> Markdown version of [/jobs/ext/2713779-cyber-tools-lead-co5-and-bpa-key-personnel](https://www.wearedevelopers.com/jobs/ext/2713779-cyber-tools-lead-co5-and-bpa-key-personnel). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Tools Lead - CO5 and BPA Key Personnel - **Company:** Tlinked LLC - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $165,000.0 - $210,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Cyber Security, Databases, Information Engineering, Data Integration, Database Security, Issue Tracking Systems, Interoperability, Oracle (Applications), Zero Trust Network Access, Security Software, Security Information and Event Management, Software Vulnerability Management, Data Logging, Scripting, Enterprise Software Applications, Cloud Platform System, Cyberark, Cyber Threat Analysis, Falcon Platform, Information Technology, Performance Monitor, Microsoft Sentinel, SailPoint, Splunk, Servicenow - **Published:** September 4, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9142503/cyber-tools-lead-co5-and-bpa-key-personnel ## About the Role * Current active U.S. Government Secret security clearance. * Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field. * At least 8 years of experience supporting enterprise cybersecurity tools or closely related security engineering/operations environments. * Current CISSP certification or a Government-accepted equivalent cybersecurity certification. * Demonstrated experience leading enterprise cyber-tool architecture, engineering, integration, automation, configuration, operations, sustainment, and lifecycle activities. * Ability to be available within 10 days of Call Order award and remain available throughout the base period. * Residence within reasonable commuting distance of State Annex 17, 600 19th Street NW, Washington, DC., * Experience across multiple security platform domains, such as SIEM/SOAR, vulnerability management, endpoint security, identity/PAM, cloud/database security, configuration/compliance, ticketing, dashboards, and reporting. * Strong API, connector, data-integration, automation, scripting, workflow, and security-data engineering experience. * Experience with Splunk, Microsoft Sentinel, Tenable, ServiceNow, CrowdStrike, SailPoint, CyberArk, Oracle security tools, or comparable enterprise technologies. * Experience managing 24/7 security operations, SIEM, and threat-intelligence use cases; GCIA or equivalent operational-security certification is advantageous. * Experience with NIST RMF/FISMA, NIST SP 800-53, OMB logging, Zero Trust, CISA directives, FedRAMP, technical evaluations, migrations, modernization, and technology refresh. ## Description TLinked is seeking a Cyber Tools Lead to serve as the primary contractor technical lead and subject matter expert for an enterprise cybersecurity-tool ecosystem. The successful candidate will lead architecture, engineering, integration, deployment, configuration, optimization, operations, maintenance, automation, and lifecycle management of cybersecurity tools supporting vulnerability management, assessment, compliance, security operations, risk management, and incident response., * Lead architecture, engineering, integration, deployment, configuration, operation, maintenance, and optimization of Government cybersecurity tools and supporting technologies. * Provide technical direction and oversight to cybersecurity engineers, tool administrators, developers, and sustainment personnel. * Develop and maintain tool architecture, design documentation, deployment plans, configuration standards, integration requirements, operating procedures, and maintenance plans; evaluate technologies against Government mission requirements. * Integrate cyber tools with enterprise infrastructure, cloud environments, applications, databases, identity services, security platforms, ticketing systems, dashboards, and other Government systems. * Ensure tools are securely configured and maintained in accordance with Federal requirements, Department policies, approved baselines, and vendor guidance. * Lead upgrades, migrations, modernization, replacement, patching, testing, validation, release, and technology-refresh activities. * Resolve availability, performance, data-quality, interoperability, scalability, capacity, and security issues. * Develop and sustain APIs, connectors, data feeds, scripts, automation, dashboards, metrics, reports, and workflows supporting cybersecurity information exchange and decision-making. * Monitor performance, availability, capacity, utilization, licensing, inventories, dependencies, interfaces, support status, and end-of-life risk. * Coordinate with system owners, ISSOs, security engineers, network, cloud, application, architecture, security-operations, and governance stakeholders. * Support tool security assessments, authorization, vulnerability remediation, configuration/change management, continuous monitoring, acquisition, and technical evaluation. * Assess emerging technologies and report status, risks, capability gaps, accomplishments, and recommendations to Government stakeholders. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Kubernetes and Microservices with Multi-Model Databases](https://www.wearedevelopers.com/videos/382-kubernetes-and-microservices-with-multi-model-databases) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fault Tolerance and Consistency at Scale: Harnessing the Power of Distributed SQL Databases](https://www.wearedevelopers.com/videos/1146-fault-tolerance-and-consistency-at-scale-harnessing-the-power-of-distributed-sql-databases) - [Branch your database like your code: How schema changes and pull requests go hand in hand](https://www.wearedevelopers.com/videos/350-branch-your-database-like-your-code-how-schema-changes-and-pull-requests-go-hand-in-hand) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Overflow: 5 Security and Privacy Tools for Developers](https://www.wearedevelopers.com/magazine/710-the-overflow-5-security-and-privacy-tools-for-developers) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers)