System Engineer Sr Principal

General Dynamics Information Technology, Inc.

$133K — $180K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of hands-on experience in systems engineering and cybersecurity, specifically in secure environments.
  • Expertise in vulnerability management and implementation of security configuration baselines.
  • Proficiency with cloud services, particularly Microsoft Azure, and its security implementations.
  • Solid knowledge of networking principles and security best practices.
  • Demonstrated experience in deploying and managing containerized environments.
  • Strong written and verbal communication skills to convey technical concepts to stakeholders.

Responsibilities

  • Lead the development and optimization of patch management strategies for IT infrastructures.
  • Interpret and apply security standards like DoD/DISA STIGs across various systems and applications.
  • Manage the full patch lifecycle, ensuring vulnerabilities are identified and remediated promptly.
  • Ensure security and performance of virtual machine environments in cloud settings.
  • Configure network devices to comply with established security protocols and practices.
  • Deploy secure container environments and manage vulnerability remediation processes.
  • Collaborate with interdisciplinary teams to enhance security operations and system designs.

Benefits

  • Hybrid work model allowing both on-site and remote flexibility.
  • Opportunity to work in a mission-critical environment with a focus on cybersecurity.
  • Access to continuous professional development and training in cutting-edge technologies.
  • Engagement with interdisciplinary teams fostering collaboration and innovation.
  • Participation in decision-making processes that impact security operations.
Full Job Description

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

Secret

Clearance Level Must Be Able to Obtain:

Secret

Public Trust/Other Required:

None

Job Family:

IT Infrastructure and Operations

Job Qualifications:

Skills:

Cloud Based Services, DISA STIG, Microsoft Windows, Vulnerability Mitigation, Windows Azure Cloud

Certifications:

None

Experience:

8 + years of related experience

US Citizenship Required:

Yes

Job Description:

SYSTEMS ENGINEER PRINCIPAL

General Dynamics Information Technology (GDIT) is seeking a Systems Engineer Sr Principal with a strong cyber and vulnerability management background to support a mission-critical environment. This role will focus on end-to-end vulnerability management, including patching, STIG implementation, and sustainment of virtual machines, network devices, and containers in highly secure environments.

As a senior principal systems engineer, you will apply deep expertise in security configuration baselines, vulnerability assessment tooling, and remediation strategies to reduce risk and improve the security posture of enterprise systems.

This is hybrid position and requires regular on-site support and remote work.

Responsibilities
  • Lead the design, implementation, and optimization of vulnerability management and patching strategies for virtualized infrastructures, network devices, and containerized workloads.
  • Interpret and implement DoD/DISA STIGs, CIS benchmarks, and other security baselines across operating systems, applications, networks, and container platforms.
  • Own the lifecycle of patch management (assessment, planning, testing, deployment, and verification) to ensure timely and compliant remediation of vulnerabilities.
  • Maintain and harden virtual machine environments (e.g., cloud-native VMs), ensuring availability, performance, and security.
  • Configure and maintain network devices (e.g., routers, switches, firewalls) in accordance with security policies, STIGs, and best practices.
  • Deploy and maintain container platforms (e.g., Docker, Kubernetes/OpenShift) with a focus on secure configuration, image scanning, and vulnerability remediation.
  • Integrate and leverage vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7, ACAS) and configuration/compliance tools to identify, track, and remediate findings.
  • Collaborate with cross-functional teams (cybersecurity, network engineering, systems administration, DevSecOps) to ensure cohesive and secure designs and operations.
  • Participate in incident response and root cause analysis related to vulnerabilities, misconfigurations, and system security issues, driving corrective and preventive actions.
  • Ensure solutions meet applicable contractual, regulatory, and compliance requirements (e.g., DoD directives, RMF/ATO, NIST SP 800-53).
Required Qualifications
  • Active DoD Security Clearance of SECRET, or higher
  • 8+ years of relevant systems engineering experience, including work in secure or mission-critical environments.
  • Compliance with DoD 8570/8140 requirements (e.g., CCSP, Security+ CE, CISSP, Security X/CASP+, or equivalent baseline certification).
  • Demonstrated experience leading vulnerability management and patching activities across complex, multi-platform environments.
  • Experience with Microsoft Azure Cloud services such as virtual machines, storage, resource manager, etc.
  • Experience with implementing PKI and PIV standards, Active Directory or LDAP
  • Experience with Group Policy Objects and management
  • Hands-on experience implementing STIGs and security baselines for:
    • Operating systems (e.g., Windows Server, RHEL Linux, Ubuntu)
    • Network devices (e.g., Cisco, Juniper, firewalls)
    • Virtualization platforms and/or container platforms
  • Experience maintaining and securing virtual machine infrastructures (e.g. cloud-based VMs).
  • Experience supporting network infrastructure including configuration, hardening, and troubleshooting of routers, switches, and firewalls.
  • Experience deploying and maintaining container-based environments (e.g., Docker, Kubernetes) with an emphasis on secure configuration and image management.
  • Expertise with vulnerability scanning and compliance tools (e.g., Tenable.sc/Nessus ACAS or similar), including interpreting results and driving remediation.
  • Proficiency with automation and scripting (e.g., Ansible, PowerShell, Python, Bash) for patching, configuration management, and reporting.
  • Strong understanding of networking fundamentals (TCP/IP, routing, witching, DNS, DHCP, VLANs, VPNs) and how they intersect with security best practices.
  • Solid understanding of cybersecurity principles, controls, and frameworks, such as NIST, RMF, and defense-in-depth strategies
  • Strong written and verbal communication skills, including the ability to translate technical risk and remediation plans into language stakeholders understand.
  • Demonstrated ability to work collaboratively across engineering, cybersecurity, operations, and customer teams.
Desired Qualifications
  • Bachelor27s degree in Computer Science, Information Systems, Engineering, Cybersecurity, or related field;
  • Experience in Microsoft Azure Cloud securityimplementations
  • FamiliaritywithNIST 800-207 Zero Trust Architecture
  • FamiliaritywithNIST 800-144 Guidelines on Security and Privacy in Public Cloud Computing

The likely salary range for this position is $133,450 - $180,550. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

25-50%

Telecommuting Options:

Hybrid

Work Location:

USA MD Fort Meade

Additional Work Locations:

Similar Jobs

More Jobs at General Dynamics Information Technology, Inc.

More Aerospace & Defense Jobs

Find similar System Engineer Sr Principal jobs: