> Markdown version of [/jobs/ext/1753371-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/1753371-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - **Company:** General Dynamics Information Technology - **Location:** Springfield, VA, United States (Remote available) - **Experience:** Expert - **Salary:** $107,744.0 - $142,600.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Bash Shell, Cloud Engineering, Cyber Security, Information Systems, Computer Networks, Linux, Fault Tolerance, Information Security Management, Intrusion Detection Systems, Information Systems Security Architecture Professional, Python (Programming Language), Network Troubleshooting, Log Analysis, Network Architecture, Windows PowerShell, Red Hat Enterprise Linux, Security Information and Event Management, Software Vulnerability Management, Scripting, Computer Networking Systems, Load Balancing, Cloud Platform System, In-Plane Switching (IPS), Cyber Threat Analysis, Tanium Platform Expertise, Integration Tests, Information Technology, Performance Monitor, Splunk, Security Orchestration, Automation & Response, Plan of Action and Milestones - **Published:** July 18, 2026 - **Apply:** https://www.juju.com/job/00000000ghkr2o ## About the Role 5 + years of related experience, + Experience implementing and supporting the Risk Management Framework (RMF) throughout the system lifecycle. + Strong knowledge of NIST SP 800-53, ICD 503, and DoD cybersecurity policies. + Hands-on experience implementing, maintaining, and remediating Security Technical Implementation Guides (STIGs) across Windows, Linux (RHEL), network, virtualization + Experience executing technical remediation activities for vulnerabilities identified through ACAS, STIG compliance reviews, and other vulnerability management tools. + Experience writing, maintaining, and closing Plan of Action and Milestones (POA&Ms), including documenting remediation evidence and validating corrective actions. + Experience implementing and maintaining Assessment & Authorization (A&A) documentation and supporting RMF continuous monitoring activities. + Experience with security tools such as ACAS, HBSS, Carbon Black, Tanium, RedSeal, or equivalent. + Experience installing, hardening, deploying, documenting, and troubleshooting network perimeter security technologies. + Experience scripting with Unix/Linux (RHEL), Bash, Python, and PowerShell. + Strong analytical, troubleshooting, documentation, and communication skills. + Ability to work independently while managing multiple priorities in a fast-paced environment. Desired Skills + Experience supporting **NGA TESR** environments. + Experience supporting Intelligence Community Assessment & Authorization processes. + Experience with security automation and Infrastructure-as-Code. + Experience with enterprise SIEM platforms such as Splunk or Elastic. + DoD 8570/8140 compliant certifications such as Security+, CISSP, CAP, or CASP+., Bachelor's Degree in Computer Science, Engineering, Cybersecurity, Information Technology, or a related technical discipline, or an equivalent combination of education, technical training, or relevant military/work experience., **5-10 years of experience** supporting Information Assurance, Cybersecurity, Information System Security Officer (ISSO), or Cybersecurity Engineering functions within DoD or Intelligence Community environments. Active TS/SCI clearance required and eligibility to obtain a CI poly ## Description GDIT is your place. You make it your own by embracing autonomy, seizing opportunity, and being trusted to deliver your best every day. We think. We act. We deliver. There is no challenge we can't turn into opportunity. Our work depends on TS/SCI level cleared **Cybersecurity Engineer** joining our team to support our Intelligence customer in Springfield, VA or St. Louis, MO. This position supports the Geospatial Services & Solutions business area to provide high-quality, cost-effective solutions to the customer. As part of the GSS Team the cybersecurity engineer's expertise is needed to support a sophisticated enterprise environment., This role is responsible for implementing and maintaining cybersecurity controls across enterprise infrastructure, including Windows, Linux, network, virtualization, and cloud environments. The successful candidate will execute RMF continuous monitoring activities, implement STIGs, remediate vulnerabilities, manage POA&Ms, and support Assessment & Authorization (A&A) efforts in accordance with NIST SP 800-53, ICD 503, and DoD security requirements. This is a hands-on technical role requiring experience hardening systems, responding to security findings, supporting enterprise security tools, and collaborating with infrastructure teams to maintain a secure, compliant, and resilient operating environment., + Act as the representative of the Information System Security Manager (ISSM), ensuring compliance with DoD and Intelligence Community (IC) information security policies, procedures, and directives. + Support efforts to operate, maintain, and dispose of information system materials in accordance with RMF, NIST, ICD 503, and applicable security directives, policies, and System Security Plans (SSPs). + Implement and maintain Security Technical Implementation Guides (STIGs) across Windows, Linux (RHEL), network, virtualization, and cloud environments to ensure compliance with DoD security requirements. + Execute technical remediation activities to address security findings identified through ACAS, STIG reviews, vulnerability scans, and security assessments. + Manage assigned Plan of Action and Milestones (POA&Ms) by implementing technical solutions, validating remediation efforts, documenting completion evidence, and supporting POA&M closure. + Support RMF continuous monitoring activities by implementing required security controls, maintaining A&A documentation, and ensuring compliance with NIST SP 800-53 and ICD 503 requirements. + Generate and implement required cybersecurity awareness training, ensuring users understand their security responsibilities prior to system access. + Initiate protective and corrective measures when security incidents, vulnerabilities, or compliance issues are identified. + Ensure IA hardware, software, and operating systems comply with approved security configuration guides and organizational security baselines. + Implement and enforce IA policies and procedures as defined by RMF authorization packages and A&A documentation. . + Ability to work on multiple projects simultaneously in a dynamic, fast-paced, team-oriented environment. + Perform Operations & Sustainment (O&S) functions for enterprise network security infrastructure, including firewalls, web gateways, mail gateways, IDS/IPS, load balancers, performance monitoring tools, and management systems. + Perform maintenance, hardening, patching, and advanced configuration of security infrastructure to protect enterprise networks from emerging cyber threats. + Support and secure Cloud Infrastructure, including AWS-based technologies. + Utilize enterprise security tools such as ACAS, HBSS, Carbon Black, Tanium, RedSeal, and related cybersecurity platforms. + Conduct forensic network traffic and log analysis to investigate incidents, isolate issues, and respond to analyst alerts. + Respond to escalated cybersecurity and infrastructure troubleshooting requests. + Maintain and administer network infrastructure standards, documentation, and fault-tolerant configurations. + Present monitoring, testing, compliance, and remediation results and reports as required. + Perform and support integration testing, security validation, and operational readiness activities. + Develop automation and scripting solutions using PowerShell, Bash, Python, or similar languages to improve security operations and compliance. + Collaborate with systems, network, and cloud engineering teams to implement secure architectures and operational best practices. + Participate in special projects as required. ## Related Videos - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)