Cyber Security Engineer

Lawrence Livermore National Laboratory
Livermore, CA, United States
2 days ago
Apply on diversityjobs.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Compensation
$146,340.0 - $222,564.0
Working hours
Shift work

Tech stack

C (Programming Language) Java (Programming Language) PHP (Programming Language) Amazon Web Services Microsoft Azure C Sharp (Programming Language) Cyber Security Computer Programming Computer Engineering Intrusion Detection Systems Information Systems Security Architecture Professional Python (Programming Language)
+12 more
Log Analysis Network Forensics Packet Analyzer Windows PowerShell Cloud Services Security Software Security Information and Event Management Scripting Malware Information Technology Cybercrime ArcSight Event Correlation

Job description

We have an opening for a Cybersecurity Engineer to independently and collaboratively perform a wide range of activities associated with supporting the Cyber Security Operations Center (CSOC) Incident Response team. This position is within the Information Technology Solutions Division (ITSD) of the Computing Directorate and matrixed to the Cyber Security Program (CSP), in support of the Livermore Information Technology (LivIT) Program.

This position offers a hybrid schedule, blending in-person and virtual presence. You will have the flexibility to work from home one or more days per week.

This position will be filled at eitherlevel based on knowledge and related experience as assessed by the hiring team. Additional job responsibilities (outlined below) will be assigned if hired at the higher level.

You will

  • Protect enterprise systems and information by promptly responding to security threats and incidents, acting individually and as part of a team.
  • Proactively hunt for cyber threats and enact identification, containment and eradication measures while supporting recovery efforts.
  • Perform analysis on LLNL intrusion detection systems.
  • Provide security monitoring and incident response support including troubleshooting and resolution of issues.
  • Create and manage processes, systems, and tools exercising a high degree of responsibility.
  • Serve as an incident response technical point of contact and interact with internal and external personnel.
  • Perform technical assessments, document actions, findings, and make remediation recommendations.
  • Promote and support plans to promote diversity, equity and inclusion within the program.
  • Perform other duties as assigned.

Additional job responsibilities, at the SES.3 level

  • Manage multiple complex parallel tasks and priorities of customers and stakeholders, ensuring deadlines are met, while leveraging team member skills.
  • Develop advanced methods, tools, and procedures to improve incident response capabilities and automate various complex tasks.
  • Mentor and provide technical guidance to team members in incident response best practices and procedures.

Requirements

  • Ability to obtain and maintain a US DOE Q-level security clearance which requires U.S. Citizenship.
  • Bachelor’s degree in Computer Science, Computer Engineering or related field, or the equivalent combination of education and related experience.
  • Broad experience with SIEM, log aggregation, packet analysis, or other cybersecurity tools.
  • Experience conducting host forensics, network forensics, log analysis, or malware analysis in support of incident response investigations.
  • Proficient written and verbal communication, strong interpersonal skills, ability to collaborate in a multi-disciplinary team environment and to interact with all levels of management and staff.
  • Ability to effectively manage concurrent technical tasks with conflicting priorities, to approach difficult problems with enthusiasm and creativity and to change focus when necessary, with experience working independently.
  • Ability to work off-hours and on-call to respond to incidents (intermittently, either as-needed or as part of a rotation).

Additional qualifications at the SES.3 level

  • Significant knowledge of SIEM solutions, threat hunting, incident response, or incident management.
  • Significant experience with log analysis, event correlation, or incident management procedures.
  • Advanced ability to provide innovative approaches and apply new technologies to tasks and projects that may not be well defined., * Master’s degree in Computer Science, Computer Engineering, or a related field, or equivalent level of knowledge.
  • Significant incident response experience, including experience with cloud services such as AWS/Azure, and experience leading teams.
  • Experience with programming or scripting languages such as C, C#, Python, Java, PowerShell and PHP.
  • Current industry specific certifications including but not limited to Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Global Information Assurance Certification (GIAC).

Benefits & conditions

$146,340 - $222,564 Annually

$146,340 - $185,544 at the SES.2 level

$175,530 - $222,564 at the SES.3 level, This is a Flexible Term appointment, which is for a definite period not to exceed six years.If final candidate is a Career Indefinite employee, Career Indefinite status may be maintained (should funding allow).

Why Lawrence Livermore National Laboratory?

  • Included in 2026Best Places to Work by Glassdoor!
  • FlexibleBenefits Package
  • 401(k)
  • Relocation Assistance
  • Education Reimbursement Program
  • Flexible schedules (*depending on project needs)
  • Our values - visithttps://www.llnl.gov/inclusion/our-values

About the company

Join us and make YOUR mark on the World!

Are you interested in joining some of the brightest talent in the world to strengthen the United States’ security? Come join Lawrence Livermore National Laboratory (LLNL) where our employees apply their expertise to create solutions for BIG ideas that make our world a better place.

We are looking for individuals that demonstrate an understanding of working in partnership with team peers, who engage, advocate, and contribute to building an inclusive culture, and provide expertise to solve challenging problems.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:27 min

Differences between autonomous AI agents and traditional malware

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

Videos

See all

Related articles

See all