Posting TitleCybersecurity Engineering I/II

National Laboratory
United States
1 day ago
Apply on www.careerbuilder.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Compensation
$83,600.0 - $150,500.0
Working hours
Regular working hours
Languages
English, Spanish

Tech stack

Amazon Web Services Software Applications Systems Engineering Bash Shell BASIC (Programming Language) Unix Cloud Computing Cyber Security Information Systems Computer Programming Data Security Data Sharing
+32 more
Domain Name System (DNS) Federal Information Processing Standards (FIPS) Identity and Access Management Systems Analysis Internet Security Intrusion Detection Systems Python (Programming Language) Key Management Linux System Administration Log Analysis OpenStack Cloud Services Logstash SAS (Software) Server Administration Security Information and Event Management Software Engineering Systems Integration TCP/IP Virtualization Technology Web Applications Scripting Transport Layer Security High Performance Computing In-Plane Switching (IPS) Firewalls (Computer Science) Information Technology Operational Systems Data Management Splunk Multiplatform Vulnerability Analysis

Job description

The National Laboratory of the Rockies (NLR) is seeking a talented Cybersecurity Engineer to join the Computational Science Center (CSC) Advanced Computing Operations (ACO) group. This candidate must have an interest in making a difference in the world by helping to envision, develop, deploy, monitor, maintain, and analyze security posture and defense in an environment that supports a variety of applications and data-sharing platforms related to advancing integrated energy system technologies and markets.

This candidate will work to ensure information security is built into and maintained for systems deployed in and by the laboratory’s Advanced Computing Operation Group. The ideal candidate excels at building relationships with project teams, effectively communicating complex security concepts in a clear and approachable manner. They are proactive and persistent in following up to ensure security best practices are implemented and maintained, with a collaborative and solutions-oriented approach to problem-solving. A strong sense of initiative and the ability to manage multiple priorities while fostering a culture of security across diverse teams are essential for success in this role.

In this position, you’ll join a tight-knit team that implements systems security and configures the security posture of the platforms ACO oversees-spanning AWS, HPC, OpenStack, and purpose-built environments. You’ll script and automate controls, produce security artifacts (screenshots, log exports), and monitor vulnerabilities across servers, networks, web applications, and cloud services. You’ll collaborate daily with developers, researchers, and system administrators to ensure appropriate security controls are considered at every stage of a project.

  • Implement and harden security controls across heterogeneous environments; configure platform/security guardrails and verify enforcement.
  • Script and automate security tasks using Bash and Python to meet control requirements (e.g., log collection, config checks, patch workflows).
  • Monitor vulnerabilities and coordinate remediation with engineering teams across multiple platforms (servers, networks, web apps, cloud).
  • Analyze logs using SIEM/log tools and produce meaningful reporting for stakeholders.
  • Implement new capabilities required by DOE to enhance cybersecurity on ACO-managed systems.
  • Partner closely with NLR Cyber Security, HPC Operations SAs, and Cloud Engineers; communicate clearly and confidently across diverse user and stakeholder groups.

You will need to develop a good rapport and work closely with the NLR Cyber Security group, HPC Operations systems administrators and Cloud engineers.

Requirements

Relevant Bachelor’s Degree or equivalent relevant education/experience. Limited use and/or application of basic principles, theories and concepts in specific field. Limited knowledge of related IS practices and standards. Good analytical and problem solving skills. Good written and verbal communication skills. Basic programming and/or maintenance ability with various computer software programs and information systems.

Level II: Relevant Bachelor’s Degree and 2 or more years of experience or equivalent relevant education/experience. Or, relevant Master’s Degree or equivalent relevant education/experience. General knowledge and application of standards, principles, concepts and techniques in specific field. Some understanding of related IS practices and standards. Skilled in analytical techniques and practices, and problem solving. Skilled in written and verbal communication. Intermediate programming ability with various computer software programs and information systems.

Clearance: Must be able to obtain and maintain a DOE Q Security Clearance. Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age and a U.S. citizen. See DOE O 472.2A for additional information., * UNIX/Linux experience (administration, troubleshooting).

  • Ability to script and automate with Bash and Python.
  • Basic knowledge of security tools (IDS/IPS, firewalls, vulnerability scanners).
  • Basic networking fundamentals (TCP/IP, DNS, common protocols).
  • Basic understanding of encryption/cryptography (SSL/TLS, key management).
  • Basic knowledge of access control & identity management.

In addition to each level requires:

IT Professional I - Advanced Computing:

  • Skilled in analytical techniques and problem solving.
  • Skilled in oral and written communication.
  • Intermediate programming ability with various software programs and information systems.

IT Professional II - Advanced Computing:

  • Strong leadership and project management skills; drive small initiatives
  • Advanced analytical/problem solving with design and analysis abilities across software and information systems.
  • Complete understanding and wide application of principles, concepts, and techniques in cybersecurity; general knowledge of related IS disciplines. *

  • Awareness of common threats, vulnerabilities, and attack vectors.
  • Basic knowledge of incident response practices (identify, contain, mitigate).
  • Effective communication (written and verbal), analytical mindset, and problem-solving skills.

Preferred Qualifications

Preferred Qualifications:

Level I:

  • Familiarity with enterprise/research computing (on-prem/virtualized).
  • SIEM/log analysis experience (e.g., Splunk, Elastic, Logstash).
  • Experience identifying and remediating vulnerabilities; collaborates to address risk.
  • Working knowledge of NIST SP 800-53 and FIPS 199.

Level II:

  • Experience implementing security controls across heterogeneous platforms (HPC, on-prem/virtualized, applications).
  • Incident response experience (investigation, containment, recovery, post-incident review).
  • Experience maintaining compliance with NIST SP 800-53 and FIPS 199., Access Control, Amazon Web Services (AWS), Analysis Skills, BASIC Programming Language, Best Practices, Cloud Applications, Cloud Computing, Communication Skills, Computer Operations, Computer Security, Computer Software, Cross-Functional, Cryptography, DOE-Q (Top Secret Restricted Data), English Language, Enterprise Computing, Federal Information Processing Standards (FIPS), Firewalls, Homeland Security, Identify Issues, Identity Data Management, Incident Management, Incident Response, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Application, Internet Security, Intrusion Detection Systems, Intrusion Prevention Systems, Laboratory, Leadership, Linux Administration, Maintain Compliance, Multiplatform/Cross-Platform, Multitasking, Presentation/Verbal Skills, Problem Solving Skills, Project/Program Management, Reporting Skills, Research & Development (R&D), Research Administration, Risk, SSL-TLS (Secure Socket Layer - Transport Layer Security), Scripting (Scripting Languages), Security Analysis, Security Clearance, Security Information and Event Management (SIEM), Software Administration, Software Engineering, Spanish Language, Splunk, State Laws and Regulations, System Integration (SI), Systems Administration/Management, Systems Analysis, Systems Engineering, Systems Maintenance, Team Player, Trademarks, U.S. National Institute of Standards and Technology (NIST), United States Citizen, United States Department of Energy (DOE), Unix Operating Systems, Virtualization, Vulnerability Scanners, Willing to Travel, Writing Skills

Benefits & conditions

Annual Salary Range (based on full-time 40 hours per week)Job Profile: IT Professional II / Annual Salary Range: $83,600 - $150,500

Job Profile: IT Professional I / Annual Salary Range: $76,600 - $126,400

NLR takes into consideration a candidate’s education, training, and experience, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the Colorado Equal Pay for Equal Work Act, a potential new employee’s salary history will not be used in compensation decisions.

Benefits SummaryBenefits include medical, dental, and vision insurance; short- and long-term disability insurance; pension benefits; 403(b) Employee Savings Plan with employer match; life and accidental death and dismemberment (AD&D) insurance; personal time off (PTO) and sick leave; paid holidays; and tuition reimbursement. NLR employees may be eligible for, but are not guaranteed, performance-, merit-, and achievement- based awards that include a monetary component. Some positions may be eligible for relocation expense reimbursement. Limited-term positions are not eligible for long-term disability or tuition reimbursement.

About the company

Working at NLRNLR is located at the foothills of the Rocky Mountains in Golden, Colorado is the nation’s primary laboratory for energy systems research and development.

Join the National Laboratory of the Rockies (NLR), where world-class scientists, engineers, and experts are accelerating energy innovation through breakthrough research and systems integration. From our mission to our collaborative culture, NLR stands out in the research community for its commitment to an affordable and secure energy future. Spanning foundational science to applied systems engineering and analysis, we focus on solving complex challenges to deliver advanced, secure, reliable, and cost-effective energy solutions. Our work helps strengthen U.S. industries, support job creation, and promote national economic growth.

At NLR, you’ll find a mission-driven environment supported by state-of-the-art facilities, multidisciplinary research teams, and strong collaborations with industry, academia, and other national laboratories. We offer robust professional development opportunities, and a competitive benefits package designed to support your career and well-being., E-Verify is a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all