Secure Enclave System Engineering Lead
Listed on 2026-08-30
-
IT/Tech
Cybersecurity, Network Security, Information Security & Data Protection, Systems Engineer
Cybersecurity Engineer Sr Principal
Advance your career while impacting our national security in cyber as a Cybersecurity Engineer Sr Principal e, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government. MEANINGFUL WORK AND PERSONAL IMPACT As a Cybersecurity Engineer Sr Principal, the work you'll do at GDIT will be impactful to the mission of our customer's classified commercial cloud environment.
You will play a crucial role in engineering and operating security controls for a classified secure workstation enclave, ensuring continuous monitoring, and compliance for mission-critical systems.
Support and lead configuration, hardening, and updates of Linux operating systems, directly contributing to the secure operation of the enclave.
Collaborate with enclave engineers, system administrators, and vendors to administer and maintain core security applications (SIEM, vulnerability scanning, endpoint protection, insider threat tooling) that safeguard the environment.
Drive continuous monitoring and incident response activities by validating telemetry, triaging alerts, investigating incidents, and supporting RMF-aligned vulnerability management, endpoint security, and auditing.
Utilize Red Hat/Linux, Splunk, Tenable, Trellix, Teramind, and Microsoft Active Directory/Group Policy to implement and validate security controls, maintain visibility, and provide actionable insights into the enclave's security posture.
Configure, harden, and update Linux operating systems within the secure enclave.
Administer and monitor core security tools (Splunk SIEM, Tenable, Trellix, Teramind), ensuring telemetry, policies, and integrations function as intended.
Triage and investigate security alerts and incidents in alignment with the Incident Response Plan.
Oversee vulnerability and STIG scanning (host inventory, scan policies, and results) and coordinate remediation with the engineering team.
Ensure complete endpoint visibility and policy enforcement across hosts and insider threat tooling.
Support RMF Continuous Monitoring activities, including vulnerability management, endpoint security, auditing, and security alert monitoring.
Contribute to security documentation, control implementation statements, assessment artifacts, and POA&M mitigation activities.
WHAT YOU'LL NEED TO SUCCEED Bring your cyber expertise and drive for innovation to GDIT. The Cybersecurity Engineer Sr Principal must have:
Education:
Bachelor of Arts/Bachelor of Science
Experience:
10+ years of related experience
Technical skills:
Hands-on experience with Red Hat operating system and other Linux distributions
Hands-on engineering experience administering and maintaining security operations using Splunk (SIEM), Tenable (vulnerability management), and Trellix (endpoint security)
Hands-on experience with Teramind for insider threat monitoring
Understanding of Microsoft Active Directory and implementing controls via Group Policy
Knowledge of the complete NIST SP 800 series (especially 800-37, 800-53, 800-30) and risk management principles
Security clearance level:
Active Top Secret
Role requirements:
Onsite
-McLean, VA
Must be DoD 8140 / 8570.01-M compliant
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).