Cybersecurity Engineer
Listed on 2026-02-09
-
IT/Tech
Cybersecurity, Network Security
Overview
Description: We are seeking a highly skilled and multi-faceted Cyber Engineer for a critical contract role supporting Google's SIPRNet enclave. The ideal candidate is a proactive and seasoned professional with extensive, hands-on experience navigating Red Hat Linux, the NIST 800-53 RMF control requirements, and Security Operations for a classified network in a unique commercial cloud setting. This role requires a blend of technical engineering prowess to provide Security Operations support as well as a deep understanding of continuous monitoring control requirements to prepare for security assessments and auditing.
You will be a key contributor to our SIPR Enclave team, supporting the SIPR Enclave Lead in RMF activities and the Senior Cyber Engineer in security operations support.
- Must possess a current and active Top Secret (SCI eligibility).
Onsite at the classified operations center in McLean, VA.
DutiesFrom a Security Operations perspective, as directed by the Senior Cyber Engineer, the Engineer:
- Configure and update the Linux operating systems (Red Hat, Debian).
- Monitor the following security applications:
Scanning (Tenable.sc, SCC Tool), SIEM (Splunk), Endpoint security (Trellix). - Work with vendors of security applications to maintain security updates, licenses, and resolve support issues (e.g., for Tenable plugins).
- Ensure security systems are up to date and implemented; validate telemetry from hosts and security applications is forwarded to the SIEM.
- Configure alerts for privileged activity within the enclave and alerts from security advisories.
- Triages all SIEM alerts to ensure activity in the environment is authorized.
- Investigates, resolves, and reports security incidents in alignment with the Incident Response Plan.
- For scanning / STIGs: ensure inventory of hosts and recurring/ad-hoc scan policies are accurate; review scans to confirm data supports patching activities; review STIG results and support corrective action as applicable.
- For endpoint management: ensure all hosts are visible in the endpoint security application with ongoing monitoring and applicable policies; triage alerts to ensure activity is authorized.
- For insider threat monitoring: ensure deployment of tools and modules are performing as intended; monitor aggregate user data as directed.
- Design, develop, test, and evaluate information system security throughout the systems development life cycle.
From a RMF perspective, as directed by the SIPR Enclave Lead:
- Support maintaining the Continuous Monitoring program, specifically around vulnerability management, endpoint security, auditing, and security alert triage/monitoring.
- Support control implementation statement updates, documentation for plans or procedures, artifact identification for assessments, and body of evidence generation.
- Support POAM mitigation and/or remediation activities.
- Education:
BA/BS Degree or equivalent experience in lieu of degree. - Experience:
8+ years of related experience. - Technical skills:
Ability to implement Red Hat updates; understanding of various Linux operating systems; ability to update and use security operations of Splunk and Trellix; understanding of Microsoft Active Directory and implementing controls via Group Policy. - Role requirements:
Knowledge of the complete NIST SP 800 series (especially 800-37, 800-53, 800-30) and risk management principles. - Certifications:
DoD 8140 / 8570.01-M compliant (e.g., Security+).
- Hands-on experience with security operations of Teramind.
- Hands-on experience with Tenable.sc.
- 5 days onsite in McLean, VA.
Top Secret/SCI Salary and Benefit Information:
The likely salary range for this position is $142,792 - $175,950. This is not a guarantee of compensation. Salary will be set based on experience, geographic location, and contractual requirements and could fall outside of this range.
View information about benefits and our total rewards program.
About Our WorkWe are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development.
Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.
Join our Talent Community to stay up to date on our career opportunities and events at
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).