Lead Cybersecurity Engineer

Gunnison

$145K — $160K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3-5 years of experience in cybersecurity engineering or related technical fields.
  • Experience with security tools for network, email, endpoint, and cloud security.
  • Proven ability in vulnerability management and continuous monitoring.
  • Familiarity with compliance frameworks, including federal cybersecurity requirements.
  • Understands network security concepts and traffic analysis principles.
  • Experience preparing technical reports for various audiences.
  • Holds a GIAC or CISSP certification.

Responsibilities

  • Lead cybersecurity engineering activities for NIH CIT enterprise services.
  • Architect and manage cybersecurity tools for network and endpoint protection.
  • Conduct threat detection and vulnerability assessments.
  • Consult with stakeholders on security engineering and risk management.
  • Produce clear reports and dashboards to communicate cybersecurity posture.
  • Mentor and lead a team of cybersecurity professionals.
  • Develop standard operating procedures for cybersecurity operations.

Benefits

  • 3 weeks of personal leave in your first year.
  • 11 paid holidays each year.
  • 5 days of flexible time off for approved training or certifications.
  • 401(k) company match at 50% up to 10% of salary.
  • Comprehensive medical, dental, and vision insurance.
  • Life and disability insurance coverage.
  • Public transportation subsidies.
  • Up to $5,000 yearly for certifications and training.
Full Job Description
Job Type

Full-time

Description

* This position is contingent upon a future opening with Gunnison.

Salary: $145,000 - $160,000/year

Work location: Hybrid, 2-3 days per week on-site in Bethesda, MD.
  • Serve as the technical lead for cybersecurity engineering activities supporting NIH CIT enterprise services, including network, email, endpoint, server, cloud, and related infrastructure environments.
  • Architect, deploy, configure, integrate, operate, and improve cybersecurity tools and technologies used to inspect and protect network traffic, email traffic, endpoints, workstations, and servers.
  • Lead security engineering activities involving threat detection, event analysis, log management, vulnerability identification, remediation validation, compromise assessments, and continuous monitoring.
  • Provide subject-matter expertise in security industry standards, leading practices, and control implementation, with particular emphasis on compromise assessment, threat detection, endpoint protection, and network security.
  • Administer, configure, tune, and analyze outputs from security platforms such as Tenable, Splunk, BigFix, and comparable vulnerability-management, SIEM, endpoint-management, and security-monitoring tools.
  • Conduct or support penetration testing, vulnerability assessments, security-control assessments, technical risk analyses, and validation of remediation activities.
  • Analyze security events, vulnerabilities, system configurations, and threat indicators; identify risks; recommend mitigations; and track corrective actions through closure.
  • Evaluate and help implement security controls across enterprise environments in alignment with RMF, continuous-monitoring requirements, and applicable HHS, NIH, DHS, and other federal cybersecurity policies and directives.
  • Consult directly with Government stakeholders, system owners, technical teams, and program leadership on complex security-engineering issues, risk decisions, remediation strategies, and technical implementation approaches.
  • Produce clear, accurate technical reports, dashboards, briefings, findings, risk assessments, remediation-status reports, and other artifacts that communicate progress and cybersecurity posture to both technical and executive audiences.
  • Lead and mentor cybersecurity engineers and analysts; review technical work products; establish engineering priorities; and coordinate work across multiple concurrent cybersecurity initiatives.
  • Participate in customer meetings, technical working groups, incident-related activities, and project reviews; communicate risks, dependencies, milestones, and recommended next steps.
  • Develop and maintain standard operating procedures, engineering documentation, security architecture diagrams, implementation guides, and repeatable processes for cybersecurity operations.


Requirements

  • Minimum of three (3) to five (5) years of progressively responsible cybersecurity engineering, network security, information-security operations, or related technical experience.
  • Security engineering for enterprise network, email, endpoint, workstation, server, and/or cloud environments.
  • Architecting, deploying, configuring, and operating cybersecurity tools used for network inspection, email security, endpoint security, vulnerability management, security monitoring, or log analysis.
  • Vulnerability management, continuous monitoring, compromise assessments, security-control assessments, penetration testing, or remediation validation.
  • Security platforms such as Tenable, Splunk, BigFix, or functionally comparable technologies.
  • Network engineering and cybersecurity concepts, including traffic analysis, security logging, intrusion detection/prevention, endpoint protection, and system hardening.
  • Preparing technical reports and customer-facing briefings that communicate security findings, risks, remediation progress, and recommended actions.
  • Consulting with customers and technical stakeholders on security-engineering, compliance, risk-management, and remediation issues.
  • Applying federal cybersecurity requirements, including familiarity with HHS, NIH, DHS, NIST, FISMA, RMF, and continuous-monitoring principles
  • GIAC certification, current/active
  • Certified Information Systems Security Professional (CISSP), current/active
  • Splunk certification, such as Splunk Core Certified Power User, Splunk Enterprise Certified Admin, Splunk Core Certified Advanced Power User, or comparable Splunk security/engineering credential
  • Bachelor's degree from an accredited college or university in cybersecurity, information assurance, computer science, information systems, computer engineering, network engineering, electrical engineering, or a closely related technical discipline

Clearance Requirement: Ability to obtain and maintain a Public Trust.

Desired Qualifications:
  • Master's degree in cybersecurity, information assurance, computer science, information systems, engineering, data analytics, or a related technical discipline.
  • Certified Information Systems Auditor (CISA)
  • Certified Information Security Manager (CISM)
  • Certified Authorization Professional (CAP)
  • Certified Cloud Security Professional (CCSP)
  • CompTIA Security+, CySA+, PenTest+, or CASP+
  • EC-Council Certified Ethical Hacker (CEH) or equivalent penetration-testing certification
  • Offensive Security Certified Professional (OSCP) or equivalent offensive-security credential
  • Tenable/Nessus certification or advanced Tenable platform training
  • BigFix administration, endpoint-management, or related platform certification
  • AWS Certified Security - Specialty
  • Microsoft Certified: Azure Security Engineer Associate
  • Google Professional Cloud Security Engineer
  • Cisco security certifications, including CCNA CyberOps, CCNP Security, or equivalent
  • GIAC incident-response, intrusion-analysis, penetration-testing, or cloud-security certifications, such as GCIH, GCIA, GPEN, GSEC, GREM, or GCLD
  • ITIL Foundation or PMP, particularly for candidates who will manage engineering workstreams or customer deliverables


The salary range for this position depends upon multiple factors including location, the individual's knowledge, skills, competencies, and experience, and contract-specific budget constraints and organizational requirements.
Gunnison Consulting Group's total compensation package also includes bonus and profit-sharing opportunities, depending on company and employee performance. Available employee benefits include:
  • 3 weeks of Personal Leave your first year
  • 11 paid Holidays each year
  • 5 days of Flexible Time Off each year for approved training or certifications (self-study is ineligible)
  • 401(k) company match at 50% up to 10% of your salary
  • Medical, Dental and Vision Insurance
  • Life and Disability Insurance
  • Public Transportation Subsidies
  • Certifications and Training Allowance - Up to $5,000/year!

Salary Description

$145,000 - $160,000/year

Similar Jobs

More Jobs at Gunnison

  • Privacy Lead
    $130K — $145K *
    Bethesda, MD 20817 (Montgomery County)
    Education, Government & Non-Profit
    In-Person
  • Cybersecurity Operations Lead
    $160K — $170K *
    Alexandria, VA 22304 (Alexandria City County)
    Information Technology
    In-Person
  • Cyber Incident Management Lead
    $145K — $165K *
    Alexandria, VA 22304 (Alexandria City County)
    Information Technology
    In-Person
  • Digital Forensics Analyst
    $125K — $145K *
    Alexandria, VA 22304 (Alexandria City County)
    Information Technology
    In-Person
  • IT Subject Matter Expert (SME)
    $120K — $128K *
    Washington, DC 20011 (District Of Columbia County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Lead Cybersecurity Engineer jobs: