Job Description
Job Description
The Opportunity
- Serve as the program’s top technical authority on security engineering, STIG compliance, and vulnerability management
- Define engineering standards and configuration baselines that protect mission-critical systems
- Advise the Cybersecurity Architect and leadership on technical security risk and remediation strategy
- Drive adoption of automation and modern tooling across the engineering team
- Mentor and develop the full ISSE team while shaping the program’s technical security direction
Responsibilities
- Provide SME-level guidance across all security engineering disciplines
- Define and govern security configuration baselines across the system portfolio
- Lead complex SIA efforts for high-risk or enterprise-level changes
- Oversee vulnerability management strategy and drive enterprise remediation programs
- Optimize CyberArk PAM architecture and privileged access governance
- Lead Tenable SC and Tenable Cloud Security program strategy and reporting
- Develop engineering standards, templates, and technical documentation frameworks
- Advise leadership on emerging threats, vulnerabilities, and mitigation strategies
- Mentor and technically develop the full ISSE team
Qualifications
Required:
- Active clearance (TS preferred)
- 10+ years of security engineering experience in DoD or federal environments
- Expert proficiency across STIGviewer, SCAP, Tenable SC, Tenable Cloud Security, and CyberArk PAM
- Mastery of DoD STIG processes, NIST SP 800-53r5 technical controls, and vulnerability management frameworks
- Demonstrated experience leading enterprise-level security engineering programs
- Proven track record mentoring and leading security engineering teams
Required Certification:
- DoD 8140.03M DCWF Intermediate tier certification — one of: CEH(P), RCCE Level 1, Cloud+, CPTE, FITSP-A, GCED, GCIH, GCSA, GICSP, GSEC, PenTest+, or Security+
Desired Certification:
- DoD 8140.03M DCWF Advanced tier certification — one of: CFR, CISA, CISM, CySA+, GPEN, or GSNA
Required Education:
- Bachelor’s degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering
Desired Education:
- Master’s or Ph.D. in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering
Desired:
- Multiple 541 Advanced tier certifications
- Experience with IL4/IL5/IL6 cloud hardening and classified environment engineering
- CyberArk Sentry or Guardian certification
