> Markdown version of [/jobs/ext/3322656-enterprise-security-engineering-lead](https://www.wearedevelopers.com/jobs/ext/3322656-enterprise-security-engineering-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Enterprise Security Engineering Lead - **Company:** Greenbrier Government Solutions Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $175,000.0 - $200,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Apple IOS, Apple Mac Systems, Authentication Protocols, Microsoft Azure, Border Gateway Protocol, Burp Suite, Ubuntu (Operating System), CentOS, Cisco PIX, Cloud Computing, Cloud Computing Security, Cyber Security, Continuous Integration, Debian Linux, Linux, Digital Assets, Disaster Recovery, Enhanced Interior Gateway Routing Protocol, Federal Information Processing Standards (FIPS), Infrastructure as a Service (IaaS), Identity and Access Management, Internet Protocol Security (IP SEC), Intrusion Detection Systems, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Network Architecture, Networking Basics, Routing, Network Protocols, Nmap, Open Shortest Path First (OSPF), Platform as a Service (PAAS), PCI Data Security Standards, Public Key Infrastructure, Systems Development Life Cycle, Ansible, Security Information and Event Management, Software Engineering, TCP/IP, Wide Area Networks, Scripting, Google Cloud, Load Balancing, Cloud Platform System, Cyber Threat Analysis, Firewalls (Computer Science), Infrastructure Automation Frameworks, Information Technology, Cybercrime, Terraform, Splunk, New Relic (SaaS), Devsecops, Vulnerability Analysis - **Published:** September 9, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=bca1c8bc953835a3 ## About the Role * Bachelor's Degree required, Master's degree preferred. * One of the following Certifications is required: CISSP, CISM, CASP * Proven experience leading enterprise-level security engineering teams in complex IT environments with a focus on cybersecurity defense strategies. * Deep understanding of computer networking concepts including LAN/WAN design, TCP/IP stack, routing protocols (EIGRP, OSPF), VPNs (IPsec), load balancing solutions, and network infrastructure management. * Expertise in implementing security systems such as firewalls (Cisco ASA), IDS/IPS solutions, SIEM platforms (Splunk or similar), and endpoint security tools across diverse operating systems including Windows, Linux (Ubuntu/CentOS/Debian), macOS, Android/iOS devices. * Strong knowledge of cloud computing architectures (AWS, Azure) with experience in cloud security best practices for PaaS/IaaS environments. * Familiarity with encryption technologies including FIPS standards and PKI implementations for secure communications. * Experience with vulnerability assessment tools like Nmap or Burp Suite along with vulnerability research methodologies to proactively identify system weaknesses. * Solid understanding of information security compliance frameworks such as ISO 27001/27002/27000 series standards and risk management frameworks like RMF or DIACAP. * Proficiency in scripting languages such as Python or Bash for automation of security tasks; experience with configuration management tools like Ansible is a plus. * Excellent communication skills to articulate complex technical concepts clearly to both technical teams and executive leadership. ## Description We are seeking an energetic and highly skilled Enterprise Security Engineering Lead to support the Dept of Veterans Affairs security architecture and engineering initiatives. In this pivotal role, you will lead a team of security engineers to design, implement, and maintain robust security systems that protect our IT infrastructure, cloud environments, and network architecture. Your expertise will ensure our security posture aligns with industry standards such as ISO 27001, NIST frameworks, and FIPS regulations. Join us to drive innovative security solutions, foster a culture of continuous improvement, and safeguard our digital assets against evolving cyber threats., * Lead the development and implementation of enterprise-wide security architecture, including network security, cloud security, and endpoint protection strategies. * Oversee the deployment and management of firewalls (Cisco ASA), intrusion detection systems (IDS), SIEM platforms (Splunk, New Relic), and other security tools to monitor and analyze security events. * Design and enforce access control management solutions utilizing identity and access management (IAM) architecture, SSO protocols, and authentication mechanisms such as PKI. * Conduct comprehensive security risk assessments and investigations aligned with NIST standards to identify vulnerabilities within IT infrastructure, including LAN/WAN networks, routing protocols (OSPF, BGP), and network protocols. * Collaborate with DevSecOps teams to integrate security practices into the SDLC (Software Development Life Cycle) using tools like Terraform, Ansible, and CI/CD pipelines for secure cloud infrastructure deployment on platforms like AWS, Azure, or Google Cloud. * Develop incident response plans, disaster recovery procedures, and incident recovery protocols to ensure rapid mitigation of cybersecurity incidents. * Stay current with emerging cybersecurity trends, threat landscapes, and compliance requirements such as PCI DSS, FedRAMP, FISMA, and ISO 27002/27000 series standards. ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [ The attacker's footprint](https://www.wearedevelopers.com/videos/375-the-attacker-s-footprint) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [A Guide to Green Tech and Green IT Careers](https://www.wearedevelopers.com/magazine/374-a-guide-to-green-tech-and-green-it-careers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [What is Software Engineering?](https://www.wearedevelopers.com/magazine/289-what-is-software-engineering) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)