> Markdown version of [/jobs/ext/629545-senior-security-engineer](https://www.wearedevelopers.com/jobs/ext/629545-senior-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - **Company:** TekSynap Corporation - **Location:** Fort Belvoir, VA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Bash Shell, Command-Line Interface, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, System Configuration, Intrusion Detection and Prevention, Python (Programming Language), NIPRNet, Windows PowerShell, Red Hat Enterprise Linux, Ansible, Security Information and Event Management, Multi-Cloud, Backend, Cloudformation, Infrastructure Automation Frameworks, Microsoft Sentinel, Restful APIs, Terraform, Splunk, Api Management, Security Orchestration, Automation & Response - **Published:** June 24, 2026 - **Apply:** https://www.clearancejobs.com/jobs/8991490/senior-security-engineer ## About the Role * Active Top Secret Clearance with SCI eligibility. * DoD 8570 / 8140 Compliance: Active IAT Level II and CSSP Infrastructure certification. * 8+ years of relevant experience in a hands-on cybersecurity role within a DoD environment. * Experience supporting or participating in incident response within a DoD CSSP or SOC environment, including evidence collection, timeline reconstruction, and post-incident reporting. * Familiarity with NIST SP 800-61 (Computer Security Incident Handling Guide) as the baseline IR framework. * Extensive, hands-on engineering experience and operating within multi-cloud IL-4/5 secure cloud environments. * Demonstrated experience working across multiple network classification levels (NIPR, SIPR, and JWICS). * Advanced, hands-on experience with security analytics platforms, including Splunk (Enterprise/ES), Elastic, and Microsoft Sentinel. * Strong, demonstrable proficiency in scripting and automation for security tasks using languages like Python, PowerShell, Bash, or Ansible, including experience with API integrations . * Solid foundation in Linux/Unix administration and command-line operations necessary for managing backend SIEM and security infrastructure. PREFERRED QUALIFICATIONS * Certifications related to Microsoft Azure Security (e.g., Azure Security Engineer Associate, Microsoft Sentinel Ninja). * Experience configuring and maintaining RHEL systems in compliance with DISA STIGs and supporting ATO documentation efforts. * Experience with Infrastructure as Code (IaC) tools (e.g., Terraform, CloudFormation). * High-level SIEM (Splunk, Elastic, MS Sentinel) and Cloud Architecture certifications. * Working knowledge of the DoD Risk Management Framework (RMF) process, including experience preparing or supporting System Security Plans (SSPs), STIGs, and continuous monitoring requirements for systems operating at IL-4/5., We are seeking a highly skilled Senior Security Engineer ( (SIEM, Cloud, & Security Analytics) to be a key technical leader on our CSSP Team. This role is for a seasoned professional with deep, hands-on experience operating across multiple DoD network enclaves (NIPR, SIPR, and JWICS) . The ideal candidate will drive the design and implementation of sophisticated security solutions, both on-prem and future secure cloud environments , leveraging expertise in a range of security platforms, including, but not limited to Splunk, Elastic, and Microsoft Sentinel . This is a hands-on role for a senior expert who can engineer and automate a complex, multi-faceted security posture. ## Description * Lead the design and implementation of security automation workflows using tools like Python, Ansible, and SOAR platforms to enhance efficiency and response capabilities across all network enclaves. * Design, engineer, and secure cloud architecture within AWS IL-4/5 environments , implementing robust security controls and ensuring compliance with stringent DoD standards. * Serve as the SIEM SME/Architect to enhance the agency's SIEM platform by developing advanced security content, creating custom dashboards, integrating REST APIs, and onboarding new data sources to improve threat visibility. * Serve as a senior engineer for security analytics across multiple platforms, including, but not limited to Microsoft Sentinel and Splunk. This involves developing and implementing advanced correlation rules, workload analytics, and threat intelligence models to detect and respond to anomalous activity. * Serve as a senior technical resource and mentor for other team members, providing guidance on best practices for operating securely across classified and unclassified networks. * Analyze and integrate new subscriber data and security tools into the existing ecosystem to enhance threat detection and response capabilities. * Create and maintain clear, comprehensive technical documentation, including architectural diagrams and Standard Operating Procedures (SOPs) tailored for multi-enclave operations. * Monitor, triage, and support incident response leveraging SIEM platform capabilities including correlation searches, and risk-based alerting (RBA) across all network enclaves. * Maintain and update SIEM content (dashboards, alerts, reports) in alignment with IR playbooks and SOAR workflows to accelerate analyst response times and improve detection fidelity ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Developing the Backend with Stefan Lingler, CTO at Shpock](https://www.wearedevelopers.com/videos/100360-developing-the-backend-with-stefan-lingler-cto-at-shpock) - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Nest.js - TypeScript in the backend can also be clean](https://www.wearedevelopers.com/videos/1033-nest-js-typescript-in-the-backend-can-also-be-clean) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)