Cybersecurity Engineer
Public Trust: None
Requisition Type: Regular
Your Impact
Own your opportunity to work with the largest government agency in the nation. Make an impact by advancing the Department of Defense’s mission to keep our country safe and secure.
Job Description
Description: We are seeking a highly skilled and multi-faceted Cyber Engineer for a critical contract role supporting Google's SIPRNet enclave. The ideal candidate is a proactive and seasoned professional with extensive, hands-on experience navigating Red Hat Linux, the NIST 800-53 Risk Management Framework (RMF) control requirements, and Security Operations for a classified network in a unique commercial cloud setting. This role requires a blend of technical engineering prowess to provide Security Operations support as well as a deep understanding of continuous monitoring control requirements to prepare for security assessments and auditing. You will be a key contributor to our SIPR Enclave team, supporting the SIPR Enclave Lead in RMF activities and the Senior Cyber Engineer in security operations support.
Investigation/Clearance Level:
Must possess a current and active Top Secret (Sensitive Compartmented Information [SCI] eligibility).
Location: Onsite at the classified operations center in McLean, VA.
Duties:
From a Security Operations perspective, as directed by the Senior Cyber Engineer, the Engineer -
Configure and update the Linux operating systems.
Red Hat
Debian
Monitors the following security applications:
Scanning implementation (Tenable.sc, SCC Tool)
SIEM implementation (Splunk)
Endpoint security implementation (Trellix)
Works with the vendors of the security applications as applicable to maintain security updates, licenses, resolve support issues (e.g., for Tenable plugins), etc.
For the SIEM:
Ensure security systems are up to date and implemented.
Validate the telemetry from the hosts and security applications are forwarded to the SIEM.
Configures alerts for privileged activity that would be conducted in the enclave as well as alerts from security advisories.
Triages all alerts from the SIEM to ensure activity in the environment is authorized.
Investigates, resolves, and reports security incidents in alignment with the Incident Response Plan.
For scanning/STIGs:
Ensures the inventory of hosts and recurring/ad-hoc scan policies are accurate.
Reviews the scans to confirm correct, actionable data is generated to support the patching activities.
Reviews STIG results and supports the team in implementing corrective action as applicable.
For endpoint management:
Ensures all hosts can be seen in the endpoint security application with ongoing monitoring and applicable policies applied.
Triages all alerts from the tool to ensure activity in the environment is authorized.
For insider threat monitoring:
Ensures deployment of tool and related modules are performing as intended.
Monitors aggregate user data as directed.
Designs, develops, tests, and evaluates information system security throughout the systems development life cycle.
From a RMF perspective, as directed by the SIPR Enclave Lead -
Supports maintaining the Continuous Monitoring program, specifically around vulnerability management, endpoint security, auditing, and security alert triage/monitoring.
Supports control implementation statement updates, documentation development for plans or procedures, artifact identification for assessments, and body of evidence generation.
Supports POAM mitigation and/or remediation activities.
Required Qualifications:
Education: BA/BS Degree or equivalent experience in lieu of degree
Experience: 8+ years of related experience
Technical skills:
Ability to implement Red Hat updates.
Understanding of various Linux operating systems.
Ability to update and use security operations of Splunk and Trelix.
Understanding of Microsoft Active Directory and implementing controls via Group Policy.
Role requirements: Knowledge of the complete NIST SP 800 series (especially 800-37, 800-53, 800-30) and risk management principles.
Certifications: Must be DoD 8140 / 8570.01-M compliant (e.g., including but not limited to Security+)
Preferred Qualifications:
Hands-on experience with security operations of Teramind.
Hands-on experience with Tenable.sc.
5 days onsite McLean, VA
Work Requirements
Years of Experience
8 + years of related experience
* may vary based on technical training, certification(s), or degree
Certification
CompTIA Security+ CE | CompTIA - CompTIA
Travel Required
10-25%
Citizenship
U.S. Citizenship Required
Recommended Jobs
Supervisor - Milk & Honey
Overview We're looking for a passionate and motivated Supervisor to help lead a dynamic team in delivering exceptional guest experiences in a fun, fast-paced environment. As a Supervisor, y…
Senior Appian Developer
Senior Appian Developer Astor & Sanders Corporation (Astor) is an award-winning IT solutions provider headquartered in McLean, VA seeking a Senior Appian Developer . This is a full-time and hybr…
Cloud Reliability & Support Engineer
Program Overview Cybersecurity experts, Scrum and Agile professionals and engineers (systems, software, network, and cloud reliability) design and sustain cloud infrastructure to host spacecraft c…
Nocturnist Lead Advanced Practice Clinician in Richmond, Virginia
Join the highly skilled hospital medicine (HM) team at Chippenham Hospital in Richmond, Virginia, as our nocturnist lead advanced practice clinician. The lead advanced practice clinician (APC) will w…
Senior Statistician/Mathematician - Quality Assurance Framework (QAF) Oversight & Monitoring
Program Overview About The Role Peraton has an opportunity for you to join our military intelligence program (s) of record to deliver, operate and sustain modernized, transformed data sc…
Senior Director, Global Partner Services, Contact Center Operations (Hybrid)
Senior Director, Global Partner Services, Contact Center Operations (Hybrid) Capital One’s Customer Channels organization is seeking a talented Senior Director to lead our Global Partner Se…
Adult Psychiatrist - 4040
Adult Psychiatrist – 4040 Make an Impact in Crisis Psychiatry ? Psychiatrist Role Available *Come enjoy the beautiful Blue Ridge Mountains. *This wonderful midsize community is accessible by ai…
Agency Loan Administrator I
Agency Loan Administrator I Are you looking for a challenging role that includes the convenience of working virtually at home? Then a Capital One Commercial Ops role may be the role for you! …
Non CDL Box Truck Driver
Are you a skilled driver who doesn’t want to be stuck behind the wheel all day? Do you enjoy hands-on work and seeing a project come together? We are looking for a Box Truck Driver / Installer to join…
Customer Relationship Manager / Budget Analyst
SHINE Systems is hiring a Customer Relationship Manager (CRM) with Budget Analyst and/or Acquisition experience to work in support of a financial and acquisition systems operational environment for a…