OIM Cyber Security Engineer
Role details
Job location
Tech stack
Job description
IPv6 IPv4, Linux CI/CD Splunk Nessus Vmstat Big Ip Iostat Ansible Jenkins Hyper-V Netstat Equities IBM VNET Debugging Scripting Terraform Hardening OpenShift Bitbucket DevSecOps Automation Kubernetes OSI Models Subnetwork PostgreSQL Market Data Web Servers API Gateway Group Policy Communication Linux Servers Cyber Security VMware vCenter Authentications Microsoft Azure Ancient History Active Directory Docker Container Mission Planning Operating Systems CompTIA Security+ Problem Reporting Project Management Windows PowerShell Wide Area Networks VMware ESX Servers Amazon Web Services Local Area Networks Software Development Willingness To Learn Atlassian Confluence Microsoft SQL Servers Information Assurance Continuous Deployment Cloud-Native Computing Continuous Integration Logical Volume Manager Configuration Management Bash (Scripting Language) IBM QRadar (SIEM Software) Information Systems Security Kernel-Based Virtual Machine Python (Programming Language) Virtual Private Networks (VPN) Identity And Access Management Troubleshooting (Problem Solving) Virtual Local Area Network (VLAN) Cyber Security Policy Development Chef (Configuration Management Tool) Plan Of Action And Milestones (POA&M) Lightweight Directory Access Protocols Application Programming Interface (API) Security Assertion Markup Language (SAML) Security Information And Event Management (SIEM), The Defense Sector at Leidos has an opening for a Senior Cloud Cybersecurity Infrastructure Engineer supporting an Air Force & Navy Mission Planning program. This position will help manage underlying infrastructure for a cloud-based Next-generation Continuous Integration/Continuous Deployment (CI/CD) pipeline supporting 40+ developer teams across cutting-edge technology stacks. You will be part of a team of engineers working in a DevSecOps environment, enabling rapid software development solutions while providing guidance on how to improve Air Force & Navy Mission Planning software., The successful candidate will have a passion for maintaining the cybersecurity posture of complex IT systems, and will be eager to learn new technologies and enjoy overcoming the challenges of the unknown. You will work in a peer-to-peer environment placing a high value on collaboration and team success. Day-to-day responsibilities will include implementation, maintenance, and troubleshooting of a complex and diverse cloud environment, to include:
- Providing Subject Matter Expertise for cloud Information Assurance on a variety of implementations.
- Securing high-availability systems via industry/DOD standards and best practices.
- Configuring & securing underlying Azure/AWS cloud resources for build, release & deployment pipelines.
- Supporting an enterprise CI/CD environment with multiple servers, operating systems and applications.
- Deploying, reviewing, patching & testing systems for adherence to build & security requirements.
- Resolving tickets and problem reports on specific technologies and hardware/software components, including COTS/GOTS products, from the system level to individual hardware/software components.
- Building and maintaining scripts for automation of tasks and server maintenance.
- Creating and maintaining accurate maintenance documentation for systems ., #Featuredjob Related Jobs OIM Cyber Security Engineer TEKsystems Minneapolis, MNRemote Auditing Operations Governance ServiceNow Data Centers Communication Business Logic Active Directory Value Propositions Business Valuation Workflow Management Lifecycle Management Full Stack Development Artificial Intelligence Infrastructure Security Business Transformation Oracle Identity Manager Critical Illness Insurance Java (Programming Language) Service-Oriented Architecture Identity And Access Management Enterprise Application Software Troubleshooting (Problem Solving) Sarbanes-Oxley Act (SOX) Compliance IBM Resource Access Control Facility General Data Protection Regulation (GDPR) +0 Sr Firewall Engineer PSEG Bethpage, NYRemote Writing Planning Firewall Cannabis Cisco IOS Operations Management Innovation SolarWinds Multitasking Data Centers Cyber Security VMware VSphere VMware vCenter Version Control Problem Solving Physical Design Network Security Analytical Skills Change Management Behavioral Health Computer Networks F5 Load Balancers Wide Area Networks Network Automation Local Area Networks Investment Concepts Technology Solutions Architectural Design Business Requirements Solution Architecture Technology Life Cycle Technical Requirements Permanent Resident Cards Code Of Federal Regulations Change Management Processes Security Requirements Analysis Virtual Private Networks (VPN) Cisco Identity Services Engine (ISE) Cisco Certified Network Professional Certified Information Systems Security Professional Cisco Certified Network Professional (CCNP) Routing And Switching +0
Google Project Management OIM Cyber Security Engineer TEKsystems Des Moines, IA*Remote Auditing Operations Governance ServiceNow Data Centers Communication Business Logic Active Directory Value Propositions Business Valuation Workflow Management Lifecycle Management Full Stack Development Artificial Intelligence Infrastructure Security Business Transformation Oracle Identity Manager Critical Illness Insurance Java (Programming Language) Service-Oriented Architecture Identity And Access Management Enterprise Application Software Troubleshooting (Problem Solving) Sarbanes-Oxley Act (SOX) Compliance IBM Resource Access Control Facility General Data Protection Regulation (GDPR)
Requirements
- U.S. Citizenship with an active Secret or higher clearance.
- Bachelor's degree with 8+ years of experience or a Master's degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
- Ability to obtain a CompTIA Security+ certification or minimum equivalent to meet DoD 8570 Compliance.
- 4+ years of Windows & Linux sys administration with 2+ years in an Azure/AWS cloud environment.
- Experience applying/debugging STIG settings/conflicts in Windows/Linux servers and hosted apps.
- Experience interpreting scanning tool outputs (Nessus, SCAP, Evaluate STIG, etc.) and remediating findings.
- Experience with system troubleshooting tools like top, iostat, vmstat, netstat, lvm, fdisk.
- Strong understanding of networking concepts such as OSI Model, LAN/WAN, IPv4/IPv6, subnetting, VLANs, edge services & point-to-point VPN setup within cloud environments.
- Experience working with identity management & authentication tools such as LDAP, SAML, and PKI.
Preferred Qualifications:
- Hands-on experience with Configuration Management tools such as Ansible, Chef, or Puppet.
- Hands-on experience with Trellix/McAfee ePO and product suite.
- Hands-on configuration and experience with SIEM tools (e.g., Splunk, Azure Log Analytics, QRadar, LogRhythm).
- Hands-on experience with Microsoft Active Directory (i.e., OU creation, Schema Changes, Security Groups).
- Hands-on experience with Microsoft Group Policy (i.e., Creating GPOs, GPO inheritance, Security Filtering).
- Virtualization experience (VMware vCenter, ESXi, KVM, Hyper-V).
- Experience with Docker container technologies and Docker container deployment technologies, such as Terraform, Kubernetes, OpenShift, Helm, EKS, AKS.
- Experience supporting Jenkins pipeline code building and analysis tools.
- Coding and/or scripting experience using Python, Powershell, Bash, or other tools.
- Atlassian Tools Suite experience (Bitbucket, Confluence, JIRA)
- Experience managing web servers such as IIS and Tomcat.
- Familiarity with F5 BIG-IP Authentication and SAML IdP/SP.
- Intermediate knowledge of MS SQL, PostgreSQL, and MySQL.
- Experience in designing and implementing VNet/VLAN ports, protocols and services settings to restrict communications across Cloud-native virtual networking boundaries.
- Experience managing projects and processes to achieve enterprise business improvement objectives.
- Experience hardening API Gateway and API Endpoints.
- Experience with backup and recovery of IT infrastructure.
- Experience as an Information Systems Security Officer or Engineer (ISSO or ISSE).
- Experience managing, interpreting, and updating Plans of Action and Milestones (POA&Ms).
- Experience developing cybersecurity policy related to cloud environments.
- Experience applying STIGs to containers.
Benefits & conditions
Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .