Senior Cybersecurity Subject Matter Expert

Posted Yesterday
Be an Early Applicant
Tallahassee, FL, USA
In-Office
120K-150K Annually
Senior level
Information Technology
The Role
Lead and execute advanced adversary simulation and detection validation mapped to MITRE ATT&CK. Design tests, generate behavioral anomalies, query SIEM telemetry, classify non-detections, validate remediations, produce timestamped forensic findings, and mentor testers. One role will lead Purple Team and detection methodology.
Summary Generated by Built In
Senior Cybersecurity Subject Matter Expert

Location: Florida, Remote
Tallahassee metro preferred, within 50 miles
Candidates must reside in Florida
Compensation: $120,000–$150,000
Employment Type: Full Time, W-2
Positions: 2 FTEs
Start: Contingent upon contract award

About Emerging Tech

At Emerging Tech, we support government and public sector customers through technology, cybersecurity, and mission driven solutions. As a growing SDVOSB, 8(a), and HUBZone company, we provide our team with the opportunity to take ownership, work directly with clients and leadership, and contribute to meaningful government missions.

We’re big enough to take on meaningful government work, but still small enough that your expertise and ideas have a direct impact. If you enjoy solving complex problems, working with talented teams, and having a real role in building something that’s growing, you’ll fit right in at Emerging Tech.

Role Overview

The Senior Cybersecurity Subject Matter Expert will provide expert level technical execution and depth across cybersecurity assessment and testing activities.

This role will develop and execute advanced testing procedures, conduct controlled adversary simulations across selected stages of the cyber kill chain, validate cybersecurity controls, independently evaluate agency remediation efforts, and determine and document the root cause of detection outcomes.

One of the two positions will be designated as the Purple Team and Detection Lead, responsible for owning the technique catalog and detection gap methodology in partnership with the Technical Lead.

Key Responsibilities

• Design and execute controlled adversary simulations mapped to MITRE ATT&CK across selected kill chain stages.

• Generate behavioral anomalies and validate whether client monitoring detects, correlates, analyzes, and escalates activity within defined thresholds.

• Conduct access control stress testing, including password spray against lockout policies, Kerberoasting, legacy authentication bypass, privilege escalation path validation, and session and elevation expiry verification.

• Query and analyze client SIEM content to reconcile emitted activity against observed telemetry, alerts, and analyst actions.

• Classify non detections by root cause and document supporting evidence with synchronized timestamps.

• Independently validate agency remediation claims, including re execution of original testing stimuli when remediation concerns detection capabilities.

• Produce factual, timestamped findings suitable for inclusion in audit workpapers.

• Mentor Technical Testers and review evidence packages for completeness, accuracy, and sufficiency.

Required Technical Skills

• Deep expertise in adversary simulation, kill chain testing, behavioral anomaly generation, and detection validation aligned with MITRE ATT&CK.

• Hands on proficiency querying at least one major SIEM platform, including Splunk SPL, Microsoft Sentinel KQL, or Elastic.

• Experience assessing detection content coverage and log source completeness.

• Strong technical knowledge of SIEM platforms, endpoint detection and response systems, network monitoring tools, and cloud native security controls.

• Expertise assessing logging, alerting, escalation, and monitoring effectiveness from initial sensor activity through analyst action.

• Advanced knowledge of Active Directory, Kerberos, Group Policy Objects, identity governance, and privilege management, including Active Directory Certificate Services misconfiguration classes.

• Experience conducting penetration testing, vulnerability assessments, web application reviews, API testing, and cloud security assessments.

• Proficiency across Microsoft Azure, Microsoft 365, AWS, and hybrid enterprise environments.

• Ability to evaluate compliance with NIST CSF and state cybersecurity requirements, including Rule 60GG-2, F.A.C.

• Experience analyzing remediation plans and independently validating corrective actions.

• Ability to develop detailed root cause analyses and evidence based recommendations.

• Experience performing forensic log reviews, incident reconstruction, and security event analysis.

• Disciplined evidence handling, including synchronized timestamping, reproducible procedures, and defensible chain of custody.

Minimum Qualifications

• 8+ years of experience in cybersecurity assessment, penetration testing, cyber defense operations, or security architecture.

• Demonstrated hands on adversary emulation or purple team experience in enterprise environments.

• Proven experience validating detection and response capabilities, not solely verifying control configuration.

• Experience producing technical findings that have withstood external audit, regulatory, or client quality review.

• Must reside in the state of Florida.

Certifications

Required:

Two certifications are mandatory at hire and are a condition of assignment.

One of the following:

• CISSP
• CISA

And at least one of the following hands on technical certifications:

• OSCP
• CRTO
• GPEN
• GCIA
• GCIH
• GCDA
• GCPN

Preferred:

• CEH
• SC-200
• GCFA
• GXPN
• AWS Security Specialty
• Azure Security Specialty

Preferred Qualifications

• Experience testing in multi tenant or federated government environments.

• Detection content authoring experience in Splunk, Microsoft Sentinel, or Elastic.

• Prior experience supporting government cybersecurity programs or independent assessment functions.

Working Conditions

This is a remote position for Florida based candidates. The Tallahassee metro area, within approximately 50 miles, is preferred.

The role requires significant technical coordination with government stakeholders and cybersecurity teams across multiple testing environments and concurrent engagements.

Skills Required

  • 8+ years of experience in cybersecurity assessment, penetration testing, cyber defense operations, or security architecture.
  • Must reside in the state of Florida.
  • Deep expertise in adversary simulation, kill chain testing, behavioral anomaly generation, and detection validation aligned with MITRE ATT&CK.
  • Hands-on proficiency querying at least one major SIEM platform (Splunk SPL, Microsoft Sentinel KQL, or Elastic).
  • Strong technical knowledge of SIEM platforms, endpoint detection and response systems, network monitoring tools, and cloud native security controls.
  • Advanced knowledge of Active Directory, Kerberos, Group Policy Objects, identity governance, privilege management, and Active Directory Certificate Services misconfigurations.
  • Experience conducting penetration testing, vulnerability assessments, web application reviews, API testing, and cloud security assessments.
  • Proficiency across Microsoft Azure, Microsoft 365, AWS, and hybrid enterprise environments.
  • Ability to evaluate compliance with NIST CSF and applicable state cybersecurity requirements (e.g., Rule 60GG-2, F.A.C.).
  • Experience producing technical findings that have withstood external audit, regulatory, or client quality review.
  • Demonstrated hands-on adversary emulation or purple team experience in enterprise environments.
  • Disciplined evidence handling, synchronized timestamping, reproducible procedures, and defensible chain of custody.
  • Two mandatory certifications at hire: one of CISSP or CISA, AND at least one hands-on technical cert (OSCP, CRTO, GPEN, GCIA, GCIH, GCDA, or GCPN).
  • Detection content authoring experience in Splunk, Microsoft Sentinel, or Elastic.
  • Prior experience supporting government cybersecurity programs or independent assessment functions.
  • Preferred certifications such as CEH, SC-200, GCFA, GXPN, AWS Security Specialty, or Azure Security Specialty.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Arnold, MD
63 Employees
Year Founded: 2015

What We Do

Our Purpose - Emerging Tech was founded with the aim of fulfilling the emergent need of standards-based, end-to-end IT consultancy. Our experts are located across the United States, eager to design and implement cutting-edge solutions that revolutionize our partners’ capabilities. Our Work - Our range of experience crosses multiple industries and sectors including Mobile Health Care, Cyber Security, Commercial Solutions for Classified (CSfC), Systems Engineering, Network Engineering, Unified Endpoint Management (UEM), and Mobile Application Management (MAM). Our People - We are proud to be disruptive consultants. We don’t waste our time with traditional corporate politics. We believe each employee contributes directly to our company’s growth and success. Our teams are comprised of diverse, talented, and innovative leaders from varied industries, skills, and backgrounds.

Similar Jobs

Pfizer Logo Pfizer

Senior Associate, Metadata Engineering

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
6 Locations
121990 Employees
72K-132K Annually

Pfizer Logo Pfizer

Senior Manager PC1 Marketing, Commercial and Digital Enablement

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
5 Locations
121990 Employees
112K-207K Annually

Zeta Global Logo Zeta Global

Senior Engineering Manager

AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Easy Apply
Remote or Hybrid
United States
2429 Employees
225K-240K Annually

Zeta Global Logo Zeta Global

Senior Engineering Manager

AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Easy Apply
Remote or Hybrid
United States
2429 Employees
225K-240K Annually

Similar Companies Hiring

Scrunch  Thumbnail
Artificial Intelligence • Information Technology • Marketing Tech • Software • SEO
Salt Lake City, Utah
Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account