Cyber Security Engineer

LLNL$146K — $222K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Ability to obtain and maintain a US DOE Q-level security clearance (U.S. Citizenship required)
  • Bachelor's degree in Computer Science, Computer Engineering or a related field, or equivalent experience
  • Experience with SIEM, log aggregation, and packet analysis
  • Experience in host forensics, network forensics, log analysis, or malware analysis
  • Proficient verbal and written communication with strong interpersonal skills
  • Ability to manage multiple technical tasks with conflicting priorities
  • Availability for off-hours and on-call incident response

Responsibilities

  • Respond to security threats and incidents individually and collaboratively
  • Proactively hunt for cyber threats and implement response measures
  • Analyze LLNL intrusion detection systems
  • Provide security monitoring and incident response support
  • Create and manage processes, systems, and tools responsibly
  • Act as a technical point of contact for incident response
  • Document findings and recommend remediation actions
  • Promote diversity, equity, and inclusion within the program

Benefits

  • Hybrid work schedule with flexibility for remote work
  • Opportunities for mentoring and development of incident response practices
  • Support for professional development and obtaining industry certifications
  • Engagement in a diverse and inclusive work environment
  • Potential for complex tasks and advanced roles for higher-level positions
Full Job Description
Job Description

We have an opening for a Cybersecurity Engineer to independently and collaboratively perform a wide range of activities associated with supporting the Cyber Security Operations Center (CSOC) Incident Response team. This position is within the Information Technology Solutions Division (ITSD) of the Computing Directorate and matrixed to the Cyber Security Program (CSP), in support of the Livermore Information Technology (LivIT) Program.

This position offers a hybrid schedule, blending in-person and virtual presence. You will have the flexibility to work from home one or more days per week.

This position will be filled at either level based on knowledge and related experience as assessed by the hiring team. Additional job responsibilities (outlined below) will be assigned if hired at the higher level.

You will
  • Protect enterprise systems and information by promptly responding to security threats and incidents, acting individually and as part of a team.
  • Proactively hunt for cyber threats and enact identification, containment and eradication measures while supporting recovery efforts.
  • Perform analysis on LLNL intrusion detection systems.
  • Provide security monitoring and incident response support including troubleshooting and resolution of issues.
  • Create and manage processes, systems, and tools exercising a high degree of responsibility.
  • Serve as an incident response technical point of contact and interact with internal and external personnel.
  • Perform technical assessments, document actions, findings, and make remediation recommendations.
  • Promote and support plans to promote diversity, equity and inclusion within the program.
  • Perform other duties as assigned.

Additional job responsibilities, at the SES.3 level
  • Manage multiple complex parallel tasks and priorities of customers and stakeholders, ensuring deadlines are met, while leveraging team member skills.
  • Develop advanced methods, tools, and procedures to improve incident response capabilities and automate various complex tasks.
  • Mentor and provide technical guidance to team members in incident response best practices and procedures.


Qualifications
  • Ability to obtain and maintain a US DOE Q-level security clearance which requires U.S. Citizenship.
  • Bachelor's degree in Computer Science, Computer Engineering or related field, or the equivalent combination of education and related experience.
  • Broad experience with SIEM, log aggregation, packet analysis, or other cybersecurity tools.
  • Experience conducting host forensics, network forensics, log analysis, or malware analysis in support of incident response investigations.
  • Proficient written and verbal communication, strong interpersonal skills, ability to collaborate in a multi-disciplinary team environment and to interact with all levels of management and staff.
  • Ability to effectively manage concurrent technical tasks with conflicting priorities, to approach difficult problems with enthusiasm and creativity and to change focus when necessary, with experience working independently.
  • Ability to work off-hours and on-call to respond to incidents (intermittently, either as-needed or as part of a rotation).

Additional qualifications at the SES.3 level
  • Significant knowledge of SIEM solutions, threat hunting, incident response, or incident management.
  • Significant experience with log analysis, event correlation, or incident management procedures.
  • Advanced ability to provide innovative approaches and apply new technologies to tasks and projects that may not be well defined.

Qualifications We Desire
  • Master's degree in Computer Science, Computer Engineering, or a related field, or equivalent level of knowledge.
  • Significant incident response experience, including experience with cloud services such as AWS/Azure, and experience leading teams.
  • Experience with programming or scripting languages such as C, C#, Python, Java, PowerShell and PHP.
  • Current industry specific certifications including but not limited to Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Global Information Assurance Certification (GIAC).

Pay Range

$146,340 - $222,564 Annually

$146,340 - $185,544 at the SES.2 level

$175,530 - $222,564 at the SES.3 level

This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting; pay will not be below any applicable local minimum wage. An employee's position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, and business or organizational needs.

Additional Information

#LI-Hybrid

Position Information

This is a Flexible Term appointment, which is for a definite period not to exceed six years. If final candidate is a Career Indefinite employee, Career Indefinite status may be maintained (should funding allow).

About LLNL

LLNL Careers

There has never been a more opportune time to join the distinguished team at LLNL—the forefront of scientific research and innovation.

Opportunities Await

LLNL offers a plethora of job opportunities aimed at fostering professional growth and innovation. Join a team where science and technology pave the way for significant contributions in global security and scientific advancement.

Embark on a Career of Innovation

At LLNL, every position contributes to a culture of innovation, leadership, and diversity. The company is committed to transforming challenges into technological triumphs through the collective expertise of its team. LLNL stands as a beacon of scientific and engineering excellence, driving forward with cutting-edge research and development.

Professional Growth and Development

LLNL is dedicated to the professional growth of its employees, offering unmatched benefits, career development programs, and diversity training. The team at LLNL thrives in an environment that values knowledge-sharing and continuous learning, supported by comprehensive leadership programs.

Internship Programs

Start with an internship at LLNL and step into a world of potential. These positions are designed to harness academic knowledge and apply it in real-world scenarios, providing a robust foundation for future career endeavors in various scientific and administrative fields.

Join a Diverse and Inclusive Team

LLNL is committed to creating a diverse and inclusive workplace. The company believes in harnessing the power of diverse perspectives to drive innovation and solve complex problems. Employment at LLNL means being part of a team that values each member's unique skills and backgrounds.

Networking and Career Advancement

Networking at LLNL opens doors to expansive career trajectories in numerous disciplines. Employees are encouraged to connect with leaders and peers within and beyond their immediate teams to explore new ideas and career paths.

How to Apply

Discover the array of job opportunities at LLNL by searching available positions that match your skills and interests. Tailor your resume to highlight relevant experience and prepare for an interview that could lead to a rewarding career at one of the most prestigious labs in the world.

Stay Informed

Keep up to date with the latest from LLNL careers by subscribing to job alert emails. Receive personalized updates that align with your career preferences and learn about new job openings, company news, and professional insights directly from the team at LLNL.

Explore LLNL Jobs

Whether looking for a role in scientific research, engineering, or support services, LLNL offers a dynamic and supportive environment to start or advance your career. Join LLNL and contribute to a team that’s reshaping the future of science and technology.

Connect with LLNL Careers

Stay connected with LLNL through various channels to learn more about the company culture, upcoming networking events, and new job opportunities. Engage with a community that’s passionate about growth, innovation, and leadership in science.

APPLY TO LLNL JOBS

READ CAREERS BLOG

JOB ALERT EMAILS

Embark on a journey of professional discovery and innovation at LLNL, where every career is a pathway to making a substantial impact.
Learn more about LLNL

Similar Jobs

More Jobs at LLNL

More Information Technology Jobs

Find similar Cyber Security Engineer jobs: