cleared

Nabout Leidos
United States
24 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$87,100.0 - $157,450.0
Working hours
Regular working hours

Tech stack

Adobe InDesign Agile Methodology Software Applications Computing Platforms Systems Engineering Confluence JIRA Audit Trail User Authentication Bash Shell Configuration Management Cyber Security
+23 more
Information Systems Linux Hardware Design Information Security Management Information Systems Security Architecture Professional Key Management Network Security Linux Security Modules Scrum Methodology Security Content Automation Protocol Security Information and Event Management Syslog Systems Architecture Systems Integration Software Vulnerability Management Data Logging C4ISR Information Technology Atlassian Tools Tenable Nessus Bitbucket Splunk Vulnerability Analysis

Job description

As part of the Leidos Cybersecurity Engineering Team, the Cybersecurity Information System Security Engineer (ISSE) will serve as a cybersecurity engineering contributor responsible for designing, integrating, assessing, and maturing cybersecurity solutions across mission systems, software/hardware designs, lab environments, and operational test configurations. The ISSE will work closely with system owners, software engineers, hardware engineers, network engineers, test teams, ISSMs, and program leadership to ensure cybersecurity requirements are engineered into system architectures, implemented through technical controls and secure configurations, validated through testing, and documented in support of RMF authorization activities.\n \n \n

  • Engineer cybersecurity solutions into mission systems, software applications, networks, lab environments, and integrated hardware/software platforms throughout the system lifecycle.\n
  • Translate cybersecurity requirements, NIST SP 800-53 controls, RMF objectives, customer requirements, and mission needs into implementable technical designs, configurations, and verification methods.\n
  • Develop, review, and maintain cybersecurity architecture artifacts, including security design descriptions, network/security boundary diagrams, data flow diagrams, control implementation details, interface descriptions, and system hardening approaches.\n
  • Support cybersecurity design decisions for tactical networking and communications environments, including boundary protection, segmentation, authentication, encryption considerations, logging visibility, and performance or storage tradeoffs in constrained environments.\n
  • Partner with software, hardware, network, and systems engineering teams to design and implement secure configurations, authentication and authorization mechanisms, logging/auditing, encryption, boundary protections, vulnerability mitigations, and secure system interfaces.\n
  • Support secure system integration in Software Integration Laboratory and test environments, including Linux system hardening, scripting/automation, vulnerability remediation, tool integration, and security configuration management.\n
  • Perform technical security assessments of systems, components, and configurations to identify design gaps, implementation weaknesses, vulnerabilities, and cyber risk; recommend and implement engineering-based remediation plans.\n
  • Lead or support vulnerability management activities, including interpreting Tenable Nessus, SCAP, STIG, ACAS, or similar scan results; validating findings; developing technical fixes; coordinating remediation with engineers; and verifying closure.\n
  • Design and implement mitigations for vulnerabilities discovered during system scans, security audits, integration events, ground testing, and flight-test preparation.\n
  • Support implementation and validation of security controls, including documenting how controls are technically satisfied, identifying residual risk, and providing objective evidence for RMF authorization packages.\n
  • Participate in design reviews, engineering review boards, configuration control boards, cyber risk reviews, and test readiness events to ensure cybersecurity considerations are addressed before system deployment.\n
  • Develop or contribute to cybersecurity test procedures, security verification methods, risk assessments, and technical inputs for RMF artifacts, POA&Ms, system security plans, and authorization documentation.\n
  • Assess cybersecurity events, anomalies, and system deficiencies to determine technical impact, root cause, mission risk, and corrective actions.\n
  • Collaborate with ISSMs, ISSOs, system owners, and customer stakeholders to align technical cybersecurity implementation with program compliance, authorization, and operational objectives.\n
  • Support continuous improvement of cybersecurity engineering practices, including automation, secure configuration baselines, vulnerability remediation playbooks, and repeatable lab/test environment security processes.\n

Requirements

  • Bachelor’s degree in computer science, IT, cybersecurity or closely related field with 4+ years of experience in the Cybersecurity ISSE technical/professional discipline. An additional 4 years of experience may be considered in lieu of a degree\n
  • Must be a US Citizen\n
  • Must have an active DoD Top Secret clearance with the ability to obtain and maintain TS/SCI\n
  • Possess a Security+ 8570 certification\n
  • Experience working in a Software Integration Laboratory environment\n
  • Strong understanding of Linux systems. Ability to write bash scripts and alter Linux security configurations\n
  • Strong understanding of information security and cybersecurity policies, principles, and practices in the delivery of all IT services\n
  • Well versed in the understanding and implementation of security controls within the NIST SP 800-53A\n
  • Experienced with policies and procedures to ensure information systems confidentiality, integrity, and accessibility\n
  • Experience in risk and vulnerability assessments of information systems to identify vulnerabilities, risks, and protection needs\n
  • Experience in documenting system deficiencies and recommending solutions for remediation\n
  • Familiar with automated vulnerability scans using Tenable Nessus, SCAP, or other similar applications\n
  • Experience with participating in security evaluations, audits, and reviews\n
  • Be able to learn and apply new technologies, tools, and engineering practices that support ISSE responsibilities, including secure system design, security control implementation, vulnerability remediation, system hardening, and cybersecurity test/validation activities. Strong desire to grow and learn new technologies\n
  • Ability to communicate effectively in writing and verbally from informal one-on-one discussions or in a small group environment\n
  • Ability to work within a dynamic work environment, ability to handle multiple tasks at once (multi-task)\n, * Familiar with Agile Methodologies, preferably SCRUM or Kanban\n
  • Experience with Atlassian tools such as JIRA, Confluence, Bitbucket\n
  • Experienced with Splunk, Tenable Nessus, SCAP applications and tools\n
  • Experience supporting airborne, tactical networking, C2/C3/C4ISR, battle-management, embedded, or other integrated mission-system environments\n
  • Experience engineering centralized audit logging, syslog, SIEM, or network security monitoring solutions using tools such as Splunk, Elastic, Security Onion, Zeek, Suricata, rsyslog, syslog-ng, auditd, or similar\n
  • Familiarity with DoD cryptographic protection concepts, including COMSEC, TRANSEC, key management, secure communications interfaces, and data-at-rest protection\n

Benefits & conditions

n \nLooking for an opportunity to make an impact?\n \n Leidos is dedicated to making the world a safer place. This starts with helping our customers in the Defense Industry achieve their critical missions. Our dedicated Defense Group employees are solving critical challenges across the globe. At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business. \n \n \nAre you ready for your next career challenge?\n \n

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.military.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade · LIVE

5:47 min

Integrating user stories and test automation via Jira tools

Christoph Ruggenthaler · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all