Security Engineer

DIGITAL GLOBAL CONNECTORS, LLC
McLean, United States of America
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

McLean, United States of America

Tech stack

Microsoft Windows
Amazon Web Services (AWS)
ARM
JIRA
Azure
Cloud Computing
Cloud Computing Security
Software Documentation
CompTIA Security+
Computer Security
Information Systems
Computer Networks
System Configuration
Linux
Multi-Factor Authentication
Identity and Access Management
Intrusion Detection Systems
Information Systems Security Architecture Professional
Network Security
Linux Security Modules
Microsoft Security Essentials
Microsoft Office
Network Configuration and Change Management
Network Architecture
Remote Access Technology
Azure
Security Information and Event Management
Systems Architecture
Software Vulnerability Management
Cloud Platform System
HybridCloud
Firewalls (Computer Science)
Microsoft InTune
Azure Security Center
Information Technology
Cybercrime
Palo Alto Networks
Nessus
Microsoft Sentinel
Windows Security
Splunk
Cisco networks
ServiceNow
Vulnerability Analysis

Job description

Digital Global Connectors (DGC) is seeking an experienced Security Engineer to support a Federal information security program. The Security Engineer is responsible for designing, implementing, configuring, maintaining, and optimizing enterprise cybersecurity technologies that protect information systems, networks, cloud environments, applications, and data from evolving cyber threats.

This position provides technical expertise across multiple security domains, including endpoint security, network security, cloud security, identity and access management, vulnerability remediation, security monitoring, and systems hardening. The Security Engineer works closely with Security Architects, ISSOs, SOC Analysts, Incident Responders, Threat Hunters, System Administrators, and program leadership to strengthen enterprise security capabilities and ensure compliance with Federal cybersecurity requirements.

The successful candidate will possess extensive experience implementing enterprise cybersecurity technologies, supporting secure system architectures, and improving organizational cyber resilience through sound engineering practices., Security Engineering

  • Design, implement, configure, and maintain enterprise cybersecurity solutions.
  • Deploy security technologies supporting enterprise information systems, cloud environments, and network infrastructure.
  • Evaluate new security technologies and recommend implementation strategies.
  • Develop secure engineering standards and technical baselines.
  • Support enterprise cybersecurity modernization initiatives.
  • Maintain secure system configurations throughout the system lifecycle.

Endpoint Security

  • Implement and manage endpoint protection technologies.
  • Configure endpoint detection and response (EDR) platforms.
  • Support application control, device control, and endpoint hardening initiatives.
  • Deploy security policies supporting enterprise endpoint protection.
  • Investigate endpoint security issues and recommend corrective actions.
  • Support secure workstation and server configurations.

Network Security

  • Configure and maintain firewalls, network security appliances, intrusion detection systems, intrusion prevention systems, and secure network services.
  • Implement secure network segmentation and access control policies.
  • Support VPN technologies and secure remote access solutions.
  • Review network configurations for security compliance.
  • Assist with network architecture reviews and security improvements.
  • Support secure communications across enterprise environments.

Cloud Security

  • Implement security controls supporting Microsoft Azure, Microsoft 365, Amazon Web Services (AWS), and hybrid cloud environments.
  • Configure cloud security monitoring and compliance capabilities.
  • Implement cloud identity, access control, and encryption solutions.
  • Support secure cloud workload deployment.
  • Assist with cloud security assessments and remediation activities.
  • Recommend cloud security improvements based on evolving threats.

Identity and Access Management

  • Support implementation of identity and access management (IAM) solutions.
  • Configure Multi-Factor Authentication (MFA), Conditional Access, and Privileged Access Management (PAM) technologies.
  • Assist with identity lifecycle management.
  • Review authentication and authorization configurations.
  • Support implementation of least-privilege principles.
  • Recommend improvements to identity security architecture.

Vulnerability Remediation

  • Support enterprise vulnerability remediation activities.
  • Review vulnerability assessment findings.
  • Coordinate remediation with system administrators and technical teams.
  • Validate successful remediation of identified vulnerabilities.
  • Support implementation of secure configuration baselines.
  • Assist with continuous vulnerability management activities.

Security Tool Administration

Implement, configure, and support technologies including:

  • Microsoft Defender XDR
  • Microsoft Defender for Endpoint
  • Microsoft Defender for Identity
  • Microsoft Defender for Cloud
  • Microsoft Sentinel
  • Microsoft Intune
  • Microsoft Entra ID
  • Splunk Enterprise Security
  • CrowdStrike Falcon
  • Palo Alto Cortex XDR
  • Cisco Secure
  • Tenable Security Center
  • Nessus
  • Security Information and Event Management (SIEM)
  • Endpoint Detection and Response (EDR)
  • Extended Detection and Response (XDR)

Support integration and optimization of enterprise cybersecurity technologies.

Risk Management Framework (RMF) Support

  • Support implementation of NIST SP 800-53 security controls.
  • Assist ISSOs during system authorization activities.
  • Support remediation of Security Assessment findings.
  • Review technical configurations supporting Authorization to Operate (ATO) packages.
  • Maintain security documentation supporting continuous monitoring.
  • Assist with implementation of security engineering requirements identified during assessments.

Documentation and Reporting

Develop and maintain:

  • Security Engineering Documentation
  • System Configuration Guides
  • Security Architecture Diagrams
  • Technical Implementation Guides
  • Configuration Baselines
  • Standard Operating Procedures
  • Engineering Change Documentation
  • Vulnerability Remediation Reports
  • Security Metrics
  • Executive Status Reports

Ensure engineering documentation remains current, technically accurate, and supports operational and audit requirements.

Collaboration

  • Coordinate with Security Architects, ISSOs, SOC Analysts, Incident Responders, Threat Hunters, System Administrators, Network Engineers, Cloud Engineers, and Government stakeholders.
  • Participate in engineering reviews and technical working groups.
  • Support enterprise cybersecurity initiatives and technology deployments.
  • Provide technical guidance to junior engineers and administrators.
  • Assist with troubleshooting complex cybersecurity issues.

Continuous Improvement

  • Monitor emerging cybersecurity technologies and engineering best practices.
  • Recommend improvements to enterprise security architecture and engineering processes.
  • Support automation initiatives that improve security operations.
  • Participate in technology evaluations and proof-of-concept activities.
  • Maintain professional certifications and technical expertise.

Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Systems, Engineering, or a related discipline.
  • Minimum five (5) years of experience implementing or supporting enterprise cybersecurity technologies.
  • Experience administering endpoint security, SIEM, identity management, cloud security, or network security solutions.
  • Experience supporting Windows, Linux, cloud, and enterprise network environments.
  • Familiarity with NIST SP 800-53, the Risk Management Framework (RMF), and Federal cybersecurity requirements.
  • Strong analytical, troubleshooting, documentation, and communication skills.
  • U.S. Citizenship required.
  • Ability to obtain and maintain a Tier 2 Public Trust.

Preferred Qualifications

  • Master's degree in Cybersecurity, Information Assurance, Computer Science, Engineering, or a related discipline.
  • Experience supporting a Federal civilian agency.
  • Experience implementing Microsoft security technologies in enterprise environments.
  • Experience supporting Microsoft Azure, Microsoft 365, or AWS cloud security.
  • Certified Information Systems Security Professional (CISSP)
  • CompTIA Security+
  • CompTIA CySA+
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100) (preferred)
  • Palo Alto Networks Certified Network Security Engineer (PCNSE) (preferred)

Knowledge, Skills, and Abilities

  • Security Engineering
  • Endpoint Security
  • Cloud Security
  • Network Security
  • Identity and Access Management (IAM)
  • Microsoft Defender XDR
  • Microsoft Defender for Endpoint
  • Microsoft Defender for Identity
  • Microsoft Defender for Cloud
  • Microsoft Sentinel
  • Microsoft Intune
  • Microsoft Entra ID
  • Splunk Enterprise Security
  • CrowdStrike Falcon
  • Palo Alto Cortex XDR
  • Cisco Secure
  • Tenable Security Center
  • Nessus
  • Security Information and Event Management (SIEM)
  • Endpoint Detection and Response (EDR)
  • Extended Detection and Response (XDR)
  • Windows Security
  • Linux Security
  • Microsoft Azure
  • Amazon Web Services (AWS)
  • NIST Risk Management Framework (RMF)
  • NIST SP 800-53
  • Federal Information Security Modernization Act (FISMA)
  • Technical Documentation
  • Microsoft Office Suite
  • ServiceNow
  • Jira

Security Requirements

  • Ability to successfully obtain and maintain a Tier 2 Public Trust investigation.
  • Compliance with all applicable Federal security, privacy, ethics, and information assurance training requirements before receiving system access.
  • Ability to support enterprise cybersecurity operations, technology implementations, scheduled maintenance windows, continuity of operations (COOP), emergency response activities, and surge support as required.
  • Must maintain strict confidentiality while handling sensitive security configurations, system documentation, vulnerability information, and Federal information systems.
  • Ability to design, implement, maintain, and continuously improve enterprise cybersecurity technologies while collaborating effectively with Government stakeholders, technical teams, and program leadership to strengthen organizational security and support mission objectives.

Apply for this position