Principal Cybersecurity Engineer with TS/SCI Poly in Annapolis Junction
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Requirements
Master’s degree in Information Technology, Information Assurance, or related field, and at least 15 years of relevant experience. Additional experience may be substituted for a degree., At least 10 years of experience leading large, diverse Security Engineering teams, leading ISSO and ISSE teams., At least 5 years of experience applying Agile methodologies in security engineering projects, including Scrum or SAFe frameworks., Strong communication and interpersonal skills, with a proven ability to clearly convey program requirements and system compliance challenges to multiple customer stakeholders. \n
-
\n Demonstrated ability to coordinate across multiple internal teams for planning and remediation activities. \n
-
\n Solutions-oriented team player with a high level of self-initiative. \n
Benefits & conditions
Leidos has a new and exciting opportunity for a Principal Cybersecurity Engineer in our Intel Sector- Cyber & Analytics Business Area (CABA). Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical Methods and Modeling, Signals Intelligence (SIGINT), and Cryptographic Key Management. At Leidos, we offer competitive benefits, including Paid Time Off, 11 paid Holidays, 401K with a 6% company match and immediate vesting, Flexible Schedules, Discounted Stock Purchase Plans, Technical Upskilling, Education and Training Support, Parental Paid Leave, and much more. Join us and make a difference in Security!, n \n
-
\n Responsible for the overall security architecture, ensuring all security requirements are defined, implemented, and verified. \n
-
\n Serve as a security subject matter expert (SME), providing guidance and oversight for the end-to-end security architecture. \n
-
\n Engage with multiple system owners across multiple networks to interpret, negotiate, and refine system and security requirements. \n
-
\n Define and drive security strategy, including risk assessment and management, security control assessment, continuous monitoring, service design, and broader cybersecurity program support. \n
-
\n Identify and analyze security issues across complex, highly integrated systems and environments, and develop clear, actionable remediation recommendations. \n
-
\n Design, develop, and execute static and dynamic application security testing, as well as penetration testing activities. \n
-
\n Partner with development teams to improve understanding of vulnerabilities, attack vectors, and effective remediation techniques. \n
-
\n Lead and mentor a team of program security engineers in day-to-day security engineering activities. \n
-
\n Collaborate with the program security team to ensure STE/STN and continuous monitoring requirements are met for Test, Integration, and Development environments. \n
-
\n Clearly articulate program security requirements, risks, and compliance challenges to multiple customer points of contact. \n
-
\n Coordinate with internal cross-functional teams to plan, prioritize, and execute remediation and other security-related activities. \n
\n
\n, n
\n \n
-
\n Extensive hands-on experience with modern security tools; hardware and software security implementation; communication protocols; encryption technologies; and web services. \n
-
\n Expert-level understanding of security vulnerabilities and remediation techniques, including risk assessment, risk management, and security strategy/design. \n
-
\n Extensive experience formulating, implementing, and assessing IT security policy. \n
-
\n Solid understanding of ATOs, SSPs, and STE/STN requirements. \n
-
\n Direct experience collaborating with software developers, software testers, and integration, deployment, and sustainment teams. \n, At least twelve years of experience with defense-in-depth principals/technology (including access control, authorization, identification and authentication, public key infrastructure, network and enterprise security architecture) and applying risk assessment methodology to system development. \n
-
\n Experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration tests, anti-virus planning assistance, risk analysis, and incident response. \n
-
\n Experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration tests, anti-virus planning assistance, risk analysis, and incident response. \n
-
\n Experience providing information assurance support for application development that includes system security certifications and project evaluations for firewalls that encompass the development, design, and implementation. \n
\n
\n
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Dev Digest 134 - Where pixels sing?
Best Paying Jobs in Technology