System Engineer Sr Principal

Posted 2 Days Ago
Be an Early Applicant
Fort Meade, MD, USA
In-Office
133K-181K Annually
Senior level
Aerospace • Information Technology • Professional Services • Security • Software
The Role
Leads vulnerability management, patching, and security hardening across virtual machines, network devices, operating systems, and container platforms. Implements DISA STIGs, CIS benchmarks, and security baselines; manages scanning and compliance tools; and drives vulnerability remediation. Maintains Azure-based infrastructure, networking, Docker/Kubernetes environments, PKI, Active Directory, and Group Policy. Uses automation and scripting for configuration and reporting, supports incident response, and ensures compliance with DoD, RMF/ATO, and NIST requirements.
Summary Generated by Built In

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

Secret

Clearance Level Must Be Able to Obtain:

Secret

Public Trust/Other Required:

None

Job Family:

IT Infrastructure and Operations

Job Qualifications:

Skills:

Cloud Based Services, DISA STIG, Microsoft Windows, Vulnerability Mitigation, Windows Azure Cloud

Certifications:

None

Experience:

8 + years of related experience

US Citizenship Required:

Yes

Job Description:

SYSTEMS ENGINEER PRINCIPAL

General Dynamics Information Technology (GDIT) is seeking a Systems Engineer Sr Principal with a strong cyber and vulnerability management background to support a mission-critical environment. This role will focus on end-to-end vulnerability management, including patching, STIG implementation, and sustainment of virtual machines, network devices, and containers in highly secure environments.

As a senior principal systems engineer, you will apply deep expertise in security configuration baselines, vulnerability assessment tooling, and remediation strategies to reduce risk and improve the security posture of enterprise systems.

This is hybrid position and requires regular on-site support and remote work.

Responsibilities
  • Lead the design, implementation, and optimization of vulnerability management and patching strategies for virtualized infrastructures, network devices, and containerized workloads. 
  • Interpret and implement DoD/DISA STIGs, CIS benchmarks, and other security baselines across operating systems, applications, networks, and container platforms. 
  • Own the lifecycle of patch management (assessment, planning, testing, deployment, and verification) to ensure timely and compliant remediation of vulnerabilities. 
  • Maintain and harden virtual machine environments (e.g., cloud-native VMs), ensuring availability, performance, and security. 
  • Configure and maintain network devices (e.g., routers, switches, firewalls) in accordance with security policies, STIGs, and best practices. 
  • Deploy and maintain container platforms (e.g., Docker, Kubernetes/OpenShift) with a focus on secure configuration, image scanning, and vulnerability remediation. 
  • Integrate and leverage vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7, ACAS) and configuration/compliance tools to identify, track, and remediate findings. 
  • Collaborate with cross-functional teams (cybersecurity, network engineering, systems administration, DevSecOps) to ensure cohesive and secure designs and operations. 
  • Participate in incident response and root cause analysis related to vulnerabilities, misconfigurations, and system security issues, driving corrective and preventive actions. 
  • Ensure solutions meet applicable contractual, regulatory, and compliance requirements (e.g., DoD directives, RMF/ATO, NIST SP 800-53).
Required Qualifications
  • Active DoD Security Clearance of SECRET, or higher
  • 8+ years of relevant systems engineering experience, including work in secure or mission-critical environments. 
  • Compliance with DoD 8570/8140 requirements (e.g., CCSP, Security+ CE, CISSP, Security X/CASP+, or equivalent baseline certification).
  • Demonstrated experience leading vulnerability management and patching activities across complex, multi-platform environments.
  • Experience with Microsoft Azure Cloud services such as virtual machines, storage, resource manager, etc.
  • Experience with implementing PKI and PIV standards, Active Directory or LDAP 
  • Experience with Group Policy Objects and management 
  • Hands-on experience implementing STIGs and security baselines for:
    • Operating systems (e.g., Windows Server, RHEL Linux, Ubuntu) 
    • Network devices (e.g., Cisco, Juniper, firewalls) 
    • Virtualization platforms and/or container platforms
  • Experience maintaining and securing virtual machine infrastructures (e.g. cloud-based VMs). 
  • Experience supporting network infrastructure including configuration, hardening, and troubleshooting of routers, switches, and firewalls. 
  • Experience deploying and maintaining container-based environments (e.g., Docker, Kubernetes) with an emphasis on secure configuration and image management. 
  • Expertise with vulnerability scanning and compliance tools (e.g., Tenable.sc/Nessus ACAS or similar), including interpreting results and driving remediation. 
  • Proficiency with automation and scripting (e.g., Ansible, PowerShell, Python, Bash) for patching, configuration management, and reporting. 
  • Strong understanding of networking fundamentals (TCP/IP, routing, witching, DNS, DHCP, VLANs, VPNs) and how they intersect with security best practices. 
  • Solid understanding of cybersecurity principles, controls, and frameworks, such as NIST, RMF, and defense-in-depth strategies
  • Strong written and verbal communication skills, including the ability to translate technical risk and remediation plans into language stakeholders understand. 
  • Demonstrated ability to work collaboratively across engineering, cybersecurity, operations, and customer teams.
Desired Qualifications
  • Bachelor’s degree in Computer Science, Information Systems, Engineering, Cybersecurity, or related field; 
  • Experience in Microsoft Azure Cloud security implementations 
  • Familiarity with NIST 800-207 Zero Trust Architecture 
  • Familiarity with NIST 800-144 Guidelines on Security and Privacy in Public Cloud Computing 

The likely salary range for this position is $133,450 - $180,550. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

25-50%

Telecommuting Options:

Hybrid

Work Location:

USA MD Fort Meade

Additional Work Locations:

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

 



Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at

gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Skills Required

  • Active DoD Secret security clearance or higher
  • 8 or more years of relevant systems engineering experience in secure or mission-critical environments
  • DoD 8570/8140 baseline certification, such as CCSP, Security+ CE, CISSP, Security X, CASP+, or equivalent
  • Experience leading vulnerability management and patching across complex, multi-platform environments
  • Experience with Microsoft Azure Cloud services, including virtual machines, storage, and Resource Manager
  • Experience implementing PKI and PIV standards and using Active Directory or LDAP
  • Experience managing Group Policy Objects
  • Experience implementing STIGs and security baselines for Windows Server, RHEL Linux, Ubuntu, network devices, virtualization platforms, or container platforms
  • Experience maintaining and securing virtual machine infrastructures
  • Experience configuring, hardening, and troubleshooting routers, switches, and firewalls
  • Experience deploying and maintaining secure container-based environments, including Docker or Kubernetes
  • Expertise with vulnerability scanning and compliance tools such as Tenable.sc, Nessus, ACAS, or similar
  • Proficiency with Ansible, PowerShell, Python, or Bash for patching, configuration management, and reporting
  • Strong understanding of networking fundamentals, including TCP/IP, routing, switching, DNS, DHCP, VLANs, and VPNs
  • Understanding of cybersecurity principles, controls, NIST, RMF, and defense-in-depth strategies
  • Strong written and verbal communication skills
  • Ability to collaborate across engineering, cybersecurity, operations, and customer teams
  • Bachelor’s degree in Computer Science, Information Systems, Engineering, Cybersecurity, or a related field
  • Experience with Microsoft Azure Cloud security implementations
  • Familiarity with NIST 800-207 Zero Trust Architecture
  • Familiarity with NIST 800-144 Guidelines on Security and Privacy in Public Cloud Computing

General Dynamics Information Technology Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about General Dynamics Information Technology and has not been reviewed or approved by General Dynamics Information Technology.

  • Affordable Benefits Pay and benefits are described as good or okay in multiple places, and the overall package is often portrayed as acceptable even when base pay is not viewed as top-tier.
  • Healthcare Strength Medical, dental, and vision plan options are presented as comprehensive, with additional protections like disability and life insurance contributing to a well-rounded health and protection offering.
  • Retirement Support A 401(k) plan with company match is consistently highlighted as part of the total rewards package, supporting longer-term financial planning.

General Dynamics Information Technology Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Falls Church, VA
21,625 Employees

What We Do

We are GDIT. The people supporting some of the most complex government, defense, and intelligence projects across the country. We deliver. Bringing the expertise needed to understand and advance critical missions. We transform. Shifting the ways clients invest in, integrate, and innovate technology solutions. We ensure today is safe and tomorrow is smarter. We are there. On the ground, beside our clients, in the lab, and everywhere in between. Offering the technology transformations, strategy, and mission services needed to get the job done.

Similar Jobs

General Motors Logo General Motors

Senior Software Engineer

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees

General Motors Logo General Motors

District Manager, Sales - Western Region

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees
76K-114K Annually

General Motors Logo General Motors

Staff Software Engineer

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees

General Motors Logo General Motors

Sales Manager

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account