Enterprise Security Engineering Lead

Greenbrier Government Solutions Inc.
United States
24 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$175,000.0 - $200,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Amazon Web Services Apple IOS Apple Mac Systems Authentication Protocols Microsoft Azure Border Gateway Protocol Burp Suite Ubuntu (Operating System) CentOS Cisco PIX Cloud Computing
+45 more
Cloud Computing Security Cyber Security Continuous Integration Debian Linux Linux Digital Assets Disaster Recovery Enhanced Interior Gateway Routing Protocol Federal Information Processing Standards (FIPS) Infrastructure as a Service (IaaS) Identity and Access Management Internet Protocol Security (IP SEC) Intrusion Detection Systems Virtual Private Networks (VPN) Python (Programming Language) Network Security Network Architecture Networking Basics Routing Network Protocols Nmap Open Shortest Path First (OSPF) Platform as a Service (PAAS) PCI Data Security Standards Public Key Infrastructure Systems Development Life Cycle Ansible Security Information and Event Management Software Engineering TCP/IP Wide Area Networks Scripting Google Cloud Load Balancing Cloud Platform System Cyber Threat Analysis Firewalls (Computer Science) Infrastructure Automation Frameworks Information Technology Cybercrime Terraform Splunk New Relic (SaaS) Devsecops Vulnerability Analysis

Job description

We are seeking an energetic and highly skilled Enterprise Security Engineering Lead to support the Dept of Veterans Affairs security architecture and engineering initiatives. In this pivotal role, you will lead a team of security engineers to design, implement, and maintain robust security systems that protect our IT infrastructure, cloud environments, and network architecture. Your expertise will ensure our security posture aligns with industry standards such as ISO 27001, NIST frameworks, and FIPS regulations. Join us to drive innovative security solutions, foster a culture of continuous improvement, and safeguard our digital assets against evolving cyber threats., * Lead the development and implementation of enterprise-wide security architecture, including network security, cloud security, and endpoint protection strategies.

  • Oversee the deployment and management of firewalls (Cisco ASA), intrusion detection systems (IDS), SIEM platforms (Splunk, New Relic), and other security tools to monitor and analyze security events.
  • Design and enforce access control management solutions utilizing identity and access management (IAM) architecture, SSO protocols, and authentication mechanisms such as PKI.
  • Conduct comprehensive security risk assessments and investigations aligned with NIST standards to identify vulnerabilities within IT infrastructure, including LAN/WAN networks, routing protocols (OSPF, BGP), and network protocols.
  • Collaborate with DevSecOps teams to integrate security practices into the SDLC (Software Development Life Cycle) using tools like Terraform, Ansible, and CI/CD pipelines for secure cloud infrastructure deployment on platforms like AWS, Azure, or Google Cloud.
  • Develop incident response plans, disaster recovery procedures, and incident recovery protocols to ensure rapid mitigation of cybersecurity incidents.
  • Stay current with emerging cybersecurity trends, threat landscapes, and compliance requirements such as PCI DSS, FedRAMP, FISMA, and ISO 27002/27000 series standards.

Requirements

  • Bachelor’s Degree required, Master’s degree preferred.
  • One of the following Certifications is required: CISSP, CISM, CASP
  • Proven experience leading enterprise-level security engineering teams in complex IT environments with a focus on cybersecurity defense strategies.
  • Deep understanding of computer networking concepts including LAN/WAN design, TCP/IP stack, routing protocols (EIGRP, OSPF), VPNs (IPsec), load balancing solutions, and network infrastructure management.
  • Expertise in implementing security systems such as firewalls (Cisco ASA), IDS/IPS solutions, SIEM platforms (Splunk or similar), and endpoint security tools across diverse operating systems including Windows, Linux (Ubuntu/CentOS/Debian), macOS, Android/iOS devices.
  • Strong knowledge of cloud computing architectures (AWS, Azure) with experience in cloud security best practices for PaaS/IaaS environments.
  • Familiarity with encryption technologies including FIPS standards and PKI implementations for secure communications.
  • Experience with vulnerability assessment tools like Nmap or Burp Suite along with vulnerability research methodologies to proactively identify system weaknesses.
  • Solid understanding of information security compliance frameworks such as ISO 27001/27002/27000 series standards and risk management frameworks like RMF or DIACAP.
  • Proficiency in scripting languages such as Python or Bash for automation of security tasks; experience with configuration management tools like Ansible is a plus.
  • Excellent communication skills to articulate complex technical concepts clearly to both technical teams and executive leadership.

Benefits & conditions

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Employee assistance program
  • Employee discount
  • Flexible schedule
  • Flexible spending account
  • Health insurance
  • Life insurance
  • Paid time off
  • Professional development assistance
  • Referral program
  • Retirement plan
  • Tuition reimbursement
  • Vision insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:59 min

Designing HTTP and HTML for familiar document sharing

Tim Berners-Lee · World Congress 2023

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

7:01 min

Initial reconnaissance and port scanning execution

Antonio De Mello +1 · LIVE

6:24 min

Common information security tools and terminologies

Antonio De Mello +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all