By Light Professional IT Services

Senior Security Engineer

By Light Professional IT Services$100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, IT, or related field (or equivalent experience)
  • Security+ Certification
  • Strong understanding of network protocols and security practices
  • Experience with Linux and Windows systems
  • Proficient in scripting languages like Python, PowerShell, or Bash
  • Experience with automation tools such as Ansible or Terraform
  • Understanding of CI/CD processes
  • Familiarity with NIST standards (800-53, 800-171)
  • Ability to write clear cybersecurity documentation.

Responsibilities

  • Implement patching procedures for multiple Operating Systems (Linux, Windows, VMware, Cisco)
  • Conduct vulnerability scans and prioritize remediation efforts
  • Automate the patching process across various operating systems
  • Support governance, risk, and compliance tracking
  • Develop and maintain security policies and procedures
  • Design and manage security solutions like SIEM and firewalls
  • Advise on securing classified DoD networks.

Benefits

  • Medical, Dental & Vision Coverage
  • Wellness Program
  • 401(k) Matching
  • Disability (Short Term & Long Term)
  • Employee Assistance Program
  • Life Insurance
  • Education & Training
  • Generous Leave Policy (11 Federal Holidays, PTO, Military Leave, Bereavement and Jury Duty)
Full Job Description
Position Overview

This position is for the NCRC Range Modernization (RM) Senior Security Engineer position providing senior-level development, testing, and security support associated with their designated NCRC product scrum teams.

Responsibilities

  • Vulnerability Management
    • Implement patching procedures for multiple Operating Systems (Linux, Windows, VMware, Cisco)
    • Run and review vulnerability scans and STIGs
    • Prioritize vulnerability remediation efforts across endpoints, networks, and applications
    • Automate patching process for multiple Operating Systems (Linux/Windows)
    • Responsible for securing and hardening hardware and software systems.
  • Governance, Risk & Compliance
    • Support tracking resolution and milestones for program's Plan of Action and Milestones (POA&M) items
    • Develop and maintain security policies, procedures, and standards
    • Ensure compliance with relevant standards, directives and regulations
    • Conduct risk assessments and support audit activities
    • Remain abreast of emerging technologies, cyber threats and security tools
  • Security Architecture & Engineering
    • Design, implement, and manage security solutions (e.g., SIEM, EDR, firewalls, IDS/IPS, IAM, VPN)
    • Evaluate and integrate new security technologies and tools
  • Advise ISSO and ISSM on issues related to securing and monitoring classified DoD networks
  • Creation and maintaining of data flow and system boundary diagrams
  • Agile/Scrum process


Required Experience/Qualifications

  • Bachelor's (BS) degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
  • Security+ Certification
  • Strong understanding of network protocols, security architecture, and security practices
  • Experience with Linux-based and Windows-based systems
  • Proficient in scripting (e.g., Python, PowerShell, Bash)
  • Experience with automation tools (e.g., Ansible, Terraform, Chef, Puppet)
  • Understanding of CI/CD
  • In-depth knowledge of modern threat landscapes, vulnerabilities, mitigation techniques, and security tools and processes
  • Familiarity with NIST 800-53, NIST 800-171, SOC 2 and/or ISO 27001
  • Ability to write clear and concise cybersecurity guidance, procedures and documentation


Preferred Experience/Qualifications

  • DoD RMF security practices and regulations
  • Virtualization (preferably VMware)
  • Familiarity with open-source security tools
  • Familiarity with ACAS, Tenable Security Center, and Tenable Nessus


Special Requirements/Security Clearance

In accordance with the specifications of a government contract, eligibility for this position mandates U.S. Citizenship status and a minimum SECRET security clearance with the ability to obtain a TOP SECRET The precise security clearance requisites will be detailed in the Government's Task Order.

This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. The above is intended to describe the general contents of and requirements for the performance of this job.

Benefits Overview

CESI recognizes that our strength is our people. We support every employee as an individual to build strong teams across the enterprise. Our benefit package includes:
  • Medical, Dental & Vision Coverage
  • Wellness Program
  • 401(k) Matching
  • Disability (Short Term & Long Term)
  • Employee Assistance Program
  • Life Insurance
  • Education & Training
  • Generous Leave Policy (11 Federal Holidays, PTO, Military Leave, Bereavement and Jury Duty)

About By Light Professional IT Services

By Light Professional IT Services is a provider of full lifecycle information technology and telecommunications solutions to the federal government and commercial clients. The company provides services in the areas of cybersecurity, cloud computing, application development, network engineering, and strategic consulting. By Light has been recognized as one of the fastest-growing private companies in the United States by Inc. Magazine and has been named a top workplace by The Washington Post.
Learn more about By Light Professional IT Services
Size
1,500 employees
Industry

Similar Jobs

More Jobs at By Light Professional IT Services

More Information Technology Jobs

Find similar Senior Security Engineer jobs: