Talent.com
Cyber Security Engineer
Cyber Security EngineerLeidos • Glen Echo, MD, US
No se aceptan más aplicaciones
Cyber Security Engineer

Cyber Security Engineer

Leidos • Glen Echo, MD, US
Hace 19 días
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Job Description

Description

Leidos has an exciting opening for you, our next TS/SCI Cyber Security Engineer working across several Task Orders under the DOMEX Technology Platform (DTP) contract supporting NMEC. Have impact as part of a mission focused, solutions oriented, and adaptive team that values innovation, collaboration, and professional development.

As a Cyber Security Engineer, your job will be to design, develop, and implement secure systems in on-premises infrastructure. You will leverage on your experience with security technologies and industry best practices to ensure that security is integrated into system design, development, testing, and deployment and that all security requirements are compliant with the DoD Risk Management Framework. This exciting and challenging work will help you expand your capabilities in security and will provide you with the skills and experience you need to achieve additional levels of the DoD 8570 IAT and IASAE Certifications. While most work is conducted on-site at our client location in Bethesda, MD, we offer a flexible schedule and, occasionally, some tasks may be performed remotely. Percentage of remote work will vary based on client requirements/deliverables.

In this role, you will collaborate closely with ISSOs, ISSSMs, software engineers, software developers, system engineers and Government counterparts to perform the full spectrum of systems and cyber security engineering tasks to ensure our systems meet a variety of regulatory compliance frameworks.

Key Tasks include the following:

  • Support the secure architecture, design, and implementation of DoD systems in accordance with DoDI 8510.01, NIST SP 800-53, and other DoD security guidance.
  • Lead the integration of RMF activities into the system development lifecycle (SDLC), including selecting, implementing, and validating security controls.
  • Develop and maintain key security documentation such as System Security Plans (SSPs), Security Assessment Reports (SARs), Risk Assessments, and Plan of Action and Milestones (POA&Ms).
  • Collaborate with ISSOs, ISSMs, developers, and system owners to ensure systems are developed and maintained with approved security configurations.
  • Apply Security Technical Implementation Guides (STIGs) to systems and validate compliance using tools such as SCAP, STIG Viewer, and ACAS.
  • Maintain application, network, and database scanning infrastructure (application/product updates, database maintenance, benchmark/audit files, application/server builds, rule pack/content updates, scanner, or agent deployment etc.)
  • Analyze vulnerability scans and ensure timely mitigation or acceptance of risks based on DoD policies.
  • Provide technical input to support and maintain system authorization.
  • Participate in system reviews, architecture assessments, and engineering design reviews to embed cybersecurity from the outset.
  • Develop and implement automation or security tools to improve the compliance and monitoring of systems.
  • Support security incident response and forensics analysis in coordination with ISSMs and Security points of contact.

Requirements:

  • BS degree and 8+ years of experience in cybersecurity. Additional relevant years of experience in lieu of degree is accepted.
  • An active TS/SCI clearance with ability to obtain a Poly
  • Have at least one of the following DoD 8570.01-M IASAE Level II certifications: CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, or CASP+ CE. NOTE: the CISSP Associate is not acceptable
  • Developer experience is preferred in a least one scripting / programming language.
  • Experience with reviewing cybersecurity vulnerabilities for risk and relevance as well as in vulnerability mitigations/remediation planning, for identified systems, network, application and database vulnerabilities
  • Ability to architect, design, troubleshoot, maintain, and deploy vulnerability scanning solutions such as (OWASP, Fortify, Sonarqube, Tenable, etc.)
  • Experience with XACTA, EMass, or similar tool
  • Strong in-depth understanding of including Microsoft Windows and Linux/UNIX operating systems
  • Experience with middleware / web technologies (Apache, tomcat, IIS, etc.)
  • Experience with Databases (Postgres, MS SQL, MySQL, ElasticSearch, etc.)
  • Understanding of TCP/IP networking.
  • Experience with Continuous Integration and Continuous Delivery Platforms (Jenkins, Bamboo, GitlabCI TFS, etc.)
  • Familiar with NIST 800-171, 800-172, NIST SSDF, and CMMC requirements.
  • Experience with NIST Special Publications e.g. NIST SP 800-27, 30, 37, 53, 60, 171, NIST SSDF, CMMC requirements, and CNSS publication CNSSI 1253
  • Experience supporting DoD/IC systems through the entire Risk Management Framework Plus (RMF) process
  • Experience establishing a System Security Engineering management process to integrate security and privacy controls into complex hardware and software systems
  • Experience developing and reviewing security concept of operations, systems security plans, security risk assessments, contingency plans, configuration management plans
  • Experience with incident response plans, plan of actions and milestones, risk management plans, and vulnerability management plans
  • Strong communication skills; able to successfully communicate with management personnel, technical personnel and third parties.

You will wow us even more if you have these skills:

  • Software development/coding experience with programming languages such as Python, Java, and React
  • Successfully achieved ATO under RMF+
  • Experience with big data applications
  • Experience with tools for ticketing and documentation (e.g., Gitlab, Jira, Confluence).
  • Experience working in an Agile environment
  • Experience with OIDC or Oauth2
  • Experience with any of the following technologies:
    • Kubernetes, Rancher, Strimzi, or Cloudera
    • Active Directory
    • Scripting languages like bash, python, or PowerShell

#NMECDTP-Leidos

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:March 26, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Crear una alerta de empleo para esta búsqueda

Cyber Security Engineer • Glen Echo, MD, US

Ofertas similares

Cyber Security Firewall Engineer

Jobs via DiceWashington, DC, United States
A tiempo completo

Business Operational Concepts (BOC) is a recognized leader in providing Technical and Program Management Services, Information Technology, and Support.BOC has enabled their Government and Commercia...Mostrar más

 • Oferta promocionada

Senior Network Security Engineer

MetroStarWashington, District Of Columbia, United States
A tiempo completo

Salary: $207,000 - 320,000 per year.Active Top Secret clearance with current or previously held SCI access.Technical certifications: Security+ and at least one platform-specific security certificat...Mostrar más

 • Oferta promocionada

Security Engineer, Infrastructure

Scale AI, Inc.Washington, District of Columbia, United States
A tiempo completo

We are seeking a highly skilled Infrastructure Security Engineer to join our team.This role is integral to ensuring the security and integrity of our platform.You will be responsible for securing l...Mostrar más

 • Oferta promocionada

AWS Security Engineer

Mfinite Consulting LLCAdelphi, MD, United States
A tiempo completo

Mfinite Consulting is seeking an AWS Security Engineer to support our client by ensuring the security of its AWS cloud infrastructure and applications.This critical role involves designing, impleme...Mostrar más

 • Oferta promocionada

Cybersecurity Engineer (DHS)

LMIWashington, DC, United States
A tiempo completo

Get AI-powered advice on this job and more exclusive features.Join our cutting-edge generative AI (GenAI) platform, LIGER , created by its technology studio, LMI Forge.LIGER harnesses the power of ...Mostrar más

 • Oferta promocionada

Security Engineer

NominalWashington, DC, United States
Indefinido

Security & Compliance Engineer.Join to apply for the Security & Compliance Engineer role at Nominal.Nominal is building the software infrastructure powering the world’s most advanced hardware syste...Mostrar más

 • Oferta promocionada

Senior Zero-Trust Security Engineer

AccentureWashington, DC, United States
A tiempo completo

A leading technology provider for the US federal government seeks a Senior Cyber Security Engineer to create frameworks for zero-trust authentication and authorization.In this role, you will design...Mostrar más

 • Oferta promocionada

Security Engineer

TekSynapWashington, DC, United States
A tiempo completo

Be among the first 25 applicants.Responsibilities & Qualifications.Manage vulnerability scanning, remediation, and POA&M tracking.Support FISMA and NIST SP 800-53 compliance reviews.Implement SIEM ...Mostrar más

 • Oferta promocionada

Cybersecurity Engineer

Beyond SOFWashington, DC, United States
A tiempo completo

Bachelor's degree in Computer Science, Information Security, or a related field.At least 10 years of experience as a cybersecurity engineer with a specialization in designing and building implement...Mostrar más

 • Oferta promocionada

Hybrid DC Network Security Engineer Fortinet & VPN Expert

BlueSnap, IncWashington, DC, United States
A tiempo completo

An established industry player is seeking a skilled Network Security Engineer to enhance their team.This hybrid role involves maintaining and securing network systems, including LAN/WAN and VPN con...Mostrar más

 • Oferta promocionada

Senior Network Security Engineer – DoD/Resilience Focus

Strategic Analysis IncorporatedWashington, DC, United States
A tiempo completo

Senior Network Security Engineer – DoD/Resilience Focus.ACO Advanced Resilience is seeking experienced Technical SETA candidates to provide on-site support to the Advanced Resilience portfolio in t...Mostrar más

 • Oferta promocionada

Cloud Security Engineer

LightFeatherAlexandria, VA, United States
A tiempo completo

The ideal candidate has strong cyber security experience in cloud environments, understands development lifecycle phases, and applies DevSecOps methodologies to embed security throughout the delive...Mostrar más

 • Oferta promocionada

Lead Energy Storage Cyber Security Engineer - REMOTE

ThinkBAC Consulting LLCWashington, DC, United States
Teletrabajo
A tiempo completo

Lead Energy Storage Cyber Security Engineer - REMOTE.Full time | ThinkBAC Consulting | United States.State/Province District of Columbia.Lead Energy Storage Cybersecurity Engineer / Cybersecurity A...Mostrar más

 • Oferta promocionada

Junior Security Engineer

Tyto Athene, LLCWashington, DC, United States
A tiempo completo

Get AI-powered advice on this job and more exclusive features.This range is provided by Tyto Athene, LLC.Your actual pay will be based on your skills and experience — talk with your recruiter to le...Mostrar más

 • Oferta promocionada

Security Engineer

HireCapitalWashington, DC, United States
A tiempo completo +1

Direct message the job poster from HireCapital.Technical Recruiter placing talent at innovative and mission-driven organizations.Our client is a rapidly growing technology firm operating at the int...Mostrar más

 • Oferta promocionada

Senior Zero Trust Security Engineer – Hybrid (Federal)

Peyton Resource GroupBethesda, MD, United States
Temporal

A leading resource firm is looking for a Senior Security Engineer in Bethesda, MD, to implement Zero Trust Architecture for a federal client.The ideal candidate possesses 8+ years in Cybersecurity,...Mostrar más

 • Oferta promocionada

IT Security Engineer

Friedman WilliamsWashington, DC, United States
A tiempo completo

IT Security Engineer Washington DC.Looking for an IT Security Engineer who wants to work in a predominantly Mac OS environment.Seeking a highly skilled and detail-oriented Security Engineer who wil...Mostrar más

 • Oferta promocionada

Cloud Security Engineer for DoD RMF & Cyber Resilience

SMXWashington, DC, United States
A tiempo completo

A prominent technology services company is seeking Information Assurance/Cybersecurity Specialists in Washington, DC.This role includes supporting the design of secure multi-cloud infrastructures f...Mostrar más