Staff Cyber Security Engineer
Bethesda, MD - USA
Job Summary
Are you ready to join Leidos all-star team Through training teamwork and exposure to challenging technical work let Leidos show how to accelerate your career path.
Leidos has an exciting opening for you as our nextTS/SCI cleared Cyber Security Engineer supporting a long-term DIA-NDOC DOMEX Technology Platform (DTP) contract. You will work closely with Systems Engineers Software Engineers Architects and Operations Engineering/Manager on a broad scope of activities to support our clients mission to centralize and standardize Tasking Collection Processing Exploitation and Dissemination (TCPED) of Open Source Intelligence (OSINT) across the Defense and Intelligence Community enterprises. We leverage cloud-based computing artificial intelligence (Al) machine learning (ML) and cross-domain transfer systems to provide cutting edge data exploitation enrichment triage and analytics capabilities to the Defense Intelligence Enterprise.
While most work is conducted on-site at our client location in Bethesda MD we offer a flexible schedule and occasionally some tasks may be performed remotely. The percentage of remote work will vary based on client requirements/deliverables.
Candidates must have a demonstrated ability to work in a dynamic and challenging environment and possess a solid understanding of the software development life cycle all while working within an Agile framework.
Through training teamwork and exposure to challenging technical work let Leidos show how to accelerate your career path. At Leidos we offer competitive benefits including Paid Time Off 11 paid Holidays 401K with a 6% company match and immediate vesting Flexible Schedules Discounted Stock Purchase Plans Technical Upskilling Education and Training Support Parental Paid Leave and much more. Join us and make a difference in Analysis Solutions Business Area!
Primary Responsibilities
You will work closely with the team on the following key tasks
- Collect review assess and provide feedback on system cybersecurity architecture and engineering artifacts
- Collect review assess and provide feedback on system cybersecurity Body-of-Evidence (BOE) results required to support DoD & IC RMF cybersecurity authorization processes
- Conduct periodic compliance scanning vulnerability assessments and risk analysis for cloud-based systems
- Implement and manage security controls for containerized applications and the underlying cloud-based infrastructure
- Collaborate with DevSecOps infrastructure and software development teams to ensure secure coding and engineering practices
- Ensure integration of security measures into software development processes CI/CD pipelines and engineering tools
- Develop maintain and execute shell commands scripts and automation code for STIG compliance and validation
- Implement and manage continuous monitoring solutions of cloud-based architectures
- Support Government cybersecurity officials & program personnel in preparing cybersecurity packages including Interim Authority to Test (IATT) packages Authority to Operate (ATO) packages and Change Requests (CRs)
- Stay current with emerging cloud security threats technologies and best practices
Basic Qualifications
- Clearance: Active or current Top Secret with SCI eligibility and the ability to obtain Polygraph
- Education & Experience: Bachelors degree in Cybersecurity Computer Science Information Assurance Engineering or related technical discipline and 8-12 years of relevant experience OR Masters degree with 6-10 years of relevant experience. Additional years of experience may be considered in lieu of a degree. ISSO experience must be supplemented with demonstrated technical expertise.
- Certification: At least one DoD 8570.01-M IAT and one IAT Level II or higher certification e.g. CCNA Security CySA Security CE CISSP (or Associate) and the ability to obtain Privileged User Account (PUA)/elevated access per DoD 8570 policy and Linux certification
- At least 5 years of experience hardening Linux hosts and applying DISA STIG
- Demonstrated experience securing Kubernetes platforms (secrets management RBAC etc.) and integrating security into CI/CD pipelines and containers
- Demonstrated experience developing A&A packages to obtain and maintain ATO in secure environments.
- Grounded knowledge in NIST SP 800-37 SP 800-53 CNSSI 1253
- XACTA/eMass experience performing vulnerability compliance with ACAS STIG automation
- Experience with scripting languages (Bash Python)
- Understanding of secure software development practices and code reviews
- Experience with encryption and transport
- Understanding of microservices architecture and service mesh.
Preferred Qualifications
- Active TS/SCI with polygraph
- Experience with Commercial Cloud Services (C2S) and cloud-based enterprise services preferably AWS
- Experience supporting the Intelligence Community in RMF activities with ICD 503 and related compliance directives policies procedures
- Experience with the Zero Trust pillars and applying Zero Trust framework to secure systems
- DAST & SAST tools for on-prem (Fortify Checkmarx SonarQube) configuring Nessus Splunk
- Multiple IAT/IAM II or III advanced certifications such as CISSP-ISSAP/ISSEP CISM CCSP Security X/CASP
- Cloud certifications such as AWS Solutions Architect AWS Security Specialty Kubernetes and Cloud Native Associate (KCNA) Certified Kubernetes Administrator (CKA) Certified Kubernetes Security Specialist (CKS)
- Linux certifications such as: Red Hat Certified System Administrator - Enterprise Linux (RHCSA) Red Hat Certified Engineer - Enterprise Linux (RHCE) Red Hat Certified Architect - Enterprise Linux (RHCA)
- Prior Linux sys admin experience
- Oracle Linux 8 System Administrator certification
- Experience applying security controls to various AI implementations
- Experience with ICD 503 compliance
- Experience applying security controls to Generative AI implementations
- Prior network engineering experience
#NMECDTP-ALL
#ASBA
If youre looking for comfort keep scrolling. At Leidos we outthink outbuild and outpace the status quo because the mission demands it. Were not hiring followers. Were recruiting the ones who disrupt provoke and refuse to fail. Step 10 is ancient history. Were already at step 30 and moving faster than anyone else dares.
For U.S. Positions: While subject to change based on business needs Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job education experience knowledge skills and abilities as well as internal equity alignment with market data applicable bargaining agreement (if any) or other law.
Required Experience:
Staff IC
About Company
Leidos is an innovation company rapidly addressing the world's most vexing challenges in national security and health. Our 47,000 employees collaborate to create smarter technology solutions for customers in these critical markets.