Cybersecurity Engineer (Linux)
Public Trust: None
Requisition Type: Regular
Your Impact
Own your opportunity to support our nation's defense. Make an impact by connecting and securing critical operations across the globe, keeping our country safe and secure.
Job Description
Description: We are seeking a highly skilled and multi-faceted Cyber Engineer for a critical contract role supporting Google's SIPRNet enclave. The ideal candidate is a proactive and seasoned professional with extensive, hands-on experience navigating Red Hat Linux, the NIST 800-53 Risk Management Framework (RMF) control requirements, and Security Operations for a classified network in a unique commercial cloud setting. This role requires a blend of technical engineering prowess to provide Security Operations support as well as a deep understanding of continuous monitoring control requirements to prepare for security assessments and auditing. You will be a key contributor to our SIPR Enclave team, supporting the SIPR Enclave Lead in RMF activities and the Senior Cyber Engineer in security operations support.
How the Cybersecurity Engineer will make an impact:
From a RMF perspective, as directed by the SIPR Enclave Lead -
Supports maintaining the Continuous Monitoring program, specifically around vulnerability management, endpoint security, auditing, and security alert triage/monitoring.
Supports control implementation statement updates, documentation development for plans or procedures, artifact identification for assessments, and body of evidence generation.
Supports POAM mitigation and/or remediation activities.
From a Security Tools administrative perspective, as directed by the Senior Cyber Engineer, the Engineer -
Ability to update and maintain security tool versions (Splunk, Trelix, etc)
Configure, patch, and update the Linux operating systems
Monitors the following security applications: Splunk, Trelix, Tenable)
Scanning implementation (Tenable.sc, SCC Tool)
SIEM implementation (Splunk)
Endpoint security implementation (Trellix)
Works with the vendors of the security applications as applicable to maintain security updates, licenses, resolve support issues (e.g., for Tenable plugins), etc.
For the SIEM:
Ensure security systems are up to date and implemented.
Validate the telemetry from the hosts and security applications are forwarded to the SIEM.
Configures alerts for privileged activity that would be conducted in the enclave as well as alerts from security advisories.
Triages all alerts from the SIEM to ensure activity in the environment is authorized.
Investigates, resolves, and reports security incidents in alignment with the Incident Response Plan.
For scanning/STIGs:
Ensures the inventory of hosts and recurring/ad-hoc scan policies are accurate.
Reviews the scans to confirm correct, actionable data is generated to support the patching activities.
Reviews STIG results and supports the team in implementing corrective action as applicable.
For endpoint management:
Ensures all hosts can be seen in the endpoint security application with ongoing monitoring and applicable policies applied.
Triages all alerts from the tool to ensure activity in the environment is authorized.
For insider threat monitoring:
Ensures deployment of tool and related modules are performing as intended.
Monitors aggregate user data as directed.
Designs, develops, tests, and evaluates information system security throughout the systems development life cycle.
What you'll need to be successful:
Education: BA/BS Degree or equivalent experience in lieu of degree
Experience: 8+ years of related experience
Ability to use security operations of Splunk and Trelix.
Ability to update security applications, such as Splunk and Trelix.
Ability to harden the system using STIGs.
Ability to update the underlying security tools Linux operating system.
Role requirements: Knowledge of the complete NIST SP 800 series (especially 800-37, 800-53, 800-30) and risk management principles.
Certifications: Must be DoD 8140 / 8570.01-M compliant (e.g., including but not limited to Security+)
Investigation/Clearance Level:
Must possess a current and active Top Secret (Sensitive Compartmented Information [SCI] eligibility).
Location: Onsite at the classified operations center in McLean, VA.
Preferred Qualifications:
Hands-on experience with security operations of Teramind.
Hands-on experience with Tenable.sc.
5 days onsite McLean, VA
Work Requirements
Years of Experience
8 + years of related experience
* may vary based on technical training, certification(s), or degree
Certification
CompTIA Security+ CE | CompTIA - CompTIA
Travel Required
10-25%
Citizenship
U.S. Citizenship Required
Recommended Jobs
Federal Account Executive - Defense & Intelligence
Cellebrite’s (Nasdaq: CLBT) mission is to enable its global customers to protect and save lives by enhancing digital investigations and intelligence gathering to accelerate justice in communities aro…
Software Engineer (.NET/C#)
We are seeking a skilled Software Developer with expertise in .NET and C# to join our team. The ideal candidate will have over 3 years of experience in software development and a strong background in…
Operations Accountant
Job Details Description Position Overview We are seeking a detail-oriented Operations Accountant to support the financial management of maintenance and customer support operations within our …
Software Solution Architect - Delivery
Where do people love what they do, and being great at what they do? At Swisslog, that’s where! Our teams are the heart of a world-leading Robotics company that’s harnessing the power of technology …
Member Services Representative Weekend Afternoon
Job Summary The Member Services Representative will be responsible for creating a positive member experience by providing a superior level of customer service to Planet Fitness members, prospe…
Account Executive Commercial System Sales
PROFILE: We are seeking an experienced, career-oriented individual with exceptional leadership skills to join our team as an Account Executive Commercial System Sales in the DC, MD, VA regions. C…
Assistant Teacher
Summary Hillsboro Christian Preschool is seeking an Assistant Teacher for our small classroom of 2.5 to 3-year-old children beginning in August 2026. Assistant Teachers at Hillsboro Christian Pr…
Hardwood Lumber Sales Representative
Hardwood Lumber Sales Representative Woodgrain is looking for an experienced Hardwood Lumber Sales Representative for our Independence, VA and Elkin, NC sawmills to join our team! About Woo…
Construction Project Manager
Litigation Legal Administrative Assistant - Business + Real Estate Litigation! This Jobot Job is hosted by: Jacob Vane Are you a fit? Easy Apply now by clicking the "Apply" button and sending us…
Sr. DevSecOps Engineer - Contingent
Public Trust Eligibility Required This is a contingent position, meaning employment is dependent upon the successful award of the associated contract to Aretum and completion of any required backg…