cybersecurity Specialist
The Cybersecurity Specialist is a hands-on member of the CEF Industries IT team responsible for day-to-day cybersecurity execution, technical security controls, cyber resilience, and related compliance activities. The role works closely with the IT Director and IT Specialist and is expected to take ownership of assigned security issues, remediation activities, recurring control reviews, and technical projects.
Cybersecurity is the primary focus of this position; however, CEF operates with a small, collaborative IT team. The successful candidate must be comfortable working across technical disciplines and assisting with general IT troubleshooting, applications, endpoints, servers, infrastructure, workstation deployments, and end-user technology when departmental or business needs require it.
This is an onsite position. Regular physical presence at the CEF facility is required.
Essential Duties and Responsibilities
Essential duties and responsibilities include the following. Other duties may be assigned.
-
Own day-to-day cybersecurity operations and follow-through, including security alert review, threat investigation, incident response support, coordination with managed security providers, and tracking required remediation through closure.
-
Administer and support endpoint and security platforms, including EDR, vulnerability management, security monitoring, authentication, password-management, encryption, and related controls. Maintain endpoint coverage, sensor health, security policies, and response readiness.
-
Manage vulnerability, patching, and system-hardening activities across endpoints, servers, applications, network devices, and other technology platforms. Prioritize findings, apply or coordinate fixes, validate resolution, document exceptions, and drive identified risks through closure.
-
Support identity and access management security controls, including MFA, SSO, privileged access, authentication technologies, periodic access reviews, stale account/entitlement cleanup, and other access-control activities.
-
Support network security and related infrastructure, including firewalls, wireless, VPNs, switching, firmware maintenance, firewall-rule reviews, segmentation, troubleshooting, and implementation of technical security controls.
-
Own backup and cyber-resilience activities, including backup-health review and remediation, validation of backup coverage, restore testing, disaster recovery exercises, recovery documentation, and improvements to backup and recovery capabilities.
-
Perform recurring cybersecurity and compliance activities required by TransDigm policies, CMMC, NIST 800-171, customer requirements, or other applicable standards. Support audit readiness by collecting evidence, validating technical controls, maintaining documentation, and assisting with assessments.
-
Coordinate cybersecurity testing and risk-reduction activities, including internal/external penetration testing, remediation of findings, third-party security/access reviews, security awareness activities, phishing simulations, and other recurring security-control validation.
-
Lead or support cybersecurity and infrastructure projects from planning through completion. Work with consultants and vendors, understand contracted scope and responsibilities, coordinate the appropriate division of internal and external work within the approved project scope, complete internal prerequisites, track actions, validate deliverables, test results, document changes, and escalate material scope, cost, business-impacting, or risk-related decisions to the IT Director.
-
Evaluate technical solutions and recommendations with consideration for cybersecurity risk, business operations, user impact, supportability, cost, operational practicality, and ongoing administrative workload.
-
Create and maintain cybersecurity and technical documentation, including procedures, runbooks, diagrams, incident and recovery documentation, project records, and evidence supporting recurring control activities. Maintain awareness of emerging threats and technologies, including AI-enabled cybersecurity risks.
-
Serve as a cybersecurity resource for employees and business teams while working collaboratively with the IT Specialist and IT Director. Assist with broader IT support and troubleshooting when business or departmental needs require it.
-
Serve as the primary after-hours contact for cybersecurity alerts, incidents, and escalations. Respond to or coordinate investigation and remediation as required, escalating significant business-impacting incidents, risk decisions, or situations requiring management involvement to the IT Director.
-
Remain flexible to support cybersecurity incidents, maintenance, patching, planned changes, and project work outside normal business hours when required.
Supervisory Responsibilities
This job has no supervisory responsibilities.
To perform the job successfully, an individual should demonstrate the following competencies:
-
Ownership and Results - Takes responsibility for assigned work, follows issues and remediation through completion, and independently manages assigned priorities and projects.
-
Problem Solving - Analyzes technical and cybersecurity problems, develops practical solutions, and knows when to escalate matters requiring additional expertise, risk acceptance, or business decisions.
-
Technical and Business Judgment - Balances cybersecurity best practices with operational risk, user impact, supportability, cost, and ongoing administrative workload.
-
Project and Vendor Coordination - Coordinates technical projects involving internal staff, consultants, and vendors; understands scope and responsibilities; validates deliverables; and drives work to completion.
-
Adaptability and Task Switching - Works comfortably across cybersecurity and broader IT disciplines and adjusts priorities as incidents, operational needs, compliance requirements, projects, and business priorities change.
-
Continuous Learning - Maintains current knowledge of cybersecurity threats, technologies, and practices and independently develops knowledge of new tools and systems as needed.
-
Communication and Documentation - Communicates clearly with technical and non-technical audiences and maintains accurate, timely technical, project, incident, and compliance documentation.
Education and/or Experience
-
Minimum of 7 years of progressive, hands-on IT and cybersecurity experience is required. A bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field is preferred; equivalent education, training, or certifications may be considered in place of the degree.
-
At least 3 years of direct, hands-on responsibility in cybersecurity, information security, infrastructure security, systems/network administration with security responsibilities, vulnerability remediation, incident response, or a closely related technical area is strongly preferred.
-
Demonstrated experience independently owning technical work and projects and working effectively with external consultants or vendors is required. Experience in manufacturing, aerospace, defense, or another regulated or compliance-driven environment is preferred.
Demonstrated analytical, written, and oral communication skills, including the ability to explain technical and cybersecurity concepts to non-technical audiences.
Required technical knowledge and experience:
-
Strong working knowledge of Microsoft Windows desktop/server environments and systems-administration fundamentals.
-
Solid understanding of Active Directory, Entra ID, Group Policy, identity/access management, authentication, and Microsoft 365 security concepts.
-
Strong networking fundamentals, including TCP/IP, DNS, DHCP, VLANs, switching, wireless, firewalls, VPNs, and network troubleshooting.
-
Hands-on experience with cybersecurity technologies and processes such as EDR, vulnerability management, patch/remediation, MFA, security monitoring, incident response, and technical security controls.
-
Experience with backup/recovery, disaster recovery, virtualization, and general infrastructure technologies.
-
Ability to troubleshoot systems, applications, endpoints, and infrastructure and to work effectively with software vendors and technical consultants.
Preferred experience:
-
Experience with enterprise firewall and network security platforms, such as Fortinet or comparable technologies.
-
Experience with endpoint detection and response (EDR), vulnerability management, and security operations platforms, such as CrowdStrike, Tanium, or comparable technologies.
-
Experience with backup, disaster recovery, and virtualization platforms, such as Commvault or comparable technologies.
-
Familiarity with network detection and response, enterprise password management, and other security platforms is a plus.
-
PowerShell, Python, Bash, or similar scripting/automation methods.
-
CMMC, NIST 800-171, or similar cybersecurity/compliance frameworks and regulated environments.
-
Relevant IT or cybersecurity certifications from recognized industry organizations such as CompTIA, ISC2, ISACA, GIAC, Fortinet, Microsoft, or equivalent are preferred.
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
While performing the duties of this Job, the employee is regularly required to talk or hear. The employee is frequently required to sit. The employee is occasionally required to stand; crouch; walk; use hands to handle or feel and reach with hands and arms. The employee must occasionally lift and/or move up to 25 pounds. Specific vision abilities required by this job include ability to adjust focus. Walk through manufacturing areas requiring personal protective equipment: safety glasses, hearing protection, etc
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
The noise level in the work environment is usually moderate.
Work Schedule and Availability
Regular Shift Hours: An 8-hour work schedule generally beginning between 7:00 AM and 8:00 AM and ending between 4:00 PM and 5:00 PM, based on departmental coverage and business needs.
After Hours/Weekend Support: This position serves as the primary after-hours contact for cybersecurity alerts, incidents, and escalations and is expected to respond to or coordinate investigation and remediation as required. Flexibility is also required to support emergencies, system maintenance or patching, planned changes, and project work outside normal business hours as needed.
The employee is expected to adhere to all company policies.
NOTE: This job description is not intended to be all-inclusive. Employee may perform other duties assigned to meet the ongoing needs of the organization.
Full Benefits including: Medical, Dental, Vision, Supplemental Health Benefits, FSA/HSA, Vacation, Personal Time, 11 Paid Holidays + 3 Floating Holidays, 401K/Match, ST/LT Disability, Life/AD&D Ins., Legal Ins., Identity Theft, Pet Ins., Auto & Home Ins., Commuter Benefits, Tuition Reimbursement, Discretionary Bonus Eligible
FLSA Exempt. Salary Range $90-$115k depending on experience
Equal Employment Opportunity
CEF Industries is an Equal Opportunity Employer. CEF is committed to ensuring equal employment opportunities for all job applicants and employees. Employment decisions are based upon job related reasons regardless of race (and traits associated with race including but not limited to hair texture and protective hairstyles such as braids, locks, and twists), religion, color, sex (including pregnancy and gender identity), sexual orientation, national origin, ancestry, age, gender identity or expression, disability, family medical history or genetic information, veteran status, military service, marital status, order of protection status, citizenship status, or any other characteristic protected by applicable law. Must be authorized to work in the U.S., ITAR/EAR compliance is required for all positions. To conform to U.S. export control regulations, applicant should be eligible for any required authorizations from the U.S. Government. (Disability/Veteran/VEVRAA Federal Contractor”) If you would like more information about Equal Employment Opportunity as an applicant under the law, please go to https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf
No phone calls / No agencies |