Principal Cybersecurity Engineer

Two Six Technologies
Alexandria, VA, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$197,000.0 - $246,000.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Complex Networks Cyber Security Information Systems Linux Information Security Management Intrusion Detection and Prevention Virtual Private Networks (VPN) Network Security Security Information and Event Management
+7 more
Scripting Google Cloud Data Classification Malware Information Technology Sumo Logic (Software) Qualys

Job description

  • Work directly with team leads, developers and operations personnel both on policy and technical implementation of technologies.
  • Architect, designs, implements, maintains and operates information system security controls and countermeasures; supervises and trains operators in the administration of these systems; documents the operation, use, and expected outputs of these systems.
  • Analyze and recommend security controls and procedures in business processes related to use of information systems and assets, and provide oversight to ensure compliance.
  • Monitor information systems for security incidents and vulnerabilities; develops monitoring and visibility capabilities; reports on incidents, vulnerabilities, and trends to IT or executive management.
  • Oversee the response to information system security incidents, including investigation of, countermeasures to, and recovery from computer-based attacks, unauthorized access, and policy breaches; engages, interacts and coordinates with third-party incident responders, including law enforcement.
  • Oversee the administration of authentication and access controls, including security/access roles, and access permissions to information assets.
  • Analyze trends, news and changes in threat and compliance environment with respect to organizational risk; advises organization management and develops and executes mitigation of risk; oversees risk and compliance self-assessments, and engages and coordinates third-party risk and compliance assessments.
  • Analyze and oversee the development of information security governance, including organizational policies, procedures, standards, baselines and guidelines with respect to information security and use and operation of information security management frameworks such as NIST 800-171 and CMMC 2.0.
  • Oversee the development and administration of information security training and awareness programs.

Requirements

Do you have experience in Technical documentation?, Do you have a Bachelor’s degree?, * Bachelor’s Degree in Computer Science, Information Technology (IT), or a related discipline, or equivalent combination of education and work experience

  • 8+ years of solid, diverse experience in Cyber Security Engineering and Incident Response
  • 2+ years in people management/leadership experience
  • Ability to lead, motivate and direct team members; and strong performance management skills to include coaching and goal setting
  • Ability to demonstrate analytical skills, technical knowledge, and practical application of cyber and information security principles from technical teams to senior executives
  • Knowledge of enterprise security solutions (Endpoint Detection and Response, Security information and Event Management, IT services management and Cloud, etc.).
  • Knowledge of intrusion detection methodologies and techniques for detecting host and network-based intrusions via intrusion detection technologies
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth)
  • Knowledge of an organization’s information classification program and procedures for information compromise
  • Proven experience in an information assurance, IT Risk and Compliance, information security, IT & Security audit, collaborating with external auditors (3PAOs) or other similar IT role involving IT security and compliance
  • High level of proficiency in supporting a variety of NIST 800-171 & CMMC functions, including: client environment as-is assessments, Plan of Action & Milestones (POAM) identification & documentation, non-compliance remediation and recommendations, policy and procedure creation, and separation of duties

WHAT WE WOULD LIKE:

  • CISSP Certification
  • Direct experience in network security (SOC, SIRT, CSIRT) investigating targeted intrusions through complex network segments
  • Experience working as a part of a Third Party Assessment Organization (3PAO)
  • Linux and scripting languages experience
  • Demonstrated skill of identifying, capturing, containing, and reporting malware
  • Experience with Cloud Computing Technologies (AWS, GCP, Azure)
  • AWS Certification
  • Experience administering additional security tools such as VPN, Sumo Logic, Qualys, and Automox

Security Clearance Needed:

An active Top Secret clearance

Looking for other great opportunities? Check out Two Six Technologies Opportunities for all our Company’s current openings!

Benefits & conditions

3.73.7 out of 5 stars Alexandria, VA Hybrid work $197,000 - $246,000 a year

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all