Cybersecurity Engineer

Posted 4 Days Ago
Be an Early Applicant
Springfield, VA, USA
In-Office
130K-140K Annually
Senior level
Big Data • Cloud • Information Technology • Consulting • Cybersecurity
The Role
Implement and maintain cybersecurity controls across Windows, RHEL, virtualization, networking, and AWS environments. Execute RMF continuous monitoring, apply STIGs, remediate vulnerabilities from ACAS/STIG scans, manage POA&Ms, support A&A documentation, operate enterprise security infrastructure (firewalls, IDS/IPS, gateways), perform forensic log/traffic analysis, and develop automation/scripting (PowerShell, Bash, Python) to improve security operations and compliance.
Summary Generated by Built In

**ACTIVE TS/SCI SECURITY CLEARANCE REQUIRED**

D2 is your place.  You make it your own by embracing autonomy, seizing opportunity, and being trusted to deliver your best every day.  Our work depends on a TS/SCI cleared Information Security Engineer joining our team to support our intelligence customer in Springfield, VA or Arnold, MO.

This position supports the Geospatial Services & Solutions business area to provide high-quality, cost-effective solutions to the customer.  As part of the GSS team, the cybersecurity engineer’s expertise is needed to support a sophisticated enterprise environment.


How an Cyber Security Engineer Will Make an Impact

This role is responsible for implementing and maintaining cybersecurity controls across enterprise infrastructure, including Windows, Linux, network, virtualization, and cloud environments.  The successful candidate will execute RMF continuous monitoring activities, implement STIG’s, remediate vulnerabilities, manage POA&Ms, and support Assessment & Authorization (A&A) efforts in accordance with NIST SP 800-53, ICD 503, and DOD security requirements.  This is a hands-on technical role requiring experience hardening systems, responding to security findings, supporting enterprise security tools, and collaborating with infrastructure teams to maintain a secure, compliant, and resilient operating environment.

Specific Duties and Responsibilities

  • Act as the representative of the Information System Security Manager (ISSM), ensuring compliance with DoD and Intelligence Community (IC) information security policies, procedures, and directives
  • Support efforts to operate, maintain, and dispose of information system materials in accordance with RMF, NIST, ICD 503, and applicable security directives, policies, and System Security Plans (SSPs)
  • Implement and maintain Security Technical Implementation Guides (STIGs) across Windows, Linux (RHEL), network, virtualization, and cloud environments to ensure compliance with DoD security requirements
  • Execute technical remediation activities to address security findings identified through ACAS, STIG reviews, vulnerability scans, and security assessments
  • Manage assigned Plan of Action and Milestones (POA&Ms) by implementing technical solutions, validating remediation efforts, documenting completion evidence and supporting POA&M closure
  • Support RMF continuous monitoring activities by implementing required security controls, maintaining A&A documentation, and ensuring compliance with NIST SP 800-53 and ICD 503 requirements
  • Generate and implement required cybersecurity awareness training, ensuring users understand their security responsibilities prior to system access
  • Initiate protective and corrective measures when security incidents, vulnerabilities, or compliance issues have been identified
  • Ensure IA hardware, software, and operating systems comply with approved security configuration guides and organizational security baselines
  • Implement and enforce IA policies and procedures as defined by RMF authorization packages and A&A documentation
  • Ability to work on multiple projects simultaneously in a dynamic, fast-paced, team-oriented environment
  • Perform Operations & Sustainment (O&S) functions for enterprise network security infrastructure, including firewalls, web gateways, mail gateways, IDS/IPS, load balancers, performance monitoring tools, and management systems
  • Perform maintenance, hardening, patching, and advanced configuration of security infrastructure to protect enterprise networks from emerging cyber threats
  • Support and secure Cloud Infrastructure, including AWS-based technologies
  • Utilize enterprise security tools such as ACAS, HBSS, Carbon Black, Tanium, RedSeal, and related cybersecurity platforms
  • Conduct forensic network traffic and log analysis to investigate incidents, isolate issues, and respond to analyst alerts
  • Respond to escalated cybersecurity and infrastructure troubleshooting requests
  • Maintain and administer network infrastructure standards, documentation, and fault-tolerant configurations
  • Present monitoring testing, compliance, and remediation results and reports as required
  • Perform and support integration testing, security validation, and operational readiness activities
  • Develop automation and scripting solutions using Powershell, Bash, Python, or similar languages to improve security operations and compliance
  • Collaborate with systems, network, and cloud engineering teams to implement secure architectures and operational best practices
  • Participate in special projects as required

Required Knowledge, Experience and Skills:

  • Bachelor’s Degree in Computer Science, Engineering, Cybersecurity, Information Technology or a related technical discipline, or the equivalent combination of education, professional training or work experience
  • 5+ years of related experience in data security administration
  • Experience implementing and supporting the Risk Management Framework (RMF) throughout the system lifecycle
  • Strong knowledge of NIST SP 800-53, ICD 503, and DoD security policies
  • Hands-on experience implementing, maintaining, and remediating Security Technical Implementation Guides (STIGs) across Windows, Linux (RHEL), network, virtualization
  • Experience executing technical remediation activities for vulnerabilities identified through ACAS, STIG compliance reviews, and other vulnerability management tools
  • Experience in writing, maintaining, and closing Plan of Action and Milestones (POA&Ms), including documenting remediation evidence and validating corrective actions
  • Experience implementing and maintaining Assessment & Authorization (A&A) documentation and supporting RMF continuous monitoring activities
  • Experience with security tools such as ACAS, HBSS, Carbon Black, Tanium, RedSeal, or equivalent
  • Experience installing, hardening, deploying, documenting, and troubleshooting network perimeter security technologies
  • Experience scripting with Unix/Linux (RHEL), Bash, Python, and PowerShell
  • Strong analytical, troubleshooting, documentation, and communication skills
  • Ability to work independently while managing multiple priorities

Desired Knowledge, Experience, and Skills:

  • Experience supporting NGA TESR environments
  • Experience supporting Intelligence Community Assessment & Authorization processes
  • Experience with security automation and Infrastructure-as-Code
  • Experience with enterprise SIEM platforms such as Splunk or Elastic
  • DOD 8570/8140 compliant certifications such as Security+, CISSP, CAP, or CASP+

Additional Information

  • All your information will be kept confidential according to EEO guidelines.
  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically $130 - $140k. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.
  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Accrued PTO, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and more!

D2 Technical Services is committed to a merit-based recruitment process and encourages applications from all qualified individuals.  As a Veteran-Owned Small Business, we particularly welcome applications from veterans who have the requisite skills and experience.  Job applicants that are interested in one of our openings and may require a reasonable accommodation to participate in the job application or interview process, should contact us to request an accommodation.


Skills Required

  • Active TS/SCI security clearance
  • Bachelor's degree in Computer Science, Engineering, Cybersecurity, IT or equivalent experience
  • 5+ years of related experience in data/security administration
  • Experience implementing and supporting Risk Management Framework (RMF)
  • Strong knowledge of NIST SP 800-53, ICD 503, and DoD security policies
  • Hands-on experience implementing and remediating STIGs across Windows, RHEL (Linux), network, and virtualization
  • Experience executing technical remediation for vulnerabilities identified via ACAS, STIG reviews, and vulnerability management tools
  • Experience writing, maintaining, and closing POA&Ms, including documenting remediation evidence
  • Experience implementing and maintaining A&A documentation and supporting RMF continuous monitoring activities
  • Experience with security tools: ACAS, HBSS, Carbon Black, Tanium, RedSeal (or equivalents)
  • Experience installing, hardening, deploying, documenting, and troubleshooting network perimeter security technologies (firewalls, gateways, IDS/IPS, load balancers)
  • Scripting and automation skills: PowerShell, Bash, Python (Unix/Linux/RHEL)
  • Experience supporting and securing AWS-based cloud infrastructure
  • Forensic network traffic and log analysis experience and incident response capability
  • Strong analytical, troubleshooting, documentation, and communication skills; ability to work independently and manage multiple priorities
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Arlington, Virginia
30 Employees
Year Founded: 2016

What We Do

D2 Consulting provides services to the Federal Government focused in the following three area's We leverage D2 Consulting engineering, operations and governance best practices to efficiently and effectively deploy, maintain and continuously improve IT services and solutions. This includes not only engineering solutions such as VDI and providing direct support to operations but also deploying the tools to instrument and maintain Enterprise performance and availability (including ITSM and Enterprise Management Tools). Protect & Secure: This is our cyber security practice, which includes functions like audit and information assurance, as well as the traditional mechanics of securing IT systems and services. We have experience working with the Government to better manage risk to help move the accreditation process along. This is especially true with respect to adapting accreditation controls to a cloud environment. Cloud Migration and Data Center modernization/consolidation: This area is focused on cloud migration and adoption as well as data center consolidation. We work to ensure that infrastructure requirements are implemented correctly, according to best practices and in a timely manner.

Similar Jobs

MetroStar Logo MetroStar

Cybersecurity Engineer

Information Technology • Consulting
In-Office
Reston, VA, USA
250 Employees
152K-215K Annually

Workday Logo Workday

Cybersecurity Engineer

Cloud • Fintech • HR Tech
In-Office
3 Locations
14894 Employees
118K-210K Annually

Bright Vision Technologies Logo Bright Vision Technologies

Cybersecurity Engineer

Artificial Intelligence • Information Technology • Software • Consulting
In-Office
Herndon, VA, USA
53 Employees
100K-150K Annually

Bright Vision Technologies Logo Bright Vision Technologies

Cybersecurity Engineer

Artificial Intelligence • Information Technology • Software • Consulting
In-Office
Herndon, VA, USA
53 Employees
100K-150K Annually

Similar Companies Hiring

Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees
Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account