Principal Cyber Systems Security Engineer
Role details
Job location
Tech stack
Job description
This role focuses on integrating secure, resilient architectures into critical Department of Defense (DoD) tactical systems by applying systems security engineering principles across the full system lifecycle. The Principal Cyber Systems Security Engineer leads the incorporation of cyber survivability requirements into system architectures, ensuring systems can operate in contested cyber environments. The position emphasizes collaboration with cross-functional engineering teams and external integrators, guiding programs through the DoD acquisition process and ensuring cybersecurity is designed in from the outset rather than treated as a compliance afterthought., * Apply systems security engineering (SSE) principles across the entire system lifecycle, from requirements definition and upfront design through verification, deployment, and sustainment.
- Drive the implementation of cyber survivability requirements into system architectures, leveraging standards such as NIST SP 800-160.
- Develop and analyze system-level security architectures, identify vulnerabilities early in the acquisition lifecycle, and engineer appropriate mitigations.
- Lead Program Protection capability development by integrating Anti-Tamper (AT), Supply Chain Risk Management (SCRM), and software assurance into overarching system designs.
- Provide technical input and guidance throughout the DoD acquisition lifecycle, including engineering reviews, program milestone decisions, and verification and validation activities.
- Act as a key technical contributor in program-level risk assessments, ensuring cybersecurity is an integral part of decision-making processes.
- Collaborate closely with cross-functional engineering teams, including software, hardware, and DevSecOps, to ensure cybersecurity is built into systems rather than added as a later compliance measure.
- Engage regularly with customers and other system integrators to ensure they understand and correctly implement technical security requirements.
- Review technical implementations from partner organizations, identify gaps or issues, and clearly explain what needs to be corrected and why.
- Produce and maintain clear, comprehensive technical documentation and security-related artifacts that support acquisition and engineering activities.
- Perform some project management responsibilities, including tracking progress on security engineering tasks and coordinating with stakeholders to meet program objectives.
- Contribute to the culture of continuous improvement by sharing best practices in secure engineering design and promoting secure-by-design principles across programs., Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts of our hiring process, including sourcing, screening, and evaluating candidates. AI helps assess applications and qualifications, but final decisions are made by our hiring team. By applying, you acknowledge and agree that your application may be reviewed using AI tools. Related Jobs Cybersecurity Engineer SME Leidos
Bethesda, MD*On-Site
Linux CI/CD Splunk Nessus Rapid7 Ansible Auditing Firewall Equities Scripting SonarQube DevSecOps Pipelines Operations Automation Purchasing Upskilling Market Data Coordinating Oracle Cloud Cryptography Investigation Cyber Security Key Management Risk Management Authentications Cloud Computing Ancient History Network Security Security Controls Incident Response CompTIA Security+ Digital Forensics System Monitoring Endpoint Security Cyber Engineering Analytical Method Windows PowerShell AWS CloudFormation Systems Engineering Amazon Web Services Time Off Management Security Engineering Software Development Contingency Planning Signals Intelligence Programming Languages Regulatory Frameworks Vulnerability Scanning Security Configuration Cyber Security Policies Configuration Management Vulnerability Management Certified Ethical Hacker Cyber Security Standards Cybersecurity Compliance Risk Management Framework Authorization (Computing) Cyber Threat Intelligence Cyber Security Assessment IT Security Documentation Agile Software Development Splunk Enterprise Security Google Cloud Platform (GCP) Computer Network Operations Change Management Processes Information Systems Security Customer Information Systems React.js (Javascript Library) Python (Programming Language) Enterprise Application Software Endpoint Detection And Response Troubleshooting (Problem Solving) Host Based Security System (HBSS) Intrusion Detection And Prevention CompTIA Cybersecurity Analyst (CySA+) Plan Of Action And Milestones (POA&M) Security Information And Event Management (SIEM) Certified Information Systems Security Professional Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0 Firewall Engineer Leidos
Arlington, VA*On-Site
Firewall Equities DevSecOps Operations Management Automation Market Data Consolidation Cyber Security Self-Motivation Working Capital Cloud Migration Service Catalog Virtual Routers Ancient History Customer Service Security Clearance Service Management Security Solutions Technology Roadmaps Networking Hardware Information Sharing GIAC Certifications Palo Alto Firewalls CompTIA Security+ CE Continuous Integration Continuous Development Web Application Security IAT Level II Certification Virtual Private Networks (VPN) Internet Protocol Security (IP SEC) CompTIA Cybersecurity Analyst (CySA+) Systems Security Certified Practitioner Information Technology Infrastructure Library GIAC Security Essentials Certification (GSEC) Counter Intelligence Polygraph (CI Clearance) GIAC Global Industrial Cyber Security Professional Cisco Certified Network Associate Security (CCNA Security) Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0 Systems Engineer - Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC) Leidos
Washington, DC*On-Site
Okta JIRA Jamf Mac OS Tooling Auditing Equities Phishing Telemetry Apple IOS Pipelines Management Automation Governance Encryption Market Data Communication Investigation Microsoft 365 Email Security Azure Sentinel NT LAN Manager Risk Management Law Enforcement Azure Functions Confidentiality Ancient History Slack (Software) Windows Defender Threat Detection Operating Systems Security Policies Incident Response Windows PowerShell Facebook Graph API Security Solutions Business Objectives Information Privacy Operations Security Security Governance Security Engineering Business To Business Technical Leadership Willingness To Learn Data Loss Prevention Atlassian Confluence Anti-Spam Techniques Compliance Assurance Compliance Management Packaging And Labeling Information Technology Operational Efficiency Document Classification Product Family Engineering Office 365 Exchange Online Software As A Service (SaaS) Troubleshooting (Problem Solving) Security Information And Event Management (SIEM) Microsoft Intune (Mobile Device Management Software) Secure/Multipurpose Internet Mail Extensions (S/MIME) +0 Login | JoinContact
Requirements
Visionary SonarQube DevSecOps Pipelines Innovation Resilience Coordinating Communication Risk Analysis Collaboration Survivability Cyber Security Security Tools Decision Making Computer Science System Lifecycle Secret Clearance Cyber Engineering Project Management Security Solutions Systems Engineering Security Engineering Software Development Lifecycle Management Relationship Building IT Service Management Acquisition Processes Capability Development Foreign Military Sales Technical Requirements Artificial Intelligence Technical Documentation Strategic Communication IT Security Architecture Engineering Design Process Verification And Validation IAM Level III Certification Supply Chain Risk Management Continuous Improvement Process Design Elements And Principles Model Based Systems Engineering Certified Information Systems Security Professional, * Bachelor's degree in Systems Engineering, Computer Science, Cybersecurity, or a related STEM field.
- Professional experience in Systems Engineering, Cyber Systems Engineering, or Systems Security Architecture on DoD programs (Army, Air Force, Navy, or Joint).
- Direct experience supporting the DoD acquisition lifecycle, including providing technical input to engineering reviews, program milestones, and verification and validation activities.
- Demonstrated ability to lead Program Protection capability development, integrating Anti-Tamper (AT), Supply Chain Risk Management (SCRM), and software assurance into system designs.
- Proven experience developing and analyzing system-level security architectures and identifying vulnerabilities early in the acquisition lifecycle.
- Strong understanding of upfront, secure engineering design principles and secure-by-design methodologies.
- Hands-on experience with security engineering and cybersecurity practices in complex defense systems.
- Ability to communicate effectively with customers and integrators, clearly explaining technical requirements and necessary corrective actions.
- Experience with technical documentation, including drafting and reviewing security-related artifacts and requirements.
- Possession of a current IAT/IAM Level III, DoD 8570 IASAE Level II compliant certification (such as CISSP).
- Active DoD Secret clearance.
Additional Skills & Qualifications
- Master's degree in a relevant technical field.
- Experience with Model-Based Systems Engineering (MBSE) tools and methodologies.
- Hands-on experience with MBSE tools such as Cameo or similar platforms.
- Experience serving as a Systems Engineer in a Navy acquisition program office.
- Familiarity with DevSecOps pipelines and associated security tools, such as SonarQube and Fortify.
- Experience in cybersecurity for complex, mission-critical systems within the DoD environment.
- Exposure to program and project management responsibilities within technical or defense-related programs.
- Strong interpersonal and collaboration skills, with the ability to work effectively within integrated, cross-functional teams.
- Ability to operate effectively in a highly technical, mission-focused environment that supports national security objectives.
Benefits & conditions
The role is based in a collaborative office environment in the Navy Yard area, with a hybrid work schedule that typically requires commuting to the office two to three days per week. The broader organization includes a highly skilled, multidisciplinary team of professionals specializing in program and project management, acquisition and contracting, systems and digital engineering, software development, test and evaluation, sustainment and life-cycle management, cybersecurity, international and Foreign Military Sales, strategic communications, and IT services. This team supports a large portfolio of Above Water Sensor, Undersea, and Combat System programs and projects across the Navy and related organizations. The work environment emphasizes technical excellence, mission focus, and close collaboration, offering unique challenges and opportunities to contribute to complex national security solutions. The culture values innovation, objective analysis, responsiveness to mission needs, and building trusted relationships with government partners. Job Type & Location
This is a Permanent position based out of Alexandria, VA. Pay and Benefits
The pay range for this position is $135000.00 - $195000.00/yr.