> Markdown version of [/jobs/ext/3102622-cybersecurity-engineer-ii](https://www.wearedevelopers.com/jobs/ext/3102622-cybersecurity-engineer-ii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer II - **Company:** DirectViz Solutions, LLC - **Location:** Virginia Beach, VA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Apple IOS, Cyber Security, Information Systems, Linux, Networking Hardware, Red Hat Enterprise Linux, Security Content Automation Protocol, Software Engineering, Software Vulnerability Management, Computer Networking Systems, Change Tracking, SC Clearance, Information Technology, Patch Management, Cyber Warfare, Network Server, Plan of Action and Milestones, Vulnerability Analysis - **Published:** September 27, 2026 - **Apply:** https://www.thejobnetwork.com/job/36879216-7ed4-4b4c-8bf5-9fdd1604b822/cybersecurity-engineer-ii-secret-clearance-required ## About the Role * Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information Systems, Information Technology, Computer/Electrical/Electronics Engineering, Software Engineering, Computer Science, Mathematics with a concentration in Computer Science, or an equivalent discipline. * 5 years of full-time professional experience performing system hardening. + Or High school diploma/GED plus ten years of experience * Demonstrated experience implementing STIGs, performing ACAS vulnerability assessments, applying Security Management policy guidance/directives, and remediating vulnerabilities and implementing vendor patches on Linux and Windows systems. * Demonstrated hands-on experience administering, hardening, patching, and troubleshooting Red Hat Enterprise Linux (RHEL) 8 and 9; experience with RHEL 10 is required or must be current enough to support transition and sustainment activities. * Experience maintaining Assess Only authorization and accreditation packages and supporting cybersecurity assessment and authorization documentation throughout the package lifecycle. * Working knowledge of infrastructure patch management and network device IOS management, including planning, implementation, validation, rollback considerations, and documentation. * Experience applying and assessing DISA STIGs on network systems and devices, as well as server and endpoint configurations, and documenting or remediating resulting findings. * Certifications: IAT Level II - (one of the following) CCNA Security, CySA+, GICSP, GSEC, Security+CE, CND, or SSCP * SECRET clearance. Required If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today! Physical and Mental Qualifications: * Maintain focus and awareness throughout scheduled working hours. * Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard. * Lift and move objects weighing up to 15 pounds as needed. * Exhibit excellent verbal and written communication skills, with a strong command of the English language. * Demonstrate the ability to work independently while also collaborating effectively as part of a team. * Quickly learn and retain routine tasks and processes. * Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities. * Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request. * Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS). ## Description Summary DVS is seeking a Cybersecurity Engineer II to support Department of the Navy cybersecurity compliance, system hardening, vulnerability management, continuous monitoring, and system authorization activities. The engineer performs DoD-mandated cybersecurity scans and compliance checks; supports Authorization to Operate (ATO), Assess Only authorization and accreditation package maintenance, and Annual Security Review activities; evaluates and applies DISA STIG requirements to network systems and endpoint configurations; manages infrastructure patching and network device IOS updates; and remediates vulnerabilities across mission-critical Navy radar, data-distribution, server, endpoint, and network environments. Hands-on experience with Red Hat Enterprise Linux (RHEL) 8, 9, and 10 is required., * Perform system hardening in accordance with applicable DoD and Navy cybersecurity requirements. * Conduct DoD-mandated vulnerability assessments using ACAS. * Conduct SCAP scans and automated STIG compliance checks. * Implement and assess applicable DISA STIG requirements. * Review quarterly STIG releases and assess system and operational impacts. * Support ATO audits, Annual Security Reviews, and continuous monitoring activities. * Analyze ACAS, SCAP, and STIG findings and develop or update POA&M entries. * Track cybersecurity vulnerabilities and remediation activities through closure. * Remediate vulnerability findings, including implementation of vendor patches on Linux and Windows operating systems. * Apply Security Management policy guidance and directives to cybersecurity activities. * Support day-to-day cybersecurity operations and maintenance of network, server, and hardware resources. * Administer, secure, patch, and troubleshoot Red Hat Enterprise Linux (RHEL) 8, 9, and 10 systems in accordance with approved configuration baselines and cybersecurity requirements. * Maintain Assess Only authorization and accreditation packages, including supporting evidence, assessment artifacts, control documentation, findings, and package updates required to sustain an accurate authorization posture. * Plan, coordinate, implement, and verify infrastructure patching and network device IOS upgrades while assessing operational impact, documenting changes, and validating remediation. * Apply, assess, document, and remediate applicable DISA STIG requirements across network systems, network devices, servers, and endpoint configurations. * Coordinate with technical and cybersecurity stakeholders to address compliance findings and maintain system security posture. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Xcode development redefAIned](https://www.wearedevelopers.com/videos/100195-xcode-development-redefained) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Harnessing Apple Intelligence: Live Coding with Swift for iOS](https://www.wearedevelopers.com/videos/1515-harnessing-apple-intelligence-live-coding-with-swift-for-ios) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)