Cybersecurity Engineer

The National Renewable Energy Laboratory (NREL)

$100K — $180K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree with 9+ years or Master's with 7+ years of experience in relevant field or PhD with 4+ years.
  • Extensive expertise in Information Systems with full knowledge of related disciplines.
  • Strong leadership and project management skills with analytical and problem-solving ability.
  • Advanced programming and architecture skills with various software and info systems.
  • Required experience with Splunk administration and the ability to obtain a DOE L/Q Security Clearance.

Responsibilities

  • Manage, troubleshoot, and tune cybersecurity tools and sensors.
  • Select, test, deploy, and fine-tune on-premises and cloud security tools.
  • Guide security policy decisions and manage configurations for distributed security tools.
  • Develop content to maximize tool capabilities for cybersecurity personnel.
  • Lead tests and exercises to evaluate security defense strategies and tools.
  • Integrate distributed security products with cybersecurity analysis platforms.
  • Create and maintain documentation for cybersecurity operations tools.

Benefits

  • Medical, dental, and vision insurance.
  • Short- and long-term disability insurance.
  • Pension benefits and 403(b) Employee Savings Plan with employer match.
  • Personal time off (PTO) and sick leave, including paid holidays.
  • Tuition reimbursement program for eligible employees.
Full Job Description
Posting Title
Cybersecurity Engineer

.

Location
Remote

.

Position Type
Regular

.

Hours Per Week
40

.

Job Description
  • Manages, troubleshoots, and tunes cybersecurity tools and sensors, such as log aggregation (SIEM), automation/orchestration (SOAR), analysis, enrichment, alerting, and forensic data retention systems.

  • Selects, tests,deploys,and tunesnew on-premises and cloud-basedtechnical environments thatsupport infrastructure visibility, analysis,automation,andsecure data retention.

  • Guides policy decisions and/or manages securitypoliciesand related configurationsfor distributed security tools such as firewalls,endpoint detection and responsesuites,vulnerability detection tools,and cloud-based monitoring, protection, and incident response tools.

  • Develops content that enablescybersecurity personnelto takemaximumadvantage of existing tool capabilities, including workflows, integrations, and automated tasks.

  • Leads, designs, andperformsinfrastructure, application, and networktests and exercisestodeterminethe efficacy of security defense strategies and tools.

  • LeadsInformation Technology Servicesprojectteams tointegratedistributed network and endpoint security products with cybersecurity enrichment and analysis platformsand system management tools.

  • Creates andmaintainsarchitectural documentation and operational procedures that describe the scope, purpose, configuration, use, and maintenance of the cybersecurity operations tools and environments.

  • Leadsprojects (as assignedor independently) that improve the effectiveness and efficiency ofNLR9s cybersecurity program, including but not limited to workflow improvements,automation expansion,management tool enhancements, program orNLRstrategic initiatives, and user awareness training.

.

Basic Qualifications
Relevant Bachelor9s Degree and 9 or more years of experience or equivalent relevant education/experience. Or, relevant Master9s Degree and 7 or more years of experience or equivalent relevant education/experience. Or, relevant PhD and 4 or more years of experience or equivalent relevant education/experience. Applies extensive IS expertise in specific field and has full knowledge of related disciplines. Evaluates new hardware, software, systems tools and applications and makes procurement recommendations. Excellent leadership and project management skills. Skilled in analytical techniques, practices and problem solving. Extensive programming and architecture abilities with various computer software programs and information systems.

* Must meet educational requirements prior to employment start date.

Additional Required Qualifications

Training specific experience or training/certifications with Splunk administration is required.

DOE L/Q

Clearance: Must be able to obtain and maintain a DOE L/Q Security Clearance.

Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age; U.S. citizenship is required except in very limited circumstances. See for additional information.

Preferred Qualifications
  • Experience includes at least seven years in an Information Technology role working specifically in security engineering, or a role that includes significant time performing security engineering (tool selection, installation, and maintenance)
  • One or more professional security and/or systems engineering certifications, such as GIAC (SANS) certifications, Security+, CISSP, or training evidencing effort to attain future certification
  • Technical background in multiple disciplines, including experience with: Windows and Linux server and workstation system administration; TCP/IP networking concepts, Bash command-line expertise, network protocols and architecture; security measures/defense-in-depth
  • Experience managing, and troubleshooting both network- and host-based security tools and significant infrastructure (ex. SIEM, IDS, IPS, full packet capture) in a production (live) environment
  • Subject matter expertise in cybersecurity engineering; understands how to select and tune tools to provide analysts with best value visibility and response
  • Experience dealing with common cyber security concepts and threats and describing them to others
  • Intermediate scripting/programming ability with various languages, preferably Python, in support of security orchestration and automation
  • Technology-specific experience or training/certifications with Splunk SIEM and Cortex XSOAR (formerly Demisto) is a plus
  • Understanding of cloud security architecture, event collection and aggregation a plus

.

Job Application Submission Window

The anticipated closing window for application submission is up to 30 days and may be extended as needed.

Annual Salary Range (based on full-time 40 hours per week)
Job Profile: IT Professional IV / Annual Salary Range: $100,400 - $180,700

Job Profile: IT Professional III / Annual Salary Range: $83,600 - $150,500

NLR takes into consideration a candidate9s education, training, and experience, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the Colorado Equal Pay for Equal Work Act, a potential new employee9s salary history will not be used in compensation decisions.

Benefits Summary
Benefits include medical, dental, and vision insurance; short*- and long-term disability insurance; pension benefits*; 403(b) Employee Savings Plan with employer match*; life and accidental death and dismemberment (AD26D) insurance; personal time off (PTO) and sick leave; paid holidays; and tuition reimbursement*. NLR employees may be eligible for, but are not guaranteed, performance-, merit-, and achievement- based awards that include a monetary component. Some positions may be eligible for relocation expense reimbursement. Limited-term positions are not eligible for long-term disability or tuition reimbursement.

* Based on eligibility rules

Badging Requirement
NLR is subject to Department of Energy (DOE) access restrictions. All employees must also be able to obtain and maintain a federal Personal Identity Verification (PIV) card as required by Homeland Security Presidential Directive 12 (HSPD-12), which includes a favorable background investigation.

Drug Free Workplace

NLR is committed to maintaining a drug-free workplace in accordance with the federal Drug-Free Workplace Act and complies with federal laws prohibiting the possession and use of illegal drugs. Under federal law, marijuana remains an illegal drug.

If you are offered employment at NLR, you must pass a pre-employment drug test prior to commencing employment. Unless prohibited by state or local law, the pre-employment drug test will include marijuana. If you test positive on the pre-employment drug test, your offer of employment may be withdrawn.

Submission Guidelines

Please note that in order to be considered an applicant for any position at NLR you must submit an application form for each position for which you believe you are qualified. Applications are not kept on file for future positions. Please include a cover letter and resume with each position application.

.

Similar Jobs

More Jobs at The National Renewable Energy Laboratory (NREL)

More Information Technology Jobs

Find similar Cybersecurity Engineer jobs: