Cfocussoftware logo

Blue Team Lead

cfocussoftware

Hybrid
Washington, DC
Full-time
Manager
Senior
5+ yrs
Salary not listedPosted 4w ago

Real job — pulled straight from cfocussoftware’s careers page · Verified July 16, 2026 · No reposts.

Job description

cfocussoftware is hiring a Blue Team Lead — a full-time, based in Washington, DC role. Apply directly on cfocussoftware's careers page below.

AOUSC - Blue Team Lead

cFocus Software seeks a Blue Team Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance.
Qualifications:
  • Active Public Trust clearance
  • B.S. Computer Science, Information Technology, or a related field
  • Five (5) year’s total project management related experience in the Cybersecurity or information technology industry.
  • This includes development of policies and procedures, technical standards, and workflow development.
  • Three (3) years of experience delivering cybersecurity services as part of a service delivery team and planning, managing and performing cyber security assessments, including assessment reporting deliverables.
  • Active CISA or CISSP certification

Duties:
  • Lead and manage Blue Team support services that complement Red Team exercises and support overall Judiciary cybersecurity readiness.
  • Develop methodologies for assessing customer environments using previous Red Team reporting, cybersecurity best practices, MITRE ATT&CK, NIST CSF 2.0, and ITSO leadership guidance.
  • Conduct pre-engagement technical assessments to identify security gaps, misconfigurations, control weaknesses, and opportunities for defensive improvements.
  • Develop actionable mitigation recommendations that clearly identify technical deficiencies, operational risks, remediation actions, required tools and skills, expected outcomes, and implementation timelines.
  • Develop and deliver pre-engagement technical assessment reports and mitigation plans for AO staff and court units prior to Red Team exercises.
  • Facilitate post-engagement meetings with Red Team customers and provide detailed remediation guidance based on findings from Red Team activities.
  • Perform post-engagement assessments utilizing Red Team reports to identify missed controls, detection gaps, and unsuccessful defensive measures.
  • Develop post-engagement assessment reports documenting improvements, residual risks, and recommended enhancements to customer environments.
  • Lead the development and execution of cyber exercise support services including governance, communication strategies, facilitation, and operational coordination.
  • Design, plan, facilitate, and execute tabletop exercises, inject-driven cyber exercises, and operational readiness scenarios for technical and executive audiences.
  • Develop realistic exercise scenarios aligned to current cyber threats, adversary tactics, techniques, and procedures (TTPs), and Judiciary operational environments.
  • Coordinate with ITSO Divisions, SOC personnel, Detection Engineering, Threat Hunting, Incident Response, and Cyber Threat Intelligence teams to support exercise planning and defensive operations.
  • Conduct post-exercise analysis and develop executive summaries detailing strengths, weaknesses, lessons learned, operational readiness, and improvement opportunities.
  • Support Detection Engineering efforts by assisting with analysis of threats, exploits, attack techniques, detection opportunities, and defensive recommendations.
  • Develop and brief technical and executive-level presentations regarding Blue Team activities, cyber exercises, threat trends, and defensive posture improvements.
  • Develop KPI metrics, operational reporting, annual summaries, and executive dashboards demonstrating improvements in Judiciary cybersecurity protection measures.
  • Provide operational leadership and oversight for Blue Team activities in alignment with ITIL v4 service management principles and AO cybersecurity directives.
  • Participate in weekly technical meetings, monthly program reviews, operational readiness meetings, and stakeholder briefings.
  • Develop and maintain SOPs, work instructions, governance documentation, communication strategies, and process documentation supporting Blue Team operations.
  • Assist with transition-in and transition-out planning, operational readiness activities, and knowledge transfer requirements.
  • Collaborate with Red Team personnel to evaluate exploit paths, detection opportunities, and mitigation effectiveness.
  • Support continuous improvement initiatives by identifying gaps in people, process, and technology across cybersecurity operations.
  • Maintain awareness of emerging threats, adversary tradecraft, cybersecurity frameworks, and defensive security technologies relevant to the Federal Judiciary.

Get Blue Team Lead jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Shipt logo

Security Engineer

$65k–$110kBirmingham, AL
✓ From careers page· 44m ago
Iberdrola logo

Manager, Cyber Operations

$128k–$160kRochester, NY
✓ From careers page· 2h ago
Sequoia Connect logo

Compliance and Product Security Engineer

Mexico
✓ From careers page· 4h ago
Accenture logo

Secure AI Engineer Manager

$80k–$294kAtlanta, GA
✓ From careers page· 4h ago

Frequently asked questions

What skills are required for Blue Team Lead at cfocussoftware?

The required skills for Blue Team Lead at cfocussoftware include: Cybersecurity, Project Management, CISA, CISSP, ITIL.

What is the seniority level for Blue Team Lead at cfocussoftware?

Blue Team Lead at cfocussoftware is a Manager / Senior level position.

How do I apply for Blue Team Lead at cfocussoftware?

You can view the full description and apply for Blue Team Lead at cfocussoftware on EchoJobs: https://echojobs.io/job/cfocussoftware-aousc-blue-team-lead-oh2d6.