it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

14 jobs found

Email me jobs like this
Refine Search
Current Search
technical architect threat vulnerability management engineering
Raytheon
Principal Cybersecurity Engineer - Product Owner
Raytheon Tewksbury, Massachusetts
Date Posted: 2026-09-24 Country: United States of America Location: US-MA-TEWKSBURY-TB3 50 Apple Hill Dr CONCORD BLDG, Tewksbury Tb3 300 Concord Position Role Type: Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements: Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Security Clearance Type: DoD Clearance: Secret Security Clearance Status: Ability to obtain INTERIM U.S. government issued security clearance is required prior to start date At RTX, the world's largest aerospace and defense company, 185,000 great minds are united by purpose and inspired to make a difference solving the world's most complex problems. With our three market leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunity no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. Raytheon brings the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. We deliver solutions that help our nation and allies defend freedoms and deter aggression, creating a safer, more secure world. Join us and help shape the future of aerospace and defense. This position is an onsite role in Tewksbury MA. The Patriot Cybersecurity organization is seeking an experienced Product Owner to lead cybersecurity innovation and secure development across emerging software, hardware, and integrated capabilities in the Patriot system. This role serves as the tip of the spear for aligned cybersecurity modernization guiding advanced assessment activities, ethical hacking phases, vulnerability discovery, threat analysis, and recommending mitigation strategies to strengthen Patriot resilience against evolving cyber threats. The PO will lead have a Scrum Master and Scrum Practitioners, drive Agile execution and deliver new cyber capabilities that directly support the cyber objectives. This individual will report to the Chief Product Owner (CPO) and the Cross Platform Team Lead (CPTL), influencing technical direction, security posture, development priorities, and product roadmaps for Patriot Cybersecurity. This role operates with minimal oversight, manages moderately sized projects or processes, and is recognized as a subject matter expert contributing significantly to modernization strategy and the development of next generation cyber capabilities. What You Will Do Be a Product Owner for one of the Scrum Teams on Patriot Cyber. Lead product vision, strategy, and backlog ownership for emerging Patriot cybersecurity capabilities spanning software, hardware, networks, and integrated system components. Perform advanced penetration testing and ethical hacking activities, including scoping, threat modeling, attack surface analysis, exploitation attempts, impact analysis, and system hardening recommendations. Apply structured frameworks such as the Ethical Hacking Phases and Cyber Kill Chain to identify weaknesses, assess adversary techniques, and guide secure design improvements. Conduct vulnerability scanning and assessment activities and convert findings into prioritized risks, actionable remediation plans, and cybersecurity roadmap updates. Drive application security analysis and secure development requirements for new Patriot software components and modernization initiatives. Integrate outputs from scanning tools, penetration tests, CVA results, RMF changes, and exploitation research into Sprint planning and product decisions. Develop, refine, and maintain cybersecurity architecture artifacts, requirements, strategies, design documents, and security policies supporting modernization efforts. Guide creation and improvement of RMF/ATO documentation including SSP sections, POA&Ms, SAR inputs, PPSM entries, SBOM updates, HW/SW lists, and other CDRLs. Partner closely with engineering, platform owners, and stakeholders to evaluate alternative solutions and ensure secure implementation of system enhancements. Collaborate with leadership (CPO and CPTL) to align product priorities, resolve cross platform dependencies, and influence cybersecurity modernization strategy. Work independently with minimal oversight to investigate complex, undefined cyber problems, gather technical data, perform analysis, and recommend system level improvements. Communicate frequently with internal programs, external partners, and cross discipline stakeholders to guide secure development and influence policies and cybersecurity standards. Qualifications You Must Have Bachelor's degree in a STEM field and 8+ years of relevant cybersecurity, engineering, or technical product leadership experience Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Advanced expertise in cybersecurity fundamentals, compliance requirements, and RMF (NIST SP ). Hands on experience performing vulnerability assessment, ethical hacking phases, kill chain analysis, and remediation recommendation. Experience with NSA (FIPS), NIST (SP 800 series), DISA STIGs, and USCYBERCOM cybersecurity guidance. Experience with secure configuration and administration of Windows, RHEL, and common network platforms (e.g., Cisco). Proficiency with cybersecurity and vulnerability assessment tools such as Nessus, ACAS, OpenVAS, SCC, SCAP, STIG Viewer, and evaluate STIG. Experience leading or facilitating Agile teams; familiarity working with Scrum Masters and Scrum Practitioners. Ability to define, refine, and communicate technical user stories, acceptance criteria, and backlog items. Demonstrated capability to analyze complex cybersecurity test results, threat behavior, and data to drive decisions. Qualifications We Prefer Ethical hacking or penetration testing certifications (CEH, OSCP, GPEN, or similar). Familiarity with DoDI 8510.01 and A&A/ATO processes within DoD environments. Experience supporting Army cybersecurity programs, Penetration Testing efforts, Assessment efforts or Patriot system components. Experience writing detailed user stories, estimating work, and decomposing features as a Scrum Practitioner. DoDI 8570.01 Level III certification (IAT/IAM/IASAE) preferred Security related network or operating system certifications (Cisco, Microsoft, Red Hat, etc.). Ability to work independently as a self starter while influencing policies, engineering practices, and cross team decision making. Broad knowledge of project management concepts and multi platform system integration within RTX/Patriot programs. Please ensure the role type defined below is appropriate for your needs before applying to this role. This position is classified as: Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products. As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote. The salary range for this role is 107,500 USD - 204,500 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills. Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement. Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance. This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply. RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window. RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class . click apply for full job details
10/02/2026
Full time
Date Posted: 2026-09-24 Country: United States of America Location: US-MA-TEWKSBURY-TB3 50 Apple Hill Dr CONCORD BLDG, Tewksbury Tb3 300 Concord Position Role Type: Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements: Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Security Clearance Type: DoD Clearance: Secret Security Clearance Status: Ability to obtain INTERIM U.S. government issued security clearance is required prior to start date At RTX, the world's largest aerospace and defense company, 185,000 great minds are united by purpose and inspired to make a difference solving the world's most complex problems. With our three market leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunity no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. Raytheon brings the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. We deliver solutions that help our nation and allies defend freedoms and deter aggression, creating a safer, more secure world. Join us and help shape the future of aerospace and defense. This position is an onsite role in Tewksbury MA. The Patriot Cybersecurity organization is seeking an experienced Product Owner to lead cybersecurity innovation and secure development across emerging software, hardware, and integrated capabilities in the Patriot system. This role serves as the tip of the spear for aligned cybersecurity modernization guiding advanced assessment activities, ethical hacking phases, vulnerability discovery, threat analysis, and recommending mitigation strategies to strengthen Patriot resilience against evolving cyber threats. The PO will lead have a Scrum Master and Scrum Practitioners, drive Agile execution and deliver new cyber capabilities that directly support the cyber objectives. This individual will report to the Chief Product Owner (CPO) and the Cross Platform Team Lead (CPTL), influencing technical direction, security posture, development priorities, and product roadmaps for Patriot Cybersecurity. This role operates with minimal oversight, manages moderately sized projects or processes, and is recognized as a subject matter expert contributing significantly to modernization strategy and the development of next generation cyber capabilities. What You Will Do Be a Product Owner for one of the Scrum Teams on Patriot Cyber. Lead product vision, strategy, and backlog ownership for emerging Patriot cybersecurity capabilities spanning software, hardware, networks, and integrated system components. Perform advanced penetration testing and ethical hacking activities, including scoping, threat modeling, attack surface analysis, exploitation attempts, impact analysis, and system hardening recommendations. Apply structured frameworks such as the Ethical Hacking Phases and Cyber Kill Chain to identify weaknesses, assess adversary techniques, and guide secure design improvements. Conduct vulnerability scanning and assessment activities and convert findings into prioritized risks, actionable remediation plans, and cybersecurity roadmap updates. Drive application security analysis and secure development requirements for new Patriot software components and modernization initiatives. Integrate outputs from scanning tools, penetration tests, CVA results, RMF changes, and exploitation research into Sprint planning and product decisions. Develop, refine, and maintain cybersecurity architecture artifacts, requirements, strategies, design documents, and security policies supporting modernization efforts. Guide creation and improvement of RMF/ATO documentation including SSP sections, POA&Ms, SAR inputs, PPSM entries, SBOM updates, HW/SW lists, and other CDRLs. Partner closely with engineering, platform owners, and stakeholders to evaluate alternative solutions and ensure secure implementation of system enhancements. Collaborate with leadership (CPO and CPTL) to align product priorities, resolve cross platform dependencies, and influence cybersecurity modernization strategy. Work independently with minimal oversight to investigate complex, undefined cyber problems, gather technical data, perform analysis, and recommend system level improvements. Communicate frequently with internal programs, external partners, and cross discipline stakeholders to guide secure development and influence policies and cybersecurity standards. Qualifications You Must Have Bachelor's degree in a STEM field and 8+ years of relevant cybersecurity, engineering, or technical product leadership experience Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Advanced expertise in cybersecurity fundamentals, compliance requirements, and RMF (NIST SP ). Hands on experience performing vulnerability assessment, ethical hacking phases, kill chain analysis, and remediation recommendation. Experience with NSA (FIPS), NIST (SP 800 series), DISA STIGs, and USCYBERCOM cybersecurity guidance. Experience with secure configuration and administration of Windows, RHEL, and common network platforms (e.g., Cisco). Proficiency with cybersecurity and vulnerability assessment tools such as Nessus, ACAS, OpenVAS, SCC, SCAP, STIG Viewer, and evaluate STIG. Experience leading or facilitating Agile teams; familiarity working with Scrum Masters and Scrum Practitioners. Ability to define, refine, and communicate technical user stories, acceptance criteria, and backlog items. Demonstrated capability to analyze complex cybersecurity test results, threat behavior, and data to drive decisions. Qualifications We Prefer Ethical hacking or penetration testing certifications (CEH, OSCP, GPEN, or similar). Familiarity with DoDI 8510.01 and A&A/ATO processes within DoD environments. Experience supporting Army cybersecurity programs, Penetration Testing efforts, Assessment efforts or Patriot system components. Experience writing detailed user stories, estimating work, and decomposing features as a Scrum Practitioner. DoDI 8570.01 Level III certification (IAT/IAM/IASAE) preferred Security related network or operating system certifications (Cisco, Microsoft, Red Hat, etc.). Ability to work independently as a self starter while influencing policies, engineering practices, and cross team decision making. Broad knowledge of project management concepts and multi platform system integration within RTX/Patriot programs. Please ensure the role type defined below is appropriate for your needs before applying to this role. This position is classified as: Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products. As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote. The salary range for this role is 107,500 USD - 204,500 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills. Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement. Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance. This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply. RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window. RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class . click apply for full job details
Network Engineer C. Advanced (RFQ) - hybrid Tallahassee, FL
Novalink Solutions LLC Tallahassee, Florida
Job Description Job Description 4. Scope of Servies The Florida Department of Transportation, Office of Information Technology (OIT) - Integration Services is in search of a Senior Network Engineer to play a key role in assisting the Office of Information Technology in the establishment of new integration methods and standards, along with implementing system integrations, according to those established methods and standards. Duties and Responsibilities will include but are not limited to: 1. Perform security administration to configure and document firewall infrastructure access rules and work with peripheral network components in the technology environment with Palo Alto, Checkpoint and Global Protect VPNs. 2. Firewall deployments, rule migrations, firewall administration and converting existing rule based policies onto new platforms. 3. Works with critical core network infrastructure devices like Next Gen Firewall, VPNs, log collectors and monitors which play a crucial role in security for our IT environment. 4. Works with cloud network infrastructure to configure firewall, security policies and monitor network traffic. 5. Develop and maintain documentation following NIST guidelines. 6. Project Manager; 7. Data Administration; 5 Education Bachelor's Degree in Computer Science, Information Systems or other related field. Or equivalent work experience. Preferred Certifications (PCNSE, CISSP, CCNP, CCIE) 6. Experience 1. Typically have 5 to 10 years of combined IT and security work experience with a broad range of exposure to systems analysis, applications development, database design and administration 2. Three to five years of experience with information security tools based on NIST standards. 3. Requires knowledge of security issues, techniques, and implications across all existing computer platforms. Preference given for experience with NGFW Palo Alto or Checkpoint security products. 4. Experience using schematic diagramming tools to map infrastructure layouts. 7 Primary Job Duties/ Tasks Senior Network Engineer - Job Duties 1. Develops, implements, and manages enterprise security solutions across multiple IT functional areas, including network infrastructure, data, systems, cloud environments, telecommunications, and Web-based services. Designs and maintains secure network architectures, segmentation strategies, access controls, firewalls, VPNs, encryption technologies, and other security controls. 2. Develops, implements, and maintains enterprise security policies, standards, procedures, and technical controls governing user authentication, privileged access, network access, security monitoring, vulnerability management, firewall administration, encryption, remote access, and incident escalation. Ensures security practices align with organizational requirements, industry standards, and applicable regulatory requirements. 3. Performs security risk assessments and develops risk-based response strategies for enterprise network and infrastructure environments. Prepares executive-level status reports, risk assessments, security metrics, and recommendations addressing vulnerabilities, emerging threats, security incidents, and operational risks. 4. Monitors, analyzes, and responds to cybersecurity threats and security events, including malware, software vulnerabilities, unauthorized access attempts, network anomalies, and policy violations. Administers and monitors security profiles and access controls, reviews security alerts and violation reports, investigates security exceptions, and coordinates remediation activities. Maintains comprehensive documentation of security controls, configurations, incidents, and corrective actions. 5. Evaluates emerging network and security technologies, products, and procedures to improve infrastructure reliability, security, performance, and operational efficiency. Leads technical evaluations, proof-of-concept activities, product assessments, and implementation recommendations for enterprise networking and cybersecurity solutions. 6. Provides advanced technical support and consultation to business and IT stakeholders on complex network, infrastructure, and cybersecurity issues. Troubleshoots escalated network and security incidents, provides technical guidance to infrastructure teams, and educates IT and business personnel on security policies, secure configurations, access requirements, and risk mitigation practices. 7. Provides security expertise and technical leadership throughout the IT project lifecycle, including requirements development, architecture and design, implementation, testing, deployment, and operational support. Reviews project designs and proposed solutions to identify security risks and ensures appropriate security controls are incorporated into network, cloud, application, and infrastructure initiatives. 8. Designs, implements, and supports enterprise network infrastructure, including LAN/WAN, routing and switching, wireless networks, firewalls, VPNs, network segmentation, Internet connectivity, cloud connectivity, and data center infrastructure. Develops network solutions that support high availability, resiliency, scalability, and security requirements. 9. Leads the investigation and resolution of complex network and security incidents, utilizing network monitoring, logging, packet analysis, performance data, and security tools to identify root causes and implement corrective actions. Coordinates with vendors, technical teams, and organizational stakeholders during critical incidents and service disruptions. 10. Develops network security architecture and segmentation strategies designed to limit lateral movement, protect critical systems, isolate sensitive workloads, and establish appropriate security boundaries between users, applications, devices, and infrastructure. Evaluates east-west and north-south traffic flows to identify security risks and opportunities for improved network controls. 11. Establishes and monitors network performance and security metrics to identify trends, capacity requirements, vulnerabilities, and potential operational risks. Develops dashboards, key performance indicators, and management reports to support data-driven infrastructure and security decisions. 12. Maintains technical documentation and configuration standards for network and security infrastructure, including network diagrams, IP addressing, VLANs, firewall rules, access controls, security configurations, operational procedures, and disaster recovery requirements. Ensures documentation remains accurate and aligned with the current enterprise environment. 13. Collaborates with architecture, cybersecurity, systems, database, application, cloud, telecommunications, and infrastructure teams to develop integrated technology solutions. Serves as a senior technical resource and provides guidance on enterprise networking, security architecture, infrastructure design, and technology modernization. 14. Provides technical leadership and mentoring to network and security staff, establishes network engineering standards and best practices, reviews technical solutions, and assists with the development of team capabilities in enterprise networking, cybersecurity, cloud infrastructure, and emerging technologies. Senior-Level Requirements Must have extensive knowledge and demonstrated experience in enterprise networking, cybersecurity, systems, databases, cloud infrastructure, and/or Web operations. The senior-level Network Engineer is responsible for developing and implementing enterprise network and security strategies, leading complex technical projects, designing secure and resilient infrastructure, resolving the most complex network and security issues, conducting risk assessments, evaluating emerging technologies, and providing technical guidance to IT and business leadership. The position requires advanced knowledge of network architecture, routing and switching, firewalls, VPN technologies, network segmentation, wireless infrastructure, cloud networking, identity and access management, security monitoring, incident response, vulnerability management, disaster recovery, and enterprise security controls. 8 Job Specific Skills and Abilities (KSAs): Intermediate professional level role. Works independently or on multiple IT security projects as a project team member, occasionally as a project leader. Works on small to large, complex security issues or projects that require increased skill in multiple IT functional areas. May coach more junior staff. 9 General Knowledge Skills and Abilities (KSAs): The submitted candidate must be able to apply common knowledge, skills, and abilities in the following areas: 1. Communication: Have the ability to clearly convey information, in both written and verbal formats, to individuals or groups in a wide variety of settings (i.e.; project team meetings, management presentations, etc.). Must have the ability to effectively listen and process information provided by others. 2. Customer Service: Works well with clients and customers (i.e.; business office, public, or other agencies). Able to assess the needs of the customer, provide information or assistance to satisfy expectations or resolve a problem. 3. Decision Making: Makes sound, well-informed, and objective decisions. 4. Flexibility: Is open to change, new processes (or process improvement), and new information. Has the ability to adapt in response to new information, changing conditions . click apply for full job details
09/30/2026
Full time
Job Description Job Description 4. Scope of Servies The Florida Department of Transportation, Office of Information Technology (OIT) - Integration Services is in search of a Senior Network Engineer to play a key role in assisting the Office of Information Technology in the establishment of new integration methods and standards, along with implementing system integrations, according to those established methods and standards. Duties and Responsibilities will include but are not limited to: 1. Perform security administration to configure and document firewall infrastructure access rules and work with peripheral network components in the technology environment with Palo Alto, Checkpoint and Global Protect VPNs. 2. Firewall deployments, rule migrations, firewall administration and converting existing rule based policies onto new platforms. 3. Works with critical core network infrastructure devices like Next Gen Firewall, VPNs, log collectors and monitors which play a crucial role in security for our IT environment. 4. Works with cloud network infrastructure to configure firewall, security policies and monitor network traffic. 5. Develop and maintain documentation following NIST guidelines. 6. Project Manager; 7. Data Administration; 5 Education Bachelor's Degree in Computer Science, Information Systems or other related field. Or equivalent work experience. Preferred Certifications (PCNSE, CISSP, CCNP, CCIE) 6. Experience 1. Typically have 5 to 10 years of combined IT and security work experience with a broad range of exposure to systems analysis, applications development, database design and administration 2. Three to five years of experience with information security tools based on NIST standards. 3. Requires knowledge of security issues, techniques, and implications across all existing computer platforms. Preference given for experience with NGFW Palo Alto or Checkpoint security products. 4. Experience using schematic diagramming tools to map infrastructure layouts. 7 Primary Job Duties/ Tasks Senior Network Engineer - Job Duties 1. Develops, implements, and manages enterprise security solutions across multiple IT functional areas, including network infrastructure, data, systems, cloud environments, telecommunications, and Web-based services. Designs and maintains secure network architectures, segmentation strategies, access controls, firewalls, VPNs, encryption technologies, and other security controls. 2. Develops, implements, and maintains enterprise security policies, standards, procedures, and technical controls governing user authentication, privileged access, network access, security monitoring, vulnerability management, firewall administration, encryption, remote access, and incident escalation. Ensures security practices align with organizational requirements, industry standards, and applicable regulatory requirements. 3. Performs security risk assessments and develops risk-based response strategies for enterprise network and infrastructure environments. Prepares executive-level status reports, risk assessments, security metrics, and recommendations addressing vulnerabilities, emerging threats, security incidents, and operational risks. 4. Monitors, analyzes, and responds to cybersecurity threats and security events, including malware, software vulnerabilities, unauthorized access attempts, network anomalies, and policy violations. Administers and monitors security profiles and access controls, reviews security alerts and violation reports, investigates security exceptions, and coordinates remediation activities. Maintains comprehensive documentation of security controls, configurations, incidents, and corrective actions. 5. Evaluates emerging network and security technologies, products, and procedures to improve infrastructure reliability, security, performance, and operational efficiency. Leads technical evaluations, proof-of-concept activities, product assessments, and implementation recommendations for enterprise networking and cybersecurity solutions. 6. Provides advanced technical support and consultation to business and IT stakeholders on complex network, infrastructure, and cybersecurity issues. Troubleshoots escalated network and security incidents, provides technical guidance to infrastructure teams, and educates IT and business personnel on security policies, secure configurations, access requirements, and risk mitigation practices. 7. Provides security expertise and technical leadership throughout the IT project lifecycle, including requirements development, architecture and design, implementation, testing, deployment, and operational support. Reviews project designs and proposed solutions to identify security risks and ensures appropriate security controls are incorporated into network, cloud, application, and infrastructure initiatives. 8. Designs, implements, and supports enterprise network infrastructure, including LAN/WAN, routing and switching, wireless networks, firewalls, VPNs, network segmentation, Internet connectivity, cloud connectivity, and data center infrastructure. Develops network solutions that support high availability, resiliency, scalability, and security requirements. 9. Leads the investigation and resolution of complex network and security incidents, utilizing network monitoring, logging, packet analysis, performance data, and security tools to identify root causes and implement corrective actions. Coordinates with vendors, technical teams, and organizational stakeholders during critical incidents and service disruptions. 10. Develops network security architecture and segmentation strategies designed to limit lateral movement, protect critical systems, isolate sensitive workloads, and establish appropriate security boundaries between users, applications, devices, and infrastructure. Evaluates east-west and north-south traffic flows to identify security risks and opportunities for improved network controls. 11. Establishes and monitors network performance and security metrics to identify trends, capacity requirements, vulnerabilities, and potential operational risks. Develops dashboards, key performance indicators, and management reports to support data-driven infrastructure and security decisions. 12. Maintains technical documentation and configuration standards for network and security infrastructure, including network diagrams, IP addressing, VLANs, firewall rules, access controls, security configurations, operational procedures, and disaster recovery requirements. Ensures documentation remains accurate and aligned with the current enterprise environment. 13. Collaborates with architecture, cybersecurity, systems, database, application, cloud, telecommunications, and infrastructure teams to develop integrated technology solutions. Serves as a senior technical resource and provides guidance on enterprise networking, security architecture, infrastructure design, and technology modernization. 14. Provides technical leadership and mentoring to network and security staff, establishes network engineering standards and best practices, reviews technical solutions, and assists with the development of team capabilities in enterprise networking, cybersecurity, cloud infrastructure, and emerging technologies. Senior-Level Requirements Must have extensive knowledge and demonstrated experience in enterprise networking, cybersecurity, systems, databases, cloud infrastructure, and/or Web operations. The senior-level Network Engineer is responsible for developing and implementing enterprise network and security strategies, leading complex technical projects, designing secure and resilient infrastructure, resolving the most complex network and security issues, conducting risk assessments, evaluating emerging technologies, and providing technical guidance to IT and business leadership. The position requires advanced knowledge of network architecture, routing and switching, firewalls, VPN technologies, network segmentation, wireless infrastructure, cloud networking, identity and access management, security monitoring, incident response, vulnerability management, disaster recovery, and enterprise security controls. 8 Job Specific Skills and Abilities (KSAs): Intermediate professional level role. Works independently or on multiple IT security projects as a project team member, occasionally as a project leader. Works on small to large, complex security issues or projects that require increased skill in multiple IT functional areas. May coach more junior staff. 9 General Knowledge Skills and Abilities (KSAs): The submitted candidate must be able to apply common knowledge, skills, and abilities in the following areas: 1. Communication: Have the ability to clearly convey information, in both written and verbal formats, to individuals or groups in a wide variety of settings (i.e.; project team meetings, management presentations, etc.). Must have the ability to effectively listen and process information provided by others. 2. Customer Service: Works well with clients and customers (i.e.; business office, public, or other agencies). Able to assess the needs of the customer, provide information or assistance to satisfy expectations or resolve a problem. 3. Decision Making: Makes sound, well-informed, and objective decisions. 4. Flexibility: Is open to change, new processes (or process improvement), and new information. Has the ability to adapt in response to new information, changing conditions . click apply for full job details
Network Security Engineer II
Hyundai Autoever America Irvine, California
Job Description Job Description Network Security Engineer II Location - Onsite, Irvine, CA Grade: 8 Company Overview Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis. HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group. At HAEA, we understand that IT is the cornerstone of today's fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations. If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that's driving the future of automotive innovation. What You Will Be Doing The Security Architecture and Engineering team within the CISO organization is seeking a Network Security Engineer II to help design, implement, operate, and continuously improve enterprise network security controls. This role will focus on technologies including Web Application Firewalls, Network Access Control, IDS, and IPS, while partnering closely with the IT Networking team to ensure secure, reliable, and scalable network services. This is an onsite role, five days per week, based in our Irvine office. The key responsibilities of this role are as described below: The Network Security Engineer II will be responsible for supporting and maintaining critical network security platforms across the enterprise. Responsibilities include: Administer, monitor, and optimize Web Application Firewall platforms to protect internet-facing and internal applications. Support and maintain Network Access Control technologies, including device profiling, policy enforcement, segmentation support, and exception handling. Operate and tune Intrusion Detection and Intrusion Prevention Systems to improve detection accuracy and reduce false positives. Partner with the IT Networking team on secure network design, routing, switching, firewall, segmentation, and connectivity initiatives. Assist other Security and IT teams by reviewing security events, alerts, logs, and traffic patterns to identify potential threats or misconfigurations. Assist with the implementation of network security architecture standards, hardening guidelines, and secure configuration baselines. Participate in incident response activities related to network-based threats, unauthorized access, or suspicious traffic. Develop and maintain documentation, including network security diagrams, platform runbooks, standard operating procedures, and change records. Support vulnerability remediation efforts related to network infrastructure, application exposure, and security control gaps. Perform policy reviews and rulebase hygiene for WAF, NAC, IDS, and IPS technologies. Participate in change management activities, including risk assessment, implementation planning, testing, and post-change validation. Collaborate with security operations, infrastructure, application, and compliance teams to support business and regulatory requirements. Assist with lifecycle management for network security tools, including upgrades, patching, certificate management, integrations, and capacity planning. Provide technical recommendations to improve visibility, segmentation, access control, and threat prevention across the environment. Basic Qualifications: Experience: 8+ years of network security, infrastructure security, and/or security engineering. Practical and demonstrated experience working Web Application Firewalls, Network Access Control platforms, IDS/IPS technologies, Firewalls or secure network gateways in platforms by Cisco, Palo Alto, Trend Micro, Gigamon, Trellix, etc. Education: Bachelor's degree in Cybersecurity, Information Technology, Computer science or a related field. Technical Expertise: Advanced level knowledge of networking concepts, including TCP/IP, DNS, DHCP, VLANs, routing, switching, NAT, VPNs, and network segmentation. Experience analyzing logs, packet captures, alerts, and network traffic to troubleshoot issues or investigate security events. Familiarity with common network and application-layer attack techniques. Experience supporting production environments and following change management processes. Strong troubleshooting, documentation, and communication skills. Language Skills: Excellent stakeholder management and communication skills. Proficient in English for effective communication and coordination. Schedule: This is an onsite position requiring presence in the Irvine office five days per week. Some after-hours or weekend work may be required for planned maintenance, incident response, or critical security changes. Preferred Qualifications: Experience: Experience with enterprise WAF policy tuning, bot protection, API protection, or application security rule sets. Experience with NAC deployment models, including 802.1X, MAC authentication bypass, posture assessment, guest access, and device profiling. Familiarity with SIEM, SOAR, vulnerability management, endpoint security, or cloud security tools. Scripting or automation experience using Python, PowerShell, APIs, or infrastructure-as-code tools. Education and Certifications: Masters degree in Cybersecurity, Information Technology, Computer Science or a related discipline is preferred. Industry-recognized credentials such as Security+, Network+, CCNA, CCNP Security, PCNSE, CISSP, GSEC, GCIH, or vendor-specific certifications. Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication. Team Culture: The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed. Base Salary Range: $100,000 - 130,000 Powered by JazzHR FgOdYKZ9EK
09/28/2026
Full time
Job Description Job Description Network Security Engineer II Location - Onsite, Irvine, CA Grade: 8 Company Overview Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis. HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group. At HAEA, we understand that IT is the cornerstone of today's fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations. If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that's driving the future of automotive innovation. What You Will Be Doing The Security Architecture and Engineering team within the CISO organization is seeking a Network Security Engineer II to help design, implement, operate, and continuously improve enterprise network security controls. This role will focus on technologies including Web Application Firewalls, Network Access Control, IDS, and IPS, while partnering closely with the IT Networking team to ensure secure, reliable, and scalable network services. This is an onsite role, five days per week, based in our Irvine office. The key responsibilities of this role are as described below: The Network Security Engineer II will be responsible for supporting and maintaining critical network security platforms across the enterprise. Responsibilities include: Administer, monitor, and optimize Web Application Firewall platforms to protect internet-facing and internal applications. Support and maintain Network Access Control technologies, including device profiling, policy enforcement, segmentation support, and exception handling. Operate and tune Intrusion Detection and Intrusion Prevention Systems to improve detection accuracy and reduce false positives. Partner with the IT Networking team on secure network design, routing, switching, firewall, segmentation, and connectivity initiatives. Assist other Security and IT teams by reviewing security events, alerts, logs, and traffic patterns to identify potential threats or misconfigurations. Assist with the implementation of network security architecture standards, hardening guidelines, and secure configuration baselines. Participate in incident response activities related to network-based threats, unauthorized access, or suspicious traffic. Develop and maintain documentation, including network security diagrams, platform runbooks, standard operating procedures, and change records. Support vulnerability remediation efforts related to network infrastructure, application exposure, and security control gaps. Perform policy reviews and rulebase hygiene for WAF, NAC, IDS, and IPS technologies. Participate in change management activities, including risk assessment, implementation planning, testing, and post-change validation. Collaborate with security operations, infrastructure, application, and compliance teams to support business and regulatory requirements. Assist with lifecycle management for network security tools, including upgrades, patching, certificate management, integrations, and capacity planning. Provide technical recommendations to improve visibility, segmentation, access control, and threat prevention across the environment. Basic Qualifications: Experience: 8+ years of network security, infrastructure security, and/or security engineering. Practical and demonstrated experience working Web Application Firewalls, Network Access Control platforms, IDS/IPS technologies, Firewalls or secure network gateways in platforms by Cisco, Palo Alto, Trend Micro, Gigamon, Trellix, etc. Education: Bachelor's degree in Cybersecurity, Information Technology, Computer science or a related field. Technical Expertise: Advanced level knowledge of networking concepts, including TCP/IP, DNS, DHCP, VLANs, routing, switching, NAT, VPNs, and network segmentation. Experience analyzing logs, packet captures, alerts, and network traffic to troubleshoot issues or investigate security events. Familiarity with common network and application-layer attack techniques. Experience supporting production environments and following change management processes. Strong troubleshooting, documentation, and communication skills. Language Skills: Excellent stakeholder management and communication skills. Proficient in English for effective communication and coordination. Schedule: This is an onsite position requiring presence in the Irvine office five days per week. Some after-hours or weekend work may be required for planned maintenance, incident response, or critical security changes. Preferred Qualifications: Experience: Experience with enterprise WAF policy tuning, bot protection, API protection, or application security rule sets. Experience with NAC deployment models, including 802.1X, MAC authentication bypass, posture assessment, guest access, and device profiling. Familiarity with SIEM, SOAR, vulnerability management, endpoint security, or cloud security tools. Scripting or automation experience using Python, PowerShell, APIs, or infrastructure-as-code tools. Education and Certifications: Masters degree in Cybersecurity, Information Technology, Computer Science or a related discipline is preferred. Industry-recognized credentials such as Security+, Network+, CCNA, CCNP Security, PCNSE, CISSP, GSEC, GCIH, or vendor-specific certifications. Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication. Team Culture: The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed. Base Salary Range: $100,000 - 130,000 Powered by JazzHR FgOdYKZ9EK
Network & Cybersecurity Systems Engineer
Evolv Technologies Inc. Waltham, Massachusetts
Job Description Job Description The Elevator Pitch Are you ready to own the network and cybersecurity backbone of a company that's redefining security technology? Do you thrive at the intersection of network engineering, cybersecurity operations, and compliance-where your work directly reduces risk and keeps the business resilient against an ever-changing threat landscape? Evolv is seeking a Network & Cybersecurity Engineer to design, implement, and defend our network infrastructure and security tooling. You'll be the technical owner of Evolv's network and security posture-from firewalls and access control to identity governance and threat detection-reporting to the Senior Director of Cybersecurity & Technology. This is a pivotal role in maturing Evolv's security program to meet the evolving demands of the business and our growing compliance obligations. You'll partner closely with the Systems Engineer and the rest of the IT team, and serve as the subject matter expert on networking, enterprise cybersecurity, and compliance tooling. If you're energized by staying ahead of emerging threats and building durable, well-governed security controls, this role is for you. Success in the Role: What are performance outcomes over the first 6-12 months you will work toward completing? In the first 30 days, you will: Get to know the IT and security team and the tools/platforms currently in use Start building relationships with key stakeholders across the company, especially R&D and Legal/Compliance Learn Evolv's compliance commitments and ongoing authorization efforts, and how best to support them Gain familiarity with the current network/security toolstack: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, VPN/ZTNA, identity platforms (Okta, Entra ID), SIEM/EDR/DLP tooling, and the MDR relationship Within 3 months, you will: Begin implementing or improving network and security controls that measurably reduce risk Build trust-based relationships with peers in IT and stakeholders across business units Become the established subject matter expert on network security and compliance tooling at Evolv Take ownership of the MDR relationship and escalated detection response By the end of the first year, you will: Be recognized as the trusted subject matter expert across network infrastructure, and security operations Have driven measurable improvements to Evolv's security posture and compliance readiness Successfully supported compliance requirements and audit readiness, partnering closely with Legal/Compliance and R&D Documented network and security architecture, processes, and runbooks that reduce single points of failure Be seen as the go-to resource for network security questions, escalations, and best-practice guidance The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis? Infrastructure, Security & Compliance: Design, implement, and maintain network infrastructure: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, and VPN/ZTNA solutions Administer identity and access: Okta/Entra ID, Conditional Access policies, MFA enforcement, identity lifecycle management, and IGA Own security tooling and controls: SIEM, EDR, DLP, and vulnerability management, aligned to CIS Controls, NIST CSF, and other relevant compliance frameworks Manage the MDR relationship and respond to escalated detections Drive the IT process and policy redesign required to meet current compliance requirements, and to support additional frameworks as those efforts come online, in partnership with Legal/Compliance Harden AWS/Azure environments from a security perspective: IAM least-privilege, VPC/network security, Azure Policy Provide front-line escalation support and mentoring to IT teammates; maintain runbooks and documentation Assess technology and network risk across the company and recommend remediations Leadership, Team Structure & Culture You will join the IT organization as a direct report to the Senior Director of Cybersecurity & Technology, working alongside a Systems Engineer peer who owns day-to-day systems and endpoint operations. This is a hands-on, collaborative team that takes security and operational excellence seriously. This is a senior individual contributor role focused on deep technical impact-your job is to own and mature Evolv's network security and cybersecurity posture through the systems, controls, and automation you build. You'll have meaningful autonomy over how you approach problems and are actively encouraged to bring creative solutions, identify improvement opportunities, and advocate for better ways of working. You'll work alongside teammates who share your drive for continuous improvement, and you'll have a manager who values initiative, trusts the team to execute, and wants to hear your ideas. Where is the role located? This role is based out of Evolv HQ in Waltham, Massachusetts. This is a hybrid role with an expectation of 3 days per week on-site. Fully remote candidates will not be considered. Compensation and Transparency Statement The base salary range for this full-time position is $102,000-$166,000. In addition to base salary, this role offers a competitive target bonus, equity, and a comprehensive benefits package. This range reflects our commitment to pay transparency and equity, in alignment with applicable state laws. Our compensation ranges are determined based on factors such as role, level, location, market benchmarks, and internal equity. The posted range represents the good-faith estimate of what we expect to pay for this role across U.S. locations. Actual compensation within the range will be based on the candidate's skills, experience, education, and geographic location. In accordance with state and local pay transparency laws-including those in California, Colorado, Massachusetts, New York, New Jersey, and others-we disclose salary ranges in all job postings and provide additional information upon request. During the hiring process, your recruiter will share: •The specific salary range for your preferred location •A general overview of our benefits and equity offerings •Insights into how compensation decisions are made, including factors that influence starting pay We are committed to fair pay practices, and we regularly review our compensation programs to ensure they are competitive, equitable, and aligned with our values. Benefits At Evolv, we're on a mission to help make public spaces safer through innovative security technology. So, we're looking for future teammates who embody our values, people who: Do the right thing, always; Put people first' Own it; Win together; and continue to Be bold, stay curious. Our Benefits Include : Equity as part of your total compensation package Medical, dental, and vision insurance Health Savings Account (HSA) A 401(k) plan (and 2% company match) Flexible Paid Time Off (PTO)- take the time you need to recharge, with manager approval and business needs in mind Quarterly stipend for perks and benefits that matter most to you Tuition reimbursement to support your ongoing learning and development Subscription to Calm Evolv Technology ("Evolv") is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We welcome and encourage diversity in the workplace, and all employment decisions are made without regard to race, color, religion, national, social or ethnic origin, sex (including pregnancy), age, disability, HIV Status, sexual orientation, gender identity and/or expression, veteran status, or any other status protected by law in the locations where we operate. Evolv will not tolerate discrimination or harassment based on any of these characteristics. Evolv is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. If you need a reasonable accommodation as part of the job application process, please connect with us at . Evolv participates in E-verify for all employees after the completion of Form I-9.
09/28/2026
Full time
Job Description Job Description The Elevator Pitch Are you ready to own the network and cybersecurity backbone of a company that's redefining security technology? Do you thrive at the intersection of network engineering, cybersecurity operations, and compliance-where your work directly reduces risk and keeps the business resilient against an ever-changing threat landscape? Evolv is seeking a Network & Cybersecurity Engineer to design, implement, and defend our network infrastructure and security tooling. You'll be the technical owner of Evolv's network and security posture-from firewalls and access control to identity governance and threat detection-reporting to the Senior Director of Cybersecurity & Technology. This is a pivotal role in maturing Evolv's security program to meet the evolving demands of the business and our growing compliance obligations. You'll partner closely with the Systems Engineer and the rest of the IT team, and serve as the subject matter expert on networking, enterprise cybersecurity, and compliance tooling. If you're energized by staying ahead of emerging threats and building durable, well-governed security controls, this role is for you. Success in the Role: What are performance outcomes over the first 6-12 months you will work toward completing? In the first 30 days, you will: Get to know the IT and security team and the tools/platforms currently in use Start building relationships with key stakeholders across the company, especially R&D and Legal/Compliance Learn Evolv's compliance commitments and ongoing authorization efforts, and how best to support them Gain familiarity with the current network/security toolstack: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, VPN/ZTNA, identity platforms (Okta, Entra ID), SIEM/EDR/DLP tooling, and the MDR relationship Within 3 months, you will: Begin implementing or improving network and security controls that measurably reduce risk Build trust-based relationships with peers in IT and stakeholders across business units Become the established subject matter expert on network security and compliance tooling at Evolv Take ownership of the MDR relationship and escalated detection response By the end of the first year, you will: Be recognized as the trusted subject matter expert across network infrastructure, and security operations Have driven measurable improvements to Evolv's security posture and compliance readiness Successfully supported compliance requirements and audit readiness, partnering closely with Legal/Compliance and R&D Documented network and security architecture, processes, and runbooks that reduce single points of failure Be seen as the go-to resource for network security questions, escalations, and best-practice guidance The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis? Infrastructure, Security & Compliance: Design, implement, and maintain network infrastructure: firewalls (Palo Alto), switching (Cisco/Meraki), NAC, and VPN/ZTNA solutions Administer identity and access: Okta/Entra ID, Conditional Access policies, MFA enforcement, identity lifecycle management, and IGA Own security tooling and controls: SIEM, EDR, DLP, and vulnerability management, aligned to CIS Controls, NIST CSF, and other relevant compliance frameworks Manage the MDR relationship and respond to escalated detections Drive the IT process and policy redesign required to meet current compliance requirements, and to support additional frameworks as those efforts come online, in partnership with Legal/Compliance Harden AWS/Azure environments from a security perspective: IAM least-privilege, VPC/network security, Azure Policy Provide front-line escalation support and mentoring to IT teammates; maintain runbooks and documentation Assess technology and network risk across the company and recommend remediations Leadership, Team Structure & Culture You will join the IT organization as a direct report to the Senior Director of Cybersecurity & Technology, working alongside a Systems Engineer peer who owns day-to-day systems and endpoint operations. This is a hands-on, collaborative team that takes security and operational excellence seriously. This is a senior individual contributor role focused on deep technical impact-your job is to own and mature Evolv's network security and cybersecurity posture through the systems, controls, and automation you build. You'll have meaningful autonomy over how you approach problems and are actively encouraged to bring creative solutions, identify improvement opportunities, and advocate for better ways of working. You'll work alongside teammates who share your drive for continuous improvement, and you'll have a manager who values initiative, trusts the team to execute, and wants to hear your ideas. Where is the role located? This role is based out of Evolv HQ in Waltham, Massachusetts. This is a hybrid role with an expectation of 3 days per week on-site. Fully remote candidates will not be considered. Compensation and Transparency Statement The base salary range for this full-time position is $102,000-$166,000. In addition to base salary, this role offers a competitive target bonus, equity, and a comprehensive benefits package. This range reflects our commitment to pay transparency and equity, in alignment with applicable state laws. Our compensation ranges are determined based on factors such as role, level, location, market benchmarks, and internal equity. The posted range represents the good-faith estimate of what we expect to pay for this role across U.S. locations. Actual compensation within the range will be based on the candidate's skills, experience, education, and geographic location. In accordance with state and local pay transparency laws-including those in California, Colorado, Massachusetts, New York, New Jersey, and others-we disclose salary ranges in all job postings and provide additional information upon request. During the hiring process, your recruiter will share: •The specific salary range for your preferred location •A general overview of our benefits and equity offerings •Insights into how compensation decisions are made, including factors that influence starting pay We are committed to fair pay practices, and we regularly review our compensation programs to ensure they are competitive, equitable, and aligned with our values. Benefits At Evolv, we're on a mission to help make public spaces safer through innovative security technology. So, we're looking for future teammates who embody our values, people who: Do the right thing, always; Put people first' Own it; Win together; and continue to Be bold, stay curious. Our Benefits Include : Equity as part of your total compensation package Medical, dental, and vision insurance Health Savings Account (HSA) A 401(k) plan (and 2% company match) Flexible Paid Time Off (PTO)- take the time you need to recharge, with manager approval and business needs in mind Quarterly stipend for perks and benefits that matter most to you Tuition reimbursement to support your ongoing learning and development Subscription to Calm Evolv Technology ("Evolv") is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We welcome and encourage diversity in the workplace, and all employment decisions are made without regard to race, color, religion, national, social or ethnic origin, sex (including pregnancy), age, disability, HIV Status, sexual orientation, gender identity and/or expression, veteran status, or any other status protected by law in the locations where we operate. Evolv will not tolerate discrimination or harassment based on any of these characteristics. Evolv is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. If you need a reasonable accommodation as part of the job application process, please connect with us at . Evolv participates in E-verify for all employees after the completion of Form I-9.
Network Engineer/Architect
Career Listings Fort Belvoir, Virginia
Job Description Job Description Benefits: 401(k) 401(k) matching Dental insurance Health insurance Paid time off Profit sharing Training & development Tuition assistance Vision insurance Job Description SarelaTech is seeking an experienced Network Engineer (SME) to join our Integrated Information Technology Support Services (I3TS) team, who will support an extensive digital modernization program critical to Defense Threat Reduction Agency (DTRA) in Fort Belvoir, VA. The Network Engineer will work closely with the Leidos and Government technical leadership team to help drive innovation, growth, and efficiencies within the I3TS portfolio. Primary Responsibilities: The Commercial Solutions for Classified (CSfC) Network & Security Engineer will architect and operate secure, dual-layer cryptographic boundaries utilizing Cisco and Aruba IPsec/SSL VPNs and dynamic routing (BGP/OSPF) in strict compliance with NSA Capability Packages. In this role, you will author and tune Palo Alto NGFW security policies and IDS/IPS threat prevention signatures, implement enterprise network access control and 802.1X policies via Cisco ISE and Aruba ClearPass, integrate enterprise PKI/OCSP services and hardened NTP, and generate key engineering artifacts required for NSA CSfC PMO registration and compliance auditing. Architect, deploy, and maintain CSfC infrastructure operating within Black/Gray/Red networks. Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Mobile Access (MA), Multi-Sight (MSC) Capability Packages, with Campus Wireless LAN (WLAN) experience a bonus. Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Understanding of NIAP approved list and monitors for changes Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Capability Packages (MSC, MA, and CWLAN). Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Implement enterprise routing protocols (BGP, OSPF) alongside redundant outer and inner IPsec VPN tunnels across Cisco and Aruba appliances. Configure remote access SSL VPNs and ensure end-to-end traffic separation. Author, optimize, and audit Palo Alto Next-Generation Firewall (NGFW) security policies, App-ID, User-ID, and URL filtering. Configure and tune Palo Alto IDS/IPS threat signatures, anti-spyware, and vulnerability protection. Architect and manage Cisco Identity Services Engine (ISE) and Aruba ClearPass policy managers for 802.1X network access control, RADIUS/TACACS+ administration, posture assessment, and endpoint profiling. Integrate enterprise Public Key Infrastructure (PKI) components, managing X.509 certificate lifecycles, Certificate Authorities (CAs), CRL/OCSP validation, and hardened, authenticated Network Time Protocol (NTP) infrastructure. Prepare CSfC compliance artifacts, Key Management Plans (KMPs), Continuous Monitoring Plans (CMPs), and registration packages for NSA CSfC PMO submission. Required Qualifications: Bachelor's degree or higher in Computer Science, Information Technology, Engineering, Engineering Management, Management Information Systems, or related STEM degree program, and 12-15 years of relevant experience. Specific experience, education and training may be considered in lieu of degree. 12+ years of progressive network engineering experience within DoD/DoW, federal, or defense contractor enterprise environments Active TS/SCI Clearance Active DoD 8570.01-M / DoD 8140 IAT Level II or III baseline certification (e.g., Security+ CE, CySA+, CASP+, or CISSP). Active Computing Environment certification, including one or more of: Cisco CCNA, CCNP, Aruba ACSA or ACSP Proven expertise configuring Cisco (IOS-XE/ASR) and Aruba (Mobility Controllers/Gateways) IPsec and SSL VPNs, including IKEv2, Suite B/CNSA cryptography, and dynamic routing (BGP, OSPF). Demonstrated engineering experience with Palo Alto Networks firewalls (PAN-OS), Panorama central management, and advanced IDS/IPS inspection profiles. Hands-on deployment experience with both Cisco ISE and/or Aruba ClearPass implementing 802.1X, EAP-TLS authentication, and role-based access policies. Strong working knowledge of X.509 certificates, CA hierarchy integration, certificate revocation lists (CRLs), OCSP, and secure NTP stratum synchronization. Direct prior experience preparing and successfully registering NSA CSfC Capability Package solutions (Mobile Access, Multi-Site Connectivity, or Campus WLAN). Deep understanding of Commercial National Security Algorithm (CNSA) Suite requirements, post-quantum readiness considerations, and hardware security modules (HSMs). Familiarity with Ansible, for automating network device configuration backups, policy compliance checks, and certificate rotations. Certified in any of the following - Cisco CCNP/CCIE (Security or Enterprise), Palo Alto PCNSE, Aruba Certified ClearPass Expert (ACCX), or Aruba Certified Mobility Expert (ACMX).
09/28/2026
Full time
Job Description Job Description Benefits: 401(k) 401(k) matching Dental insurance Health insurance Paid time off Profit sharing Training & development Tuition assistance Vision insurance Job Description SarelaTech is seeking an experienced Network Engineer (SME) to join our Integrated Information Technology Support Services (I3TS) team, who will support an extensive digital modernization program critical to Defense Threat Reduction Agency (DTRA) in Fort Belvoir, VA. The Network Engineer will work closely with the Leidos and Government technical leadership team to help drive innovation, growth, and efficiencies within the I3TS portfolio. Primary Responsibilities: The Commercial Solutions for Classified (CSfC) Network & Security Engineer will architect and operate secure, dual-layer cryptographic boundaries utilizing Cisco and Aruba IPsec/SSL VPNs and dynamic routing (BGP/OSPF) in strict compliance with NSA Capability Packages. In this role, you will author and tune Palo Alto NGFW security policies and IDS/IPS threat prevention signatures, implement enterprise network access control and 802.1X policies via Cisco ISE and Aruba ClearPass, integrate enterprise PKI/OCSP services and hardened NTP, and generate key engineering artifacts required for NSA CSfC PMO registration and compliance auditing. Architect, deploy, and maintain CSfC infrastructure operating within Black/Gray/Red networks. Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Mobile Access (MA), Multi-Sight (MSC) Capability Packages, with Campus Wireless LAN (WLAN) experience a bonus. Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Understanding of NIAP approved list and monitors for changes Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Capability Packages (MSC, MA, and CWLAN). Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Implement enterprise routing protocols (BGP, OSPF) alongside redundant outer and inner IPsec VPN tunnels across Cisco and Aruba appliances. Configure remote access SSL VPNs and ensure end-to-end traffic separation. Author, optimize, and audit Palo Alto Next-Generation Firewall (NGFW) security policies, App-ID, User-ID, and URL filtering. Configure and tune Palo Alto IDS/IPS threat signatures, anti-spyware, and vulnerability protection. Architect and manage Cisco Identity Services Engine (ISE) and Aruba ClearPass policy managers for 802.1X network access control, RADIUS/TACACS+ administration, posture assessment, and endpoint profiling. Integrate enterprise Public Key Infrastructure (PKI) components, managing X.509 certificate lifecycles, Certificate Authorities (CAs), CRL/OCSP validation, and hardened, authenticated Network Time Protocol (NTP) infrastructure. Prepare CSfC compliance artifacts, Key Management Plans (KMPs), Continuous Monitoring Plans (CMPs), and registration packages for NSA CSfC PMO submission. Required Qualifications: Bachelor's degree or higher in Computer Science, Information Technology, Engineering, Engineering Management, Management Information Systems, or related STEM degree program, and 12-15 years of relevant experience. Specific experience, education and training may be considered in lieu of degree. 12+ years of progressive network engineering experience within DoD/DoW, federal, or defense contractor enterprise environments Active TS/SCI Clearance Active DoD 8570.01-M / DoD 8140 IAT Level II or III baseline certification (e.g., Security+ CE, CySA+, CASP+, or CISSP). Active Computing Environment certification, including one or more of: Cisco CCNA, CCNP, Aruba ACSA or ACSP Proven expertise configuring Cisco (IOS-XE/ASR) and Aruba (Mobility Controllers/Gateways) IPsec and SSL VPNs, including IKEv2, Suite B/CNSA cryptography, and dynamic routing (BGP, OSPF). Demonstrated engineering experience with Palo Alto Networks firewalls (PAN-OS), Panorama central management, and advanced IDS/IPS inspection profiles. Hands-on deployment experience with both Cisco ISE and/or Aruba ClearPass implementing 802.1X, EAP-TLS authentication, and role-based access policies. Strong working knowledge of X.509 certificates, CA hierarchy integration, certificate revocation lists (CRLs), OCSP, and secure NTP stratum synchronization. Direct prior experience preparing and successfully registering NSA CSfC Capability Package solutions (Mobile Access, Multi-Site Connectivity, or Campus WLAN). Deep understanding of Commercial National Security Algorithm (CNSA) Suite requirements, post-quantum readiness considerations, and hardware security modules (HSMs). Familiarity with Ansible, for automating network device configuration backups, policy compliance checks, and certificate rotations. Certified in any of the following - Cisco CCNP/CCIE (Security or Enterprise), Palo Alto PCNSE, Aruba Certified ClearPass Expert (ACCX), or Aruba Certified Mobility Expert (ACMX).
Senior Network Security Engineer
Ignite IT
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
09/28/2026
Full time
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
Principal Artificial Intelligence/Machine Learning (AI/ML) Engineer
GliaCell Technologies Annapolis Junction, Maryland
Job Description Job Description An active or rein-statable TS/SCI with Polygraph security clearance is REQUIRED. Please do not apply if you currently do not possess this level of clearance. Are you an Principal AI/ML Engineer who is ready for a new challenge that will launch your career to the next level? Tired of being treated like a company drone? Tired of promised adventures during the hiring phase, then dropped off on a remote contract and never seen or heard from the mothership again? Our engineers were certainly tired of the same. At GliaCell our slogan is "We make It happen". We will immerse you in the latest technologies. We will develop and support your own personalized training program to continue your individual growth. We will provide you with work that matters with our mission focused customers, and surround you with a family of brilliant engineers. Culture isn't something you need to talk about if it just exists. If this sounds interesting to you, then we'd like to have a discussion regarding your next adventure! If you want to be a drone, this isn't the place for you. We Make It Happen! GliaCell Technologies focuses on Software & System Engineering in Enterprise and Cyber Security solution spaces. We excel at delivering stable and reliable software solutions using Agile Software Development principles. These provide us the capability to deliver a quick turn-around using interactive applications and the integration of industry standard software stacks. GliaCell's Enterprise capabilities include Full-Stack Application Development, Big Data, Cloud Technologies, Analytics, Machine Learning, AI, and DevOps Containerization. We also provide customer solutions in the areas of CND, CNE, and CNO by providing our customers with assessments and solutions in Threat Mitigation, Vulnerability Exposure, Penetration Testing, Threat Hunting, and Preventing Advanced Persistent Threat. We Offer: Long term job security Competitive salaries & bonus opportunities Challenging work you are passionate about Ability to work with some amazingly talented people Job Description: GliaCell is seeking a Principal AI/ML Engineer on one of our subcontracts. This is a full-time position offering the opportunity to support a U.S. Government customer. The mission is to provide technical expertise that assists in sustaining critical mission-related software and systems to a large government contract. Key Requirements: To be considered for this position you must have the following: U.S. Citizenship 10+ years experience in applied machine learning in programs and contracts of similar scope, type, and complexity is required. A Master's or Ph.D. degree in advanced math, artificial intelligence, data science, computer science or deep learning from an accredited college or university. 7 additional years of machine learning experience with a relevant Bachelor's degree may be substituted for a Master's degree. Demonstrated abilities in software engineering and AI/ML model test and evaluation. Works well independently as well as on a team. Strong communication skills. Key Skills: You will design, create, test, and productize AI/ML algorithms to solve business challenges. The AI/ML models you create should be capable of learning and making predictions as defined by the business logic developed to meet customer requirements. Should be proficient in all aspects of model architecture, data pipeline interaction, and metrics application, interpretation, and presentation. Needs familiarity with foundational concepts of application development, infrastructure management, data engineering, and data governance. Need an understanding of training, retraining, deploying, scheduling, monitoring, and improving models through iterative user and system feedback, the AI/ML Engineer designs and creates scalable solutions for optimal performance. You may be responsible for leading geographically diverse teams and will often serve as a primary POC for AI-related matters, so must have exceptional analytical, problem-solving and communication skills. Expert knowledge of multiple programming languages, e.g. Python, Java, C, R, a plus. Location: Annapolis Junction, MD / Partial Telework (up to 16 hours per week) may be available for this position based on mission needs/available tasking at the discretion of leadership, after the individual has become fully acclimated to the duties and responsibilities of the position and has completed the necessary telework training. Salary Range: The salary range for this full-time position is $200,000 to $280,000. Our salary ranges are determined by position, level, skills, professional experience, relevant education and certifications. Your recruiter can share more about the specific salary range for your preferred position during the hiring process. Benefits: CareFirst Medical Coverage for Employee and Dependents Guardian Dental and Vision Coverage for Employee and Dependents Up to 25 Days of Paid Time Off Up to 40 hours of PTO Carryover 11 Federal Government Holidays Work From Home Opportunities 401K Company Contribution, Fully Vested Day 1 Discretionary, Certification, and Sign-On Bonus Potential Employee Referral Bonus Program Annual Professional Development 100% Premium Covered for Life & Disability Insurances Additional Voluntary Life Insurance Coverage Available Employee Assistance Program Travel Protection Program Financial Planning Assistance Bereavement and Jury Duty Leave Monthly Team and Family Events Technology Budget Global Entry Annual Swag Budget Learn more about GliaCell Technologies: To apply for this position, respond to this job posting and attach an updated resume for us to review. GliaCell Technologies, LLC is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. Powered by JazzHR cDeBOm5dlB
09/28/2026
Full time
Job Description Job Description An active or rein-statable TS/SCI with Polygraph security clearance is REQUIRED. Please do not apply if you currently do not possess this level of clearance. Are you an Principal AI/ML Engineer who is ready for a new challenge that will launch your career to the next level? Tired of being treated like a company drone? Tired of promised adventures during the hiring phase, then dropped off on a remote contract and never seen or heard from the mothership again? Our engineers were certainly tired of the same. At GliaCell our slogan is "We make It happen". We will immerse you in the latest technologies. We will develop and support your own personalized training program to continue your individual growth. We will provide you with work that matters with our mission focused customers, and surround you with a family of brilliant engineers. Culture isn't something you need to talk about if it just exists. If this sounds interesting to you, then we'd like to have a discussion regarding your next adventure! If you want to be a drone, this isn't the place for you. We Make It Happen! GliaCell Technologies focuses on Software & System Engineering in Enterprise and Cyber Security solution spaces. We excel at delivering stable and reliable software solutions using Agile Software Development principles. These provide us the capability to deliver a quick turn-around using interactive applications and the integration of industry standard software stacks. GliaCell's Enterprise capabilities include Full-Stack Application Development, Big Data, Cloud Technologies, Analytics, Machine Learning, AI, and DevOps Containerization. We also provide customer solutions in the areas of CND, CNE, and CNO by providing our customers with assessments and solutions in Threat Mitigation, Vulnerability Exposure, Penetration Testing, Threat Hunting, and Preventing Advanced Persistent Threat. We Offer: Long term job security Competitive salaries & bonus opportunities Challenging work you are passionate about Ability to work with some amazingly talented people Job Description: GliaCell is seeking a Principal AI/ML Engineer on one of our subcontracts. This is a full-time position offering the opportunity to support a U.S. Government customer. The mission is to provide technical expertise that assists in sustaining critical mission-related software and systems to a large government contract. Key Requirements: To be considered for this position you must have the following: U.S. Citizenship 10+ years experience in applied machine learning in programs and contracts of similar scope, type, and complexity is required. A Master's or Ph.D. degree in advanced math, artificial intelligence, data science, computer science or deep learning from an accredited college or university. 7 additional years of machine learning experience with a relevant Bachelor's degree may be substituted for a Master's degree. Demonstrated abilities in software engineering and AI/ML model test and evaluation. Works well independently as well as on a team. Strong communication skills. Key Skills: You will design, create, test, and productize AI/ML algorithms to solve business challenges. The AI/ML models you create should be capable of learning and making predictions as defined by the business logic developed to meet customer requirements. Should be proficient in all aspects of model architecture, data pipeline interaction, and metrics application, interpretation, and presentation. Needs familiarity with foundational concepts of application development, infrastructure management, data engineering, and data governance. Need an understanding of training, retraining, deploying, scheduling, monitoring, and improving models through iterative user and system feedback, the AI/ML Engineer designs and creates scalable solutions for optimal performance. You may be responsible for leading geographically diverse teams and will often serve as a primary POC for AI-related matters, so must have exceptional analytical, problem-solving and communication skills. Expert knowledge of multiple programming languages, e.g. Python, Java, C, R, a plus. Location: Annapolis Junction, MD / Partial Telework (up to 16 hours per week) may be available for this position based on mission needs/available tasking at the discretion of leadership, after the individual has become fully acclimated to the duties and responsibilities of the position and has completed the necessary telework training. Salary Range: The salary range for this full-time position is $200,000 to $280,000. Our salary ranges are determined by position, level, skills, professional experience, relevant education and certifications. Your recruiter can share more about the specific salary range for your preferred position during the hiring process. Benefits: CareFirst Medical Coverage for Employee and Dependents Guardian Dental and Vision Coverage for Employee and Dependents Up to 25 Days of Paid Time Off Up to 40 hours of PTO Carryover 11 Federal Government Holidays Work From Home Opportunities 401K Company Contribution, Fully Vested Day 1 Discretionary, Certification, and Sign-On Bonus Potential Employee Referral Bonus Program Annual Professional Development 100% Premium Covered for Life & Disability Insurances Additional Voluntary Life Insurance Coverage Available Employee Assistance Program Travel Protection Program Financial Planning Assistance Bereavement and Jury Duty Leave Monthly Team and Family Events Technology Budget Global Entry Annual Swag Budget Learn more about GliaCell Technologies: To apply for this position, respond to this job posting and attach an updated resume for us to review. GliaCell Technologies, LLC is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. Powered by JazzHR cDeBOm5dlB
Security Control Assessor
Omniscius Consulting Arlington, Virginia
Job Description Job Description Job Title: Security Control Assessor Location: On Site in Arlington, VA Department: Cyber Security Services Reports To: Management FLSA Status: Full Time/Non-exempt Clearance: Top Secret clearance with the ability to obtain SCI with CI Polygraph Job Purpose: The security control assessor (SCAs) supports a critical, objective role to evaluate the effectiveness of implemented controls in mitigating security risks. The SCA will support a critical mission within the intelligence community. In the role as a SCA, you are expected to use automated scanning tools, manual techniques, and specialized testing methodologies to identify weaknesses and vulnerabilities. The SCA is expected to be a collaborative member of the RMF program of the organization, to provide intelligent input to system security architectures in order to align with RMF principles and guidelines. This includes ensuring to guide the RMF process so that security controls are integrated seamlessly into system designs to provide comprehensive protection against threats and vulnerabilities. Duties & Responsibilities: The SCA's specific duties include: Advise the Information System Owner (ISO) concerning the impact levels for Confidentiality, Integrity, and Availability for the information on systems. Ensure security assessments are completed for each IS. Initiate a POA&M with identified weaknesses and suspense dates for each IS based on findings and recommendations from the SAR. Evaluate security assessment documentation and provide written recommendations for security authorization to the CISO and AO. Assess proposed changes to Information Systems, their environment of operation, and mission needs that could affect system authorization. Serve as a cybersecurity technical advisor to the CISO and AO under their purview. Be integral to the development of the monitoring strategy. The system-level continuous monitoring strategy must conform to all applicable published DoD enterprise-level or DoD Component-level continuous monitoring strategies. Determine and document in the SAR a risk level for every noncompliant security control in the system baseline. Determine and document in the SAR an aggregate level of risk to the system and identify the key drivers for the assessment. The SCA's risk assessment considers threats, vulnerabilities, and potential impacts as well as existing and planned risk mitigation. Develop the continuous monitoring plan specific to the information system. The SCA is responsible for the RMF deliverables associated with Step 4 of DOD and IC RMF Policies for assigned systems. This includes, but is not limited to: Security Assessment Plans tailored to specific systems control requirements Security control assessment input, which includes narratives for the review of controls and artifacts Security Assessment Reports ATO recommendations or ATO with Condition Memorandums Conduct initial remediation actions once a security assessment has been completed to ensure proper hand off to the ISSM and ISSOs. Assessment of selected controls IAW continuous monitoring strategy The SCA is expected to have additional duties as assigned in support of corporate cyber security services. Additional details are reviewed in accordance with company policies. Requirements Required Skills & Experience: Strong knowledge of Risk Management Framework (RMF) 800-37 and continuous monitoring 800-137 Expert knowledge and hands-on experience with FISMA Systems, NIST 800-series guidelines, FIPS, Security Assessment & Authorization (SA&A) requirements and processes, Continuous Monitoring Framework experience and its tools, Plan of Action & Milestones (POA&M) policies, and vulnerability/patch management, risk management, project management, proficient with Microsoft products - Word, Excel, PowerPoint. Proficient with vulnerability and scanning tools and well-versed in interpreting risk posture resulting from assessment reports. Experience in project management and tracking, and the Microsoft suite of office products Experience of assessing cloud-based security authorizations (FedRamp, AWS & Azure) as well as the NIST control responsibilities Experience with SAP/JSIG Expert with documenting and or reviewing of security materials such as; system security plans (SSP), Security Assessment Report (SAR), and Security Assessment Plan (SAP), and other documents per NIST 800 guidelines. Experience supporting cloud-based security authorizations (FedRamp, AWS, & Azure) Experience creating Security Assessment Plans, Security Assessment Reports, and Executive-level briefings Qualifications: Bachelor's Degree in Computer Science or a related technical discipline Master's Degree preferred. Minimum 6-10 years of experience. Must currently possess an active Top Secret clearance with the ability to obtain SCI with CI Polygraph. DOD 8140 IAM Level II (CAP, CASP, CISM, CISSP, GSLC, CCISO) is required Systems Security Engineering background preferred. Effective communication skills to collaborate with cross-functional teams and stakeholders on implementing security measures organization-wide. Strong analytical skills for identifying system vulnerabilities and documenting control remediation recommendations through collaboration on System Impact Analysis and Documented Risk Acceptance. Detail-oriented with the ability to manage multiple tasks and prioritize effectively. Comprehensive knowledge of RMF activities at a senior level (ability to articulate to Executive audiences preferred). Familiarity with federal regulatory requirements, contractual obligations, and industry standards related to information security. Evaluate adherence to standards such as Privacy, GDPR, and HIPAA Powered by JazzHR I48iVzr4Ds
09/26/2026
Full time
Job Description Job Description Job Title: Security Control Assessor Location: On Site in Arlington, VA Department: Cyber Security Services Reports To: Management FLSA Status: Full Time/Non-exempt Clearance: Top Secret clearance with the ability to obtain SCI with CI Polygraph Job Purpose: The security control assessor (SCAs) supports a critical, objective role to evaluate the effectiveness of implemented controls in mitigating security risks. The SCA will support a critical mission within the intelligence community. In the role as a SCA, you are expected to use automated scanning tools, manual techniques, and specialized testing methodologies to identify weaknesses and vulnerabilities. The SCA is expected to be a collaborative member of the RMF program of the organization, to provide intelligent input to system security architectures in order to align with RMF principles and guidelines. This includes ensuring to guide the RMF process so that security controls are integrated seamlessly into system designs to provide comprehensive protection against threats and vulnerabilities. Duties & Responsibilities: The SCA's specific duties include: Advise the Information System Owner (ISO) concerning the impact levels for Confidentiality, Integrity, and Availability for the information on systems. Ensure security assessments are completed for each IS. Initiate a POA&M with identified weaknesses and suspense dates for each IS based on findings and recommendations from the SAR. Evaluate security assessment documentation and provide written recommendations for security authorization to the CISO and AO. Assess proposed changes to Information Systems, their environment of operation, and mission needs that could affect system authorization. Serve as a cybersecurity technical advisor to the CISO and AO under their purview. Be integral to the development of the monitoring strategy. The system-level continuous monitoring strategy must conform to all applicable published DoD enterprise-level or DoD Component-level continuous monitoring strategies. Determine and document in the SAR a risk level for every noncompliant security control in the system baseline. Determine and document in the SAR an aggregate level of risk to the system and identify the key drivers for the assessment. The SCA's risk assessment considers threats, vulnerabilities, and potential impacts as well as existing and planned risk mitigation. Develop the continuous monitoring plan specific to the information system. The SCA is responsible for the RMF deliverables associated with Step 4 of DOD and IC RMF Policies for assigned systems. This includes, but is not limited to: Security Assessment Plans tailored to specific systems control requirements Security control assessment input, which includes narratives for the review of controls and artifacts Security Assessment Reports ATO recommendations or ATO with Condition Memorandums Conduct initial remediation actions once a security assessment has been completed to ensure proper hand off to the ISSM and ISSOs. Assessment of selected controls IAW continuous monitoring strategy The SCA is expected to have additional duties as assigned in support of corporate cyber security services. Additional details are reviewed in accordance with company policies. Requirements Required Skills & Experience: Strong knowledge of Risk Management Framework (RMF) 800-37 and continuous monitoring 800-137 Expert knowledge and hands-on experience with FISMA Systems, NIST 800-series guidelines, FIPS, Security Assessment & Authorization (SA&A) requirements and processes, Continuous Monitoring Framework experience and its tools, Plan of Action & Milestones (POA&M) policies, and vulnerability/patch management, risk management, project management, proficient with Microsoft products - Word, Excel, PowerPoint. Proficient with vulnerability and scanning tools and well-versed in interpreting risk posture resulting from assessment reports. Experience in project management and tracking, and the Microsoft suite of office products Experience of assessing cloud-based security authorizations (FedRamp, AWS & Azure) as well as the NIST control responsibilities Experience with SAP/JSIG Expert with documenting and or reviewing of security materials such as; system security plans (SSP), Security Assessment Report (SAR), and Security Assessment Plan (SAP), and other documents per NIST 800 guidelines. Experience supporting cloud-based security authorizations (FedRamp, AWS, & Azure) Experience creating Security Assessment Plans, Security Assessment Reports, and Executive-level briefings Qualifications: Bachelor's Degree in Computer Science or a related technical discipline Master's Degree preferred. Minimum 6-10 years of experience. Must currently possess an active Top Secret clearance with the ability to obtain SCI with CI Polygraph. DOD 8140 IAM Level II (CAP, CASP, CISM, CISSP, GSLC, CCISO) is required Systems Security Engineering background preferred. Effective communication skills to collaborate with cross-functional teams and stakeholders on implementing security measures organization-wide. Strong analytical skills for identifying system vulnerabilities and documenting control remediation recommendations through collaboration on System Impact Analysis and Documented Risk Acceptance. Detail-oriented with the ability to manage multiple tasks and prioritize effectively. Comprehensive knowledge of RMF activities at a senior level (ability to articulate to Executive audiences preferred). Familiarity with federal regulatory requirements, contractual obligations, and industry standards related to information security. Evaluate adherence to standards such as Privacy, GDPR, and HIPAA Powered by JazzHR I48iVzr4Ds
ForeScout Engineer - Active TS/SCI With CI Poly
ENS Solutions, LLC Reston, Virginia
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/26/2026
Full time
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
ForeScout Engineer - Active TS/SCI With CI Poly
ENS Solutions, LLC Washington, Washington DC
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/26/2026
Full time
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Security Control Assessor
Apavo Corporation Arlington, Virginia
Job Description Job Description Description: Job Title: Security Control Assessor Location: On Site in Arlington, VA Department: Cyber Security Services Reports To: Management FLSA Status: Full Time/Non-exempt Job Purpose: The security control assessor (SCAs) supports a critical, objective role to evaluate the effectiveness of implemented controls in mitigating security risks. The SCA will support a critical mission within the intelligence community. In the role as a SCA, you are expected to use automated scanning tools, manual techniques, and specialized testing methodologies to identify weaknesses and vulnerabilities. The SCA is expected to be a collaborative member of the RMF program of the organization, to provide intelligent input to system security architectures in order to align with RMF principles and guidelines. This includes ensuring to guide the RMF process so that security controls are integrated seamlessly into system designs to provide comprehensive protection against threats and vulnerabilities. Duties & Responsibilities: The SCA's specific duties include: Advise the Information System Owner (ISO) concerning the impact levels for Confidentiality, Integrity, and Availability for the information on systems. Ensure security assessments are completed for each IS. Initiate a POA&M with identified weaknesses and suspense dates for each IS based on findings and recommendations from the SAR. Evaluate security assessment documentation and provide written recommendations for security authorization to the CISO and AO. Assess proposed changes to Information Systems, their environment of operation, and mission needs that could affect system authorization. Serve as a cybersecurity technical advisor to the CISO and AO under their purview. Be integral to the development of the monitoring strategy. The system-level continuous monitoring strategy must conform to all applicable published DoD enterprise-level or DoD Component-level continuous monitoring strategies. Determine and document in the SAR a risk level for every noncompliant security control in the system baseline. Determine and document in the SAR an aggregate level of risk to the system and identify the key drivers for the assessment. The SCA's risk assessment considers threats, vulnerabilities, and potential impacts as well as existing and planned risk mitigation. Develop the continuous monitoring plan specific to the information system. The SCA is responsible for the RMF deliverables associated with Step 4 of DOD and IC RMF Policies for assigned systems. This includes, but is not limited to: Security Assessment Plans tailored to specific systems control requirements Security control assessment input, which includes narratives for the review of controls and artifacts Security Assessment Reports ATO recommendations or ATO with Condition Memorandums Conduct initial remediation actions once a security assessment has been completed to ensure proper hand off to the ISSM and ISSOs. Assessment of selected controls IAW continuous monitoring strategy The SCA is expected to have additional duties as assigned in support of corporate cyber security services. Additional details are reviewed in accordance with company policies. Requirements: Required Skills & Experience: Strong knowledge of Risk Management Framework (RMF) 800-37 and continuous monitoring 800-137 Expert knowledge and hands-on experience with FISMA Systems, NIST 800-series guidelines, FIPS, Security Assessment & Authorization (SA&A) requirements and processes, Continuous Monitoring Framework experience and its tools, Plan of Action & Milestones (POA&M) policies, and vulnerability/patch management, risk management, project management, proficient with Microsoft products - Word, Excel, PowerPoint. Proficient with vulnerability and scanning tools and well-versed in interpreting risk posture resulting from assessment reports. Experience in project management and tracking, and the Microsoft suite of office products Experience of assessing cloud-based security authorizations (FedRamp, AWS & Azure) as well as the NIST control responsibilities Experience with SAP/JSIG Expert with documenting and or reviewing of security materials such as; system security plans (SSP), Security Assessment Report (SAR), and Security Assessment Plan (SAP), and other documents per NIST 800 guidelines. Experience supporting cloud-based security authorizations (FedRamp, AWS, & Azure) Experience creating Security Assessment Plans, Security Assessment Reports, and Executive-level briefings Qualifications: Bachelor's Degree in Computer Science or a related technical discipline Master's Degree preferred. Minimum 6-10 years of experience. Must currently possess an active TS/SCI with the ability to obtain and maintain a CI polygraph. DOD 8140 IAM Level II (CAP, CASP, CISM, CISSP, GSLC, CCISO) is required Systems Security Engineering background preferred. Effective communication skills to collaborate with cross-functional teams and stakeholders on implementing security measures organization-wide. Strong analytical skills for identifying system vulnerabilities and documenting control remediation recommendations through collaboration on System Impact Analysis and Documented Risk Acceptance. Detail-oriented with the ability to manage multiple tasks and prioritize effectively. Comprehensive knowledge of RMF activities at a senior level (ability to articulate to Executive audiences preferred). Familiarity with federal regulatory requirements, contractual obligations, and industry standards related to information security. Evaluate adherence to standards such as Privacy, GDPR, and HIPAA Other: This is typical office or administrative work, and there is no exposure to adverse environmental conditions. This position requires sedentary work. Sedentary work is defined as: Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.
09/26/2026
Full time
Job Description Job Description Description: Job Title: Security Control Assessor Location: On Site in Arlington, VA Department: Cyber Security Services Reports To: Management FLSA Status: Full Time/Non-exempt Job Purpose: The security control assessor (SCAs) supports a critical, objective role to evaluate the effectiveness of implemented controls in mitigating security risks. The SCA will support a critical mission within the intelligence community. In the role as a SCA, you are expected to use automated scanning tools, manual techniques, and specialized testing methodologies to identify weaknesses and vulnerabilities. The SCA is expected to be a collaborative member of the RMF program of the organization, to provide intelligent input to system security architectures in order to align with RMF principles and guidelines. This includes ensuring to guide the RMF process so that security controls are integrated seamlessly into system designs to provide comprehensive protection against threats and vulnerabilities. Duties & Responsibilities: The SCA's specific duties include: Advise the Information System Owner (ISO) concerning the impact levels for Confidentiality, Integrity, and Availability for the information on systems. Ensure security assessments are completed for each IS. Initiate a POA&M with identified weaknesses and suspense dates for each IS based on findings and recommendations from the SAR. Evaluate security assessment documentation and provide written recommendations for security authorization to the CISO and AO. Assess proposed changes to Information Systems, their environment of operation, and mission needs that could affect system authorization. Serve as a cybersecurity technical advisor to the CISO and AO under their purview. Be integral to the development of the monitoring strategy. The system-level continuous monitoring strategy must conform to all applicable published DoD enterprise-level or DoD Component-level continuous monitoring strategies. Determine and document in the SAR a risk level for every noncompliant security control in the system baseline. Determine and document in the SAR an aggregate level of risk to the system and identify the key drivers for the assessment. The SCA's risk assessment considers threats, vulnerabilities, and potential impacts as well as existing and planned risk mitigation. Develop the continuous monitoring plan specific to the information system. The SCA is responsible for the RMF deliverables associated with Step 4 of DOD and IC RMF Policies for assigned systems. This includes, but is not limited to: Security Assessment Plans tailored to specific systems control requirements Security control assessment input, which includes narratives for the review of controls and artifacts Security Assessment Reports ATO recommendations or ATO with Condition Memorandums Conduct initial remediation actions once a security assessment has been completed to ensure proper hand off to the ISSM and ISSOs. Assessment of selected controls IAW continuous monitoring strategy The SCA is expected to have additional duties as assigned in support of corporate cyber security services. Additional details are reviewed in accordance with company policies. Requirements: Required Skills & Experience: Strong knowledge of Risk Management Framework (RMF) 800-37 and continuous monitoring 800-137 Expert knowledge and hands-on experience with FISMA Systems, NIST 800-series guidelines, FIPS, Security Assessment & Authorization (SA&A) requirements and processes, Continuous Monitoring Framework experience and its tools, Plan of Action & Milestones (POA&M) policies, and vulnerability/patch management, risk management, project management, proficient with Microsoft products - Word, Excel, PowerPoint. Proficient with vulnerability and scanning tools and well-versed in interpreting risk posture resulting from assessment reports. Experience in project management and tracking, and the Microsoft suite of office products Experience of assessing cloud-based security authorizations (FedRamp, AWS & Azure) as well as the NIST control responsibilities Experience with SAP/JSIG Expert with documenting and or reviewing of security materials such as; system security plans (SSP), Security Assessment Report (SAR), and Security Assessment Plan (SAP), and other documents per NIST 800 guidelines. Experience supporting cloud-based security authorizations (FedRamp, AWS, & Azure) Experience creating Security Assessment Plans, Security Assessment Reports, and Executive-level briefings Qualifications: Bachelor's Degree in Computer Science or a related technical discipline Master's Degree preferred. Minimum 6-10 years of experience. Must currently possess an active TS/SCI with the ability to obtain and maintain a CI polygraph. DOD 8140 IAM Level II (CAP, CASP, CISM, CISSP, GSLC, CCISO) is required Systems Security Engineering background preferred. Effective communication skills to collaborate with cross-functional teams and stakeholders on implementing security measures organization-wide. Strong analytical skills for identifying system vulnerabilities and documenting control remediation recommendations through collaboration on System Impact Analysis and Documented Risk Acceptance. Detail-oriented with the ability to manage multiple tasks and prioritize effectively. Comprehensive knowledge of RMF activities at a senior level (ability to articulate to Executive audiences preferred). Familiarity with federal regulatory requirements, contractual obligations, and industry standards related to information security. Evaluate adherence to standards such as Privacy, GDPR, and HIPAA Other: This is typical office or administrative work, and there is no exposure to adverse environmental conditions. This position requires sedentary work. Sedentary work is defined as: Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.
Security Control Assessor - Intermediate
RIVIDIUM Springfield, Virginia
Job Description Job Description RiVidium Inc. is seeking a Security Control Assessor who conducts independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system to determine the overall effectiveness of the controls (as defined in NIST 800-37). TASKS: Manage and approve Accreditation Packages (e.g., ISO/IEC 15026-2). Plan and conduct security authorization reviews and assurance case development for initial installation of systems and networks. Review authorization and assurance documents to confirm that the level of risk is within acceptable limits for each software application, system, and network. Verify that application software/network/system security postures are implemented as stated, document deviations, and recommend required actions to correct those deviations. Develop security compliance processes and/or audits for external services (e.g., cloud service providers, data centers). Establish acceptable limits for the software application, network, or system. Manage Accreditation Packages (e.g., ISO/IEC 15026-2). Perform security reviews, identify gaps in security architecture, and develop a security risk management plan. Perform security reviews and identify security gaps in security architecture resulting in recommendations for inclusion in the risk mitigation strategy. Perform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change. Provide input to the Risk Management Framework process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials). Verify and update security documentation reflecting the application/system security design features. Participate in Risk Governance process to provide security risks, mitigations, and input on other technical risk. Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc. Assure successful implementation and functionality of security requirements and appropriate information technology (IT) policies and procedures that are consistent with the organization's mission and goals. Define and document how the implementation of a new system or new interfaces between systems impacts the security posture of the current environment. Ensure that security design and cybersecurity development activities are properly documented (providing a functional description of security implementation) and updated as necessary. Support necessary compliance activities (e.g., ensure that system security configuration guidelines are followed, compliance monitoring occurs). Ensure that all acquisitions, procurements, and outsourcing efforts address information security requirements consistent with organization goals. Assess the effectiveness of security controls. Assess all the configuration management (change configuration/release management) processes. ABILITIES: Ability to identify systemic security issues based on the analysis of vulnerability and configuration data. Ability to answer questions in a clear and concise manner. Ability to ask clarifying questions. Ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means. Ability to communicate effectively when writing.A0015: Ability to conduct vulnerability scans and recognize vulnerabilities in security systems.A0016: Ability to facilitate small group discussions.A0018: Ability to prepare and present briefings. Ability to produce technical documentation. Ability to design valid and reliable assessments. Ability to analyze test data. Ability to collect, verify, and validate test data. Ability to dissect a problem and examine the interrelationships between data that may appear unrelated. Ability to identify basic common coding flaws at a high level. Ability to translate data and test results into evaluative conclusions. Ability to ensure security practices are followed throughout the acquisition process. Ability to apply collaborative skills and strategies. Ability to apply critical reading/thinking skills. Ability to effectively collaborate via virtual teams. Ability to evaluate information for reliability, validity, and relevance. Ability to evaluate, analyze, and synthesize large quantities of data (which may be fragmented and contradictory) into high quality, fused targeting/intelligence products. Requirements: Bachelor degree or higher from an accredited college or university. Prefer an accredited Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, or Computer Engineering degree; or a degree in a Mathematics or Engineering field. IAT/IAM Level 2 certification The annual salary range for this position is $135,000-$140,000. The listed salary range represents a general guideline; however, RiVidium Inc. considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills, and current market conditions. At RiVidium Inc. it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.
09/26/2026
Full time
Job Description Job Description RiVidium Inc. is seeking a Security Control Assessor who conducts independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system to determine the overall effectiveness of the controls (as defined in NIST 800-37). TASKS: Manage and approve Accreditation Packages (e.g., ISO/IEC 15026-2). Plan and conduct security authorization reviews and assurance case development for initial installation of systems and networks. Review authorization and assurance documents to confirm that the level of risk is within acceptable limits for each software application, system, and network. Verify that application software/network/system security postures are implemented as stated, document deviations, and recommend required actions to correct those deviations. Develop security compliance processes and/or audits for external services (e.g., cloud service providers, data centers). Establish acceptable limits for the software application, network, or system. Manage Accreditation Packages (e.g., ISO/IEC 15026-2). Perform security reviews, identify gaps in security architecture, and develop a security risk management plan. Perform security reviews and identify security gaps in security architecture resulting in recommendations for inclusion in the risk mitigation strategy. Perform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change. Provide input to the Risk Management Framework process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials). Verify and update security documentation reflecting the application/system security design features. Participate in Risk Governance process to provide security risks, mitigations, and input on other technical risk. Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc. Assure successful implementation and functionality of security requirements and appropriate information technology (IT) policies and procedures that are consistent with the organization's mission and goals. Define and document how the implementation of a new system or new interfaces between systems impacts the security posture of the current environment. Ensure that security design and cybersecurity development activities are properly documented (providing a functional description of security implementation) and updated as necessary. Support necessary compliance activities (e.g., ensure that system security configuration guidelines are followed, compliance monitoring occurs). Ensure that all acquisitions, procurements, and outsourcing efforts address information security requirements consistent with organization goals. Assess the effectiveness of security controls. Assess all the configuration management (change configuration/release management) processes. ABILITIES: Ability to identify systemic security issues based on the analysis of vulnerability and configuration data. Ability to answer questions in a clear and concise manner. Ability to ask clarifying questions. Ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means. Ability to communicate effectively when writing.A0015: Ability to conduct vulnerability scans and recognize vulnerabilities in security systems.A0016: Ability to facilitate small group discussions.A0018: Ability to prepare and present briefings. Ability to produce technical documentation. Ability to design valid and reliable assessments. Ability to analyze test data. Ability to collect, verify, and validate test data. Ability to dissect a problem and examine the interrelationships between data that may appear unrelated. Ability to identify basic common coding flaws at a high level. Ability to translate data and test results into evaluative conclusions. Ability to ensure security practices are followed throughout the acquisition process. Ability to apply collaborative skills and strategies. Ability to apply critical reading/thinking skills. Ability to effectively collaborate via virtual teams. Ability to evaluate information for reliability, validity, and relevance. Ability to evaluate, analyze, and synthesize large quantities of data (which may be fragmented and contradictory) into high quality, fused targeting/intelligence products. Requirements: Bachelor degree or higher from an accredited college or university. Prefer an accredited Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, or Computer Engineering degree; or a degree in a Mathematics or Engineering field. IAT/IAM Level 2 certification The annual salary range for this position is $135,000-$140,000. The listed salary range represents a general guideline; however, RiVidium Inc. considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills, and current market conditions. At RiVidium Inc. it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.
Configuration Manager
Tetrad Digital Integrity LLC Washington, Washington DC
Job Description Job Description Tetrad Digital Integrity (TDI) is a leading-edge cybersecurity firm with a mission to safeguard and protect our customers from increasing threats and vulnerabilities in this digital age. Join TDI as we stand up a brand-new Agile development team at the forefront of federal IT modernization, delivering real digital transformation where it matters most. This is a rare ground-floor opportunity to architect, build, and integrate cutting-edge infrastructure solutions in support of some of our nation's most sensitive and critical missions. The Configuration Manager will ensure baseline control, deployment coordination, and release governance across a complex environment. This role blends hands on technical understanding with strong process leadership to coordinate delivery across engineering, DevOps, test, cyber, infrastructure, operations, product management, customer stakeholders, and partner teams. This is a fully onsite opportunity requiring a daily commute to the Washington, DC area. An active TS/SCI security clearance is required. RESPONSIBILITIES: Lead end to end configuration management across all environments (dev through IL5/IL6 production). Own CM plans, release procedures, baseline controls, governance models, and change workflows. Manage release calendars, cadences, readiness criteria, deployment windows, cutover and rollback planning, and post release validation. Coordinate release planning and execution across engineering, DevOps, cloud, data, test, cyber, IA, operations, network automation, service management, and customer teams. Facilitate release readiness reviews, configuration control boards, go/no go reviews, and retrospectives. Ensure release packages are complete, reviewed, documented, traceable, and approved (code, infrastructure changes, configs, test evidence, security scans, deployment instructions, rollback plans, release notes). Maintain traceability across requirements, defects, risks, and changes using Jira, Confluence, Bitbucket, and associated CI/CD tools. Manage configuration control for software, scripts, data pipelines, dashboards, integrations, IaC, automation workflows, interfaces, COTS/FOSS components, and runbooks. Maintain environment baselines for non prod, simulators, test environments, IL5/IL6 targets, and operational systems. Partner with DevOps to ensure CI/CD pipelines support controlled promotion with proper versioning, approval gates, automated tests, and artifact retention. Coordinate DoD aligned security requirements, STIG configurations, vulnerability remediation, privileged access controls, and audit evidence. Manage release impacts across mission critical capabilities (event processing, monitoring, cyber, automation, analytics, integrations). Oversee release and configuration coordination for AWS IL5/IL6 platforms and tools such as Elastic/Kibana, Kafka, Logstash, Databricks, ServiceNow, Watson AIOps, Jira, Confluence, Bitbucket, and network/cyber data sources. Identify and manage release risks, dependencies, blockers, environment constraints, and coordination gaps. Provide timely status reporting on scope, readiness, risks, defects, deployment progress, and outcomes. Develop release dashboards, metrics, decision briefs, and health indicators. Support audits, customer reviews, engineering reviews, and readiness assessments through accurate CM records and release evidence. Drive continuous improvement of CM and release processes. Provide CM and release training, mentoring, and guidance across engineering and operations teams. Coordinate with external partners and adjacent systems on integration planning, data dependencies, release alignment, and interoperability. QUALIFICATIONS: Active DoD TS/SCI security clearance. Ability to pass additional customer suitability screening(s) prior to start. Current Security+ or equivalent/higher. Bachelor's degree with 8+ years of relevant experience, or equivalent experience. Experience leading or supporting configuration management (CM), change management, deployment coordination, or baseline management for complex cloud, software, or mission systems, including developing CM/release plans, change control processes, deployment/rollback plans, and release documentation. Demonstrated experience leading cross-functional release planning, readiness, approval, deployment, and validation across multiple environments. Experience with Agile/DevOps workflows and tools, including Jira, Confluence, Bitbucket/Git, and related traceability and versioning tools. Familiarity with CI/CD, artifact management, branching strategies, automated testing, and promotion pipelines. Ability to understand complex systems and coordinate dependencies, risks, impacts, and stakeholder decisions. Strong communication and organizational skills, with the ability to manage multiple releases, anticipate issues, close actions, resolve gaps, and maintain discipline in fast-paced environments. PREFERRED QUALIFICATIONS: Experience with DoD network or cyber operations, including AWS/AWS GovCloud and IL5/IL6 environments. Experience supporting releases for data pipelines, analytics, observability, monitoring, automation, or service-management tools, including configuration management for IaC, COTS/FOSS, security configurations, APIs, dashboards, schemas, and deployment manifests. Experience with ServiceNow ITSM and change processes, including facilitating CCBs, CABs, and readiness or approval reviews. Experience supporting compliance, STIGs, vulnerability remediation, security scan evidence, or DoD cyber processes. PAY RANGE: The anticipated salary range for this position is $130,000 - $145,000. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data and applicable contract requirements, and may fall outside the posted range. TDI does business with the federal government, which restricts employment to individuals who are either US citizens or lawful permanent residents of the United States. "TDI is an Equal Opportunity Employer. Employment decisions are made based on individual qualifications, merit, and business needs. We do not discriminate in employment opportunities or practices based on race, color, religion, sex, or national origin, in accordance with applicable federal laws." Powered by JazzHR Z3pjx6EUEc
09/26/2026
Full time
Job Description Job Description Tetrad Digital Integrity (TDI) is a leading-edge cybersecurity firm with a mission to safeguard and protect our customers from increasing threats and vulnerabilities in this digital age. Join TDI as we stand up a brand-new Agile development team at the forefront of federal IT modernization, delivering real digital transformation where it matters most. This is a rare ground-floor opportunity to architect, build, and integrate cutting-edge infrastructure solutions in support of some of our nation's most sensitive and critical missions. The Configuration Manager will ensure baseline control, deployment coordination, and release governance across a complex environment. This role blends hands on technical understanding with strong process leadership to coordinate delivery across engineering, DevOps, test, cyber, infrastructure, operations, product management, customer stakeholders, and partner teams. This is a fully onsite opportunity requiring a daily commute to the Washington, DC area. An active TS/SCI security clearance is required. RESPONSIBILITIES: Lead end to end configuration management across all environments (dev through IL5/IL6 production). Own CM plans, release procedures, baseline controls, governance models, and change workflows. Manage release calendars, cadences, readiness criteria, deployment windows, cutover and rollback planning, and post release validation. Coordinate release planning and execution across engineering, DevOps, cloud, data, test, cyber, IA, operations, network automation, service management, and customer teams. Facilitate release readiness reviews, configuration control boards, go/no go reviews, and retrospectives. Ensure release packages are complete, reviewed, documented, traceable, and approved (code, infrastructure changes, configs, test evidence, security scans, deployment instructions, rollback plans, release notes). Maintain traceability across requirements, defects, risks, and changes using Jira, Confluence, Bitbucket, and associated CI/CD tools. Manage configuration control for software, scripts, data pipelines, dashboards, integrations, IaC, automation workflows, interfaces, COTS/FOSS components, and runbooks. Maintain environment baselines for non prod, simulators, test environments, IL5/IL6 targets, and operational systems. Partner with DevOps to ensure CI/CD pipelines support controlled promotion with proper versioning, approval gates, automated tests, and artifact retention. Coordinate DoD aligned security requirements, STIG configurations, vulnerability remediation, privileged access controls, and audit evidence. Manage release impacts across mission critical capabilities (event processing, monitoring, cyber, automation, analytics, integrations). Oversee release and configuration coordination for AWS IL5/IL6 platforms and tools such as Elastic/Kibana, Kafka, Logstash, Databricks, ServiceNow, Watson AIOps, Jira, Confluence, Bitbucket, and network/cyber data sources. Identify and manage release risks, dependencies, blockers, environment constraints, and coordination gaps. Provide timely status reporting on scope, readiness, risks, defects, deployment progress, and outcomes. Develop release dashboards, metrics, decision briefs, and health indicators. Support audits, customer reviews, engineering reviews, and readiness assessments through accurate CM records and release evidence. Drive continuous improvement of CM and release processes. Provide CM and release training, mentoring, and guidance across engineering and operations teams. Coordinate with external partners and adjacent systems on integration planning, data dependencies, release alignment, and interoperability. QUALIFICATIONS: Active DoD TS/SCI security clearance. Ability to pass additional customer suitability screening(s) prior to start. Current Security+ or equivalent/higher. Bachelor's degree with 8+ years of relevant experience, or equivalent experience. Experience leading or supporting configuration management (CM), change management, deployment coordination, or baseline management for complex cloud, software, or mission systems, including developing CM/release plans, change control processes, deployment/rollback plans, and release documentation. Demonstrated experience leading cross-functional release planning, readiness, approval, deployment, and validation across multiple environments. Experience with Agile/DevOps workflows and tools, including Jira, Confluence, Bitbucket/Git, and related traceability and versioning tools. Familiarity with CI/CD, artifact management, branching strategies, automated testing, and promotion pipelines. Ability to understand complex systems and coordinate dependencies, risks, impacts, and stakeholder decisions. Strong communication and organizational skills, with the ability to manage multiple releases, anticipate issues, close actions, resolve gaps, and maintain discipline in fast-paced environments. PREFERRED QUALIFICATIONS: Experience with DoD network or cyber operations, including AWS/AWS GovCloud and IL5/IL6 environments. Experience supporting releases for data pipelines, analytics, observability, monitoring, automation, or service-management tools, including configuration management for IaC, COTS/FOSS, security configurations, APIs, dashboards, schemas, and deployment manifests. Experience with ServiceNow ITSM and change processes, including facilitating CCBs, CABs, and readiness or approval reviews. Experience supporting compliance, STIGs, vulnerability remediation, security scan evidence, or DoD cyber processes. PAY RANGE: The anticipated salary range for this position is $130,000 - $145,000. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data and applicable contract requirements, and may fall outside the posted range. TDI does business with the federal government, which restricts employment to individuals who are either US citizens or lawful permanent residents of the United States. "TDI is an Equal Opportunity Employer. Employment decisions are made based on individual qualifications, merit, and business needs. We do not discriminate in employment opportunities or practices based on race, color, religion, sex, or national origin, in accordance with applicable federal laws." Powered by JazzHR Z3pjx6EUEc
Network Security Engineer
Select Minds LLC Dallas, Texas
Job Description Job Description Network Security Engineer DALLAS, TX LONG TERM Are you a Network Security Engineer with a passion for designing, securing, and optimizing enterprise-level network infrastructures? We are looking for a results-driven professional who thrives in high-stakes environments, tackling complex security challenges while ensuring seamless network performance. If you have a strong background in network architecture, security compliance, and performance optimization , we invite you to join our team and make an impact! Key Responsibilities: Network Architecture & Optimization - Design, configure, and optimize network infrastructure, including routers, switches, firewalls, and VPNs. Security & Compliance - Implement robust security policies, risk mitigation strategies, and access controls to safeguard critical data. Monitoring & Threat Detection - Leverage advanced tools for real-time network monitoring, anomaly detection, and security incident response. Incident Response & Troubleshooting - Analyze security threats, diagnose network issues, and deploy timely solutions to maintain business continuity. Disaster Recovery & Redundancy Planning - Develop and maintain backup, recovery, and failover strategies to ensure high availability. Collaboration & Documentation - Work cross-functionally with IT teams to enforce security best practices and document network configurations. Qualifications & Experience: Experience: Minimum 7 + years in network security engineering , covering: Network design, architecture, and security enforcement. Advanced routing, switching, and firewall configuration. Hands-on experience with IDS/IPS, VPNs, SD-WAN, and cloud security controls. Deep knowledge of network security monitoring and threat intelligence tools. Technical Skills: Strong expertise in TCP/IP, VPNs, VLANs, BGP, OSPF, EIGRP, and MPLS . Proficiency in securing LAN/WAN environments, firewalls (Palo Alto, Cisco, Fortinet), and cloud-based security . Familiarity with SIEM, intrusion detection/prevention systems, and vulnerability management . Scripting experience (Python, PowerShell, or Bash) is a plus. Certifications (Preferred but not mandatory): CCNA, CCNP, CCIE, CISSP, MCSE, MCSA, or equivalent . If you're ready to elevate network security standards and drive innovation , we'd love to hear from you!
09/26/2026
Full time
Job Description Job Description Network Security Engineer DALLAS, TX LONG TERM Are you a Network Security Engineer with a passion for designing, securing, and optimizing enterprise-level network infrastructures? We are looking for a results-driven professional who thrives in high-stakes environments, tackling complex security challenges while ensuring seamless network performance. If you have a strong background in network architecture, security compliance, and performance optimization , we invite you to join our team and make an impact! Key Responsibilities: Network Architecture & Optimization - Design, configure, and optimize network infrastructure, including routers, switches, firewalls, and VPNs. Security & Compliance - Implement robust security policies, risk mitigation strategies, and access controls to safeguard critical data. Monitoring & Threat Detection - Leverage advanced tools for real-time network monitoring, anomaly detection, and security incident response. Incident Response & Troubleshooting - Analyze security threats, diagnose network issues, and deploy timely solutions to maintain business continuity. Disaster Recovery & Redundancy Planning - Develop and maintain backup, recovery, and failover strategies to ensure high availability. Collaboration & Documentation - Work cross-functionally with IT teams to enforce security best practices and document network configurations. Qualifications & Experience: Experience: Minimum 7 + years in network security engineering , covering: Network design, architecture, and security enforcement. Advanced routing, switching, and firewall configuration. Hands-on experience with IDS/IPS, VPNs, SD-WAN, and cloud security controls. Deep knowledge of network security monitoring and threat intelligence tools. Technical Skills: Strong expertise in TCP/IP, VPNs, VLANs, BGP, OSPF, EIGRP, and MPLS . Proficiency in securing LAN/WAN environments, firewalls (Palo Alto, Cisco, Fortinet), and cloud-based security . Familiarity with SIEM, intrusion detection/prevention systems, and vulnerability management . Scripting experience (Python, PowerShell, or Bash) is a plus. Certifications (Preferred but not mandatory): CCNA, CCNP, CCIE, CISSP, MCSE, MCSA, or equivalent . If you're ready to elevate network security standards and drive innovation , we'd love to hear from you!

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board