Principal Cybersecurity Engineer with TS/SCI Poly in Annapolis Junction

Energy Jobline
Annapolis Junction, MD, United States
about 1 month ago
Apply on www.energyjobline.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$154,050.0 - $278,475.0
Working hours
Regular working hours

Tech stack

Agile Methodology Cyber Security Scrum Methodology Information Technology

Requirements

Master’s degree in Information Technology, Information Assurance, or related field, and at least 15 years of relevant experience. Additional experience may be substituted for a degree., At least 10 years of experience leading large, diverse Security Engineering teams, leading ISSO and ISSE teams., At least 5 years of experience applying Agile methodologies in security engineering projects, including Scrum or SAFe frameworks., Strong communication and interpersonal skills, with a proven ability to clearly convey program requirements and system compliance challenges to multiple customer stakeholders. \n

  • \n Demonstrated ability to coordinate across multiple internal teams for planning and remediation activities. \n

  • \n Solutions-oriented team player with a high level of self-initiative. \n

Benefits & conditions

Leidos has a new and exciting opportunity for a Principal Cybersecurity Engineer in our Intel Sector- Cyber & Analytics Business Area (CABA). Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical Methods and Modeling, Signals Intelligence (SIGINT), and Cryptographic Key Management. At Leidos, we offer competitive benefits, including Paid Time Off, 11 paid Holidays, 401K with a 6% company match and immediate vesting, Flexible Schedules, Discounted Stock Purchase Plans, Technical Upskilling, Education and Training Support, Parental Paid Leave, and much more. Join us and make a difference in Security!, n \n

  • \n Responsible for the overall security architecture, ensuring all security requirements are defined, implemented, and verified. \n

  • \n Serve as a security subject matter expert (SME), providing guidance and oversight for the end-to-end security architecture. \n

  • \n Engage with multiple system owners across multiple networks to interpret, negotiate, and refine system and security requirements. \n

  • \n Define and drive security strategy, including risk assessment and management, security control assessment, continuous monitoring, service design, and broader cybersecurity program support. \n

  • \n Identify and analyze security issues across complex, highly integrated systems and environments, and develop clear, actionable remediation recommendations. \n

  • \n Design, develop, and execute static and dynamic application security testing, as well as penetration testing activities. \n

  • \n Partner with development teams to improve understanding of vulnerabilities, attack vectors, and effective remediation techniques. \n

  • \n Lead and mentor a team of program security engineers in day-to-day security engineering activities. \n

  • \n Collaborate with the program security team to ensure STE/STN and continuous monitoring requirements are met for Test, Integration, and Development environments. \n

  • \n Clearly articulate program security requirements, risks, and compliance challenges to multiple customer points of contact. \n

  • \n Coordinate with internal cross-functional teams to plan, prioritize, and execute remediation and other security-related activities. \n

\n

\n, n

\n \n

  • \n Extensive hands-on experience with modern security tools; hardware and software security implementation; communication protocols; encryption technologies; and web services. \n

  • \n Expert-level understanding of security vulnerabilities and remediation techniques, including risk assessment, risk management, and security strategy/design. \n

  • \n Extensive experience formulating, implementing, and assessing IT security policy. \n

  • \n Solid understanding of ATOs, SSPs, and STE/STN requirements. \n

  • \n Direct experience collaborating with software developers, software testers, and integration, deployment, and sustainment teams. \n, At least twelve years of experience with defense-in-depth principals/technology (including access control, authorization, identification and authentication, public key infrastructure, network and enterprise security architecture) and applying risk assessment methodology to system development. \n

  • \n Experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration tests, anti-virus planning assistance, risk analysis, and incident response. \n

  • \n Experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration tests, anti-virus planning assistance, risk analysis, and incident response. \n

  • \n Experience providing information assurance support for application development that includes system security certifications and project evaluations for firewalls that encompass the development, design, and implementation. \n

\n

\n

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.energyjobline.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:43 min

Rebuilding application architecture with fixed scrum teams

Sebastian Gierlinger Sebastian Gierlinger · World Congress 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:58 min

Applying agile software methodologies to corporate operational challenges

Kyle Daigle · Coffee With Developers

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:09 min

Evolution of software measurement from waterfall to agile

Markus Walker Markus Walker · World Congress 2024

7:52 min

Q&A on agile implementation and challenging norms

Ivan Milanov Ivan Milanov · Europe 2026 Virtual

Videos

See all

Related articles

See all