Cybersecurity Engineer

General Dynamics Information Technology
Springfield, United States of America
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 143K

Job location

Remote
Springfield, United States of America

Tech stack

Microsoft Windows
Amazon Web Services (AWS)
Bash
Cloud Engineering
Computer Security
Information Systems
Computer Networks
Linux
Fault Tolerance
Information Security Management
Intrusion Detection Systems
Information Systems Security Architecture Professional
Python
Network Troubleshooting
Log Analysis
Network Architecture
Powershell
Red Hat Enterprise Linux - RHEL
Security Information and Event Management
Software Vulnerability Management
Scripting (Bash/Python/Go/Ruby)
Computer Networking Systems
Load Balancing
Cloud Platform System
In-Plane Switching (IPS)
Cyber Threat Analysis
Tanium Platform Expertise
Integration Tests
Information Technology
Performance Monitor
Splunk
Security Orchestration, Automation & Response
Plan of Action and Milestones

Job description

GDIT is your place. You make it your own by embracing autonomy, seizing opportunity, and being trusted to deliver your best every day. We think. We act. We deliver. There is no challenge we can't turn into opportunity. Our work depends on TS/SCI level cleared Cybersecurity Engineer joining our team to support our Intelligence customer in Springfield, VA or St. Louis, MO.

This position supports the Geospatial Services & Solutions business area to provide high-quality, cost-effective solutions to the customer. As part of the GSS Team the cybersecurity engineer's expertise is needed to support a sophisticated enterprise environment., This role is responsible for implementing and maintaining cybersecurity controls across enterprise infrastructure, including Windows, Linux, network, virtualization, and cloud environments. The successful candidate will execute RMF continuous monitoring activities, implement STIGs, remediate vulnerabilities, manage POA&Ms, and support Assessment & Authorization (A&A) efforts in accordance with NIST SP 800-53, ICD 503, and DoD security requirements. This is a hands-on technical role requiring experience hardening systems, responding to security findings, supporting enterprise security tools, and collaborating with infrastructure teams to maintain a secure, compliant, and resilient operating environment., + Act as the representative of the Information System Security Manager (ISSM), ensuring compliance with DoD and Intelligence Community (IC) information security policies, procedures, and directives.

  • Support efforts to operate, maintain, and dispose of information system materials in accordance with RMF, NIST, ICD 503, and applicable security directives, policies, and System Security Plans (SSPs).

  • Implement and maintain Security Technical Implementation Guides (STIGs) across Windows, Linux (RHEL), network, virtualization, and cloud environments to ensure compliance with DoD security requirements.

  • Execute technical remediation activities to address security findings identified through ACAS, STIG reviews, vulnerability scans, and security assessments.

  • Manage assigned Plan of Action and Milestones (POA&Ms) by implementing technical solutions, validating remediation efforts, documenting completion evidence, and supporting POA&M closure.

  • Support RMF continuous monitoring activities by implementing required security controls, maintaining A&A documentation, and ensuring compliance with NIST SP 800-53 and ICD 503 requirements.

  • Generate and implement required cybersecurity awareness training, ensuring users understand their security responsibilities prior to system access.

  • Initiate protective and corrective measures when security incidents, vulnerabilities, or compliance issues are identified.

  • Ensure IA hardware, software, and operating systems comply with approved security configuration guides and organizational security baselines.

  • Implement and enforce IA policies and procedures as defined by RMF authorization packages and A&A documentation. .

  • Ability to work on multiple projects simultaneously in a dynamic, fast-paced, team-oriented environment.

  • Perform Operations & Sustainment (O&S) functions for enterprise network security infrastructure, including firewalls, web gateways, mail gateways, IDS/IPS, load balancers, performance monitoring tools, and management systems.

  • Perform maintenance, hardening, patching, and advanced configuration of security infrastructure to protect enterprise networks from emerging cyber threats.

  • Support and secure Cloud Infrastructure, including AWS-based technologies.

  • Utilize enterprise security tools such as ACAS, HBSS, Carbon Black, Tanium, RedSeal, and related cybersecurity platforms.

  • Conduct forensic network traffic and log analysis to investigate incidents, isolate issues, and respond to analyst alerts.

  • Respond to escalated cybersecurity and infrastructure troubleshooting requests.

  • Maintain and administer network infrastructure standards, documentation, and fault-tolerant configurations.

  • Present monitoring, testing, compliance, and remediation results and reports as required.

  • Perform and support integration testing, security validation, and operational readiness activities.

  • Develop automation and scripting solutions using PowerShell, Bash, Python, or similar languages to improve security operations and compliance.

  • Collaborate with systems, network, and cloud engineering teams to implement secure architectures and operational best practices.

  • Participate in special projects as required.

Requirements

5 + years of related experience, + Experience implementing and supporting the Risk Management Framework (RMF) throughout the system lifecycle.

  • Strong knowledge of NIST SP 800-53, ICD 503, and DoD cybersecurity policies.

  • Hands-on experience implementing, maintaining, and remediating Security Technical Implementation Guides (STIGs) across Windows, Linux (RHEL), network, virtualization

  • Experience executing technical remediation activities for vulnerabilities identified through ACAS, STIG compliance reviews, and other vulnerability management tools.

  • Experience writing, maintaining, and closing Plan of Action and Milestones (POA&Ms), including documenting remediation evidence and validating corrective actions.

  • Experience implementing and maintaining Assessment & Authorization (A&A) documentation and supporting RMF continuous monitoring activities.

  • Experience with security tools such as ACAS, HBSS, Carbon Black, Tanium, RedSeal, or equivalent.

  • Experience installing, hardening, deploying, documenting, and troubleshooting network perimeter security technologies.

  • Experience scripting with Unix/Linux (RHEL), Bash, Python, and PowerShell.

  • Strong analytical, troubleshooting, documentation, and communication skills.

  • Ability to work independently while managing multiple priorities in a fast-paced environment.

Desired Skills

  • Experience supporting NGA TESR environments.

  • Experience supporting Intelligence Community Assessment & Authorization processes.

  • Experience with security automation and Infrastructure-as-Code.

  • Experience with enterprise SIEM platforms such as Splunk or Elastic.

  • DoD 8570/8140 compliant certifications such as Security+, CISSP, CAP, or CASP+., Bachelor's Degree in Computer Science, Engineering, Cybersecurity, Information Technology, or a related technical discipline, or an equivalent combination of education, technical training, or relevant military/work experience., 5-10 years of experience supporting Information Assurance, Cybersecurity, Information System Security Officer (ISSO), or Cybersecurity Engineering functions within DoD or Intelligence Community environments.

Active TS/SCI clearance required and eligibility to obtain a CI poly

Benefits & conditions

At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities

  • Support: An internal mobility team focused on helping you achieve your career goals

  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off

  • Community: Award-winning culture of innovation and a military-friendly workplace

OWN YOUR OPPORTUNITY

Explore a career in cyber at GDIT and you'll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.

#RoverGSS

The likely salary range for this position is $107,744 - $142,600. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

About the company

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development. Join our Talent Community to stay up to date on our career opportunities and events at https://gdit.com/tc.

Apply for this position