Principal Cybersecurity Engineer

Leidos, Inc.
Annapolis Junction, United States
20 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$154,050.0 - $278,475.0
Working hours
Regular working hours
Job source

Tech stack

Agile Methodology Antivirus Softwares Software System Penetration Testing User Authentication Communications Protocols Complex Networks Cyber Security Distributed Systems Information Security Management Information Systems Security Engineering Professional Public Key Infrastructure Scrum Methodology
+9 more
Systems Development Life Cycle Service Design Software Engineering System Testing Web Services Software Security Information Technology Vulnerability Analysis Dynamic Application Security Testing

Job description

Leidos is seeking a Principal Cybersecurity Engineer to support a mission-critical program, offering a challenging and rewarding opportunity for a hands-on technical leader in the security domain. The selected individual will lead all security engineering efforts for a large, complex network environment with geographically distributed systems; and will manage a team of Information Systems Security Officers (ISSOs) and Information Systems Security Engineers (ISSEs), providing technical leadership and direction to meet program requirements. The selected individual will mentor the team in sound information systems security engineering practices and will be heavily involved in system testing. The selected candidate will work closely with other engineers and technical experts to enhance operational, test, integration, and development environments. Responsibilities include ensuring and maintaining Authorizations to Operate (ATOs) for all System Security Plans (SSPs), and ensuring compliance with Secure the Enterprise/Secure the Network (STE/STN) requirements.

Primary Responsibilities

  • Responsible for the overall security architecture, ensuring all security requirements are defined, implemented, and verified.
  • Serve as a security subject matter expert (SME), providing guidance and oversight for the end-to-end security architecture.
  • Engage with multiple system owners across multiple networks to interpret, negotiate, and refine system and security requirements.
  • Define and drive security strategy, including risk assessment and management, security control assessment, continuous monitoring, service design, and broader cybersecurity program support.
  • Identify and analyze security issues across complex, highly integrated systems and environments, and develop clear, actionable remediation recommendations.
  • Design, develop, and execute static and dynamic application security testing, as well as penetration testing activities.
  • Partner with development teams to improve understanding of vulnerabilities, attack vectors, and effective remediation techniques.
  • Lead and mentor a team of program security engineers in day-to-day security engineering activities.
  • Collaborate with the program security team to ensure STE/STN and continuous monitoring requirements are met for Test, Integration, and Development environments.
  • Clearly articulate program security requirements, risks, and compliance challenges to multiple customer points of contact.
  • Coordinate with internal cross-functional teams to plan, prioritize, and execute remediation and other security-related activities.

Requirements

  • Master’s degree in Information Technology, Information Assurance, or related field, and at least 15 years of relevant experience. Additional experience may be substituted for a degree.
  • At least 10 years of experience leading large, diverse Security Engineering teams, leading ISSO and ISSE teams.
  • Current active CISSP certification.
  • Certified Scrum Master certification.
  • At least 5 years of experience applying Agile methodologies in security engineering projects, including Scrum or SAFe frameworks.

  • Extensive hands-on experience with modern security tools; hardware and software security implementation; communication protocols; encryption technologies; and web services.
  • Expert-level understanding of security vulnerabilities and remediation techniques, including risk assessment, risk management, and security strategy/design.
  • Extensive experience formulating, implementing, and assessing IT security policy.
  • Solid understanding of ATOs, SSPs, and STE/STN requirements.
  • Direct experience collaborating with software developers, software testers, and integration, deployment, and sustainment teams.
  • Strong communication and interpersonal skills, with a proven ability to clearly convey program requirements and system compliance challenges to multiple customer stakeholders.
  • Demonstrated ability to coordinate across multiple internal teams for planning and remediation activities.
  • Solutions-oriented team player with a high level of self-initiative.

  • Clearance Required: Must have TS/SCI with Polygraph., * Additional certification: Information System Security Engineering Professional (ISSEP)
  • At least twelve years of experience with defense-in-depth principals/technology (including access control, authorization, identification and authentication, public key infrastructure, network and enterprise security architecture) and applying risk assessment methodology to system development.
  • Experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration tests, anti-virus planning assistance, risk analysis, and incident response.
  • Experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration tests, anti-virus planning assistance, risk analysis, and incident response.
  • Experience providing information assurance support for application development that includes system security certifications and project evaluations for firewalls that encompass the development, design, and implementation.

Benefits & conditions

Leidos has a new and exciting opportunity for a Principal Cybersecurity Engineer in our Intel Sector- Cyber & Analytics Business Area (CABA). Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical Methods and Modeling, Signals Intelligence (SIGINT), and Cryptographic Key Management. At Leidos, we offer competitive benefits, including Paid Time Off, 11 paid Holidays, 401K with a 6% company match and immediate vesting, Flexible Schedules, Discounted Stock Purchase Plans, Technical Upskilling, Education and Training Support, Parental Paid Leave, and much more. Join us and make a difference in National Security!, Pay Range $154,050.00 - $278,475.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit ;br> Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at ;br> Securing Your Data

Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

About the company

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:49 min

Container hosting options available on Amazon Web Services

Federico Fregosi · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

7:25 min

Writing system tests to verify operational infrastructure

Ryan Latta · World Congress 2021

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:27 min

Exploring Rust for cloud and web services

Patrick Koss Patrick Koss · World Congress 2024

Videos

See all

Related articles

See all