Cyber Security Engineer
Listed on 2026-09-26
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Network Security, Security Management & Operations
Description
Leidos is seeking highly qualified professionals to support the TSA TOMCAT Program
.
We are especially interested in connecting with current incumbent personnel supporting this mission who are interested in continuing their work and bringing their valuable mission knowledge and experience to Leidos.
Position SummaryThe Cybersecurity Engineer provides engineering and operational cybersecurity support across the TOMCAT environment, integrating security requirements into enterprise IT operations, incident response, vulnerability management, system changes, patching, and service delivery.
The position works closely with TSA SOC personnel, Information Assurance leadership, system owners, infrastructure engineers, Service Now teams, and operational service teams to identify, analyze, remediate, and track cybersecurity risks while maintaining mission continuity.
Work LocationRemote, with onsite, surge, or shift support as required.
Essential Duties Could Include the following- Provide cybersecurity engineering and operational support for TOMCAT enterprise services.
- Support vulnerability management, security remediation, POA&M activities, RMF processes, and cybersecurity compliance reporting.
- Analyze vulnerability findings, security risks, remediation status, exceptions, and trends.
- Coordinate cybersecurity remediation activities with system owners, infrastructure engineers, patch teams, and operations leads.
- Support detection, analysis, and response to cybersecurity incidents.
- Coordinate with TSA SOC, ISSOs, CIC, and technical service towers during cyber-related incidents.
- Analyze security alerts, indicators, affected assets, containment actions, and remediation status.
- Support security configuration, patching, hardening, monitoring, and technical-control activities.
- Maintain audit evidence, cybersecurity reporting artifacts, corrective-action records, and technical documentation.
- Support FISMA, NIST, TSA/DHS security requirements, and operational compliance activities.
- Integrate cybersecurity considerations into incident, change, release, configuration, and operational processes.
- Support security assessments and technical reviews of proposed changes and new technologies.
- Participate in root-cause analysis and lessons-learned activities following cybersecurity events.
- Maintain cybersecurity SOPs, runbooks, technical procedures, and knowledge articles.
- Provide technical recommendations to improve the security and resilience of enterprise services.
Requirements will vary depending on the specific position and level. Qualifications may include:
- Bachelors degree and 8+ years of prior relevant experience with either cybersecurity engineering, information security, or information assurance experience in an enterprise or federal environment. Additional years of experience may be considered in lieu of degree.
- Knowledge of NIST cybersecurity principles and federal cybersecurity requirements.
- Experience with vulnerability management, remediation, POA&M, RMF, and security reporting.
- Knowledge of cybersecurity incident response processes.
- Experience working with enterprise security, endpoint, network, cloud, or infrastructure technologies.
- Strong analytical, troubleshooting, documentation, and communication skills.
- Ability to coordinate cybersecurity actions with technical operations without disrupting mission systems.
- Ability to obtain and maintain TSA Suitability
- Ability to obtain and maintain Public Trust Security Clearance
- Security+.
- CISSP.
- CySA+.
- GCIH or GCIA.
- CAP/CGRC.
- TSA, DHS, or federal cybersecurity experience.
- Experience with SIEM, EDR, vulnerability-management, endpoint, network, cloud, or security-monitoring tools.
- Experience with Service…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).