Cyber Security Engineer—Technical Lead
Listed on 2026-06-18
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
Leidos has an exciting opportunity for a Cyber Security Engineer—Technical Lead in our Intel Security Sector's Analysis Solutions Business Area. Our talented team works across Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical Methods and Modeling, Signals Intelligence (SIGINT), and Cryptographic Key Management.
Benefits include Competitive Compensation, Health and Wellness Programs, Income Protection, Paid Time Off, 11 paid holidays, 401(k) with a 6% company match and immediate vesting, Flexible Schedules, Discounted Stock Purchase Plans, Technical Upskilling, Education and Training Support, Parental Paid Leave, and more.
Job SummaryThis role is responsible for protecting the customer’s information systems and networks from potential cyber-attacks. The Cyber Security Engineer– Technical Lead will serve in a hands‑on “player‑coach” capacity, dedicating approximately 75% of time to direct technical engineering, troubleshooting, and implementation work, while providing technical leadership and coordination across the security team. The candidate must display an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS), IDS/IPS, Web‑Proxy, Security tools, and Security Audits.
PrimaryResponsibilities
- Plan, implement, manage, monitor, and upgrade security controls and tools used to protect enterprise systems and networks, while identifying opportunities to automate repeatable operations tasks.
- Design, configure, implement, troubleshoot, and maintain security technologies such as firewalls (security groups), endpoint protection tools (HBSS/Trellix), SIEM platforms (Splunk).
- Formulate systems and methodologies and respond to security‑related events, assisting in remediation efforts of cyber‑security incidents (system and/or network breaches, malware attacks).
- Participate in change management processes to ensure system changes maintain security compliance and do not introduce new vulnerabilities.
- Conduct routine vulnerability scanning and assessment activities, provide formal and informal reports to technical teams, and track remediation efforts to closure.
- Provide technical leadership and subject‑matter expertise to the security engineering team while coordinating with peer Technical Leads across infrastructure and application domains to ensure alignment of architecture and security controls.
- Serve as the primary technical escalation point for complex or cross‑domain security issues while mentoring junior engineers through collaborative troubleshooting and hands‑on technical guidance.
- Experience implementing and managing Security Information and Event Management (SIEM) tools such as Splunk or similar platforms.
- Experience working with endpoint and network security technologies, including IDS/IPS, HBSS/Trellix, and related defensive security tools.
- Expertise with automation (e.g., Ansible, Cloud Formation).
- Demonstrated history of personally implementing, troubleshooting, and maintaining security technologies in production environments.
- Proven ability to balance technical leadership responsibilities with significant hands‑on engineering work.
- Strong attention to detail with an analytical mind and outstanding problem‑solving skills.
- Monitor security advisories, bulletins, and industry threat intelligence to stay informed of current vulnerabilities, threats, and trends.
- Requires Master’s degree and 15 or more years of prior relevant experience; additional years of experience may be substituted in lieu of a degree.
- To be considered, you must have an active TS/SCI with polygraph security clearance.
- Experience with additional security tools and processes such as IDS/IPS, VPN, Git Hub, Git Lab, Sonar Qube.
- Experience with implementing and managing network and application firewalls, virtual private networks, web protocols, incident detection, incident response, and forensic activities.
- Experience with Agile software development processes/environments, scripting/programming languages such as Python or Power Shell (e.g., React), Dev Ops Sec pipelines and tools.
- Familiar with Cloud…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).