Cyber Security Engineer

VulnU

Huntsville, Northern (AL, KY)

Hybrid

USD 147,000 - 199,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

GDIT in Huntsville, AL is seeking a Cyber Security Engineer to lead incident response, cyber defense, and threat hunting efforts. You will guide analysts, engineers, and responders to meet operational timelines and improve detection accuracy across mission systems.

The role requires DoD/federal experience, TS/SCI eligibility, and strong leadership. On-site in Huntsville, with a focus on developing defenses against advanced threats and maintaining robust cyber resilience.

Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field.
  • 7+ years of cybersecurity engineering or cyber operations (DoD/federal).
  • 3 years of technical leadership experience.
  • Experience leading incident response, threat hunting, vulnerability management, or forensic teams.
  • Active interim Secret clearance required; Top Secret/SCI preferred.

Responsibilities

  • Provide senior technical authority for incident response, cyber defense, threat hunting, forensics, vulnerability management, and threat emulation.
  • Lead 24/7 monitoring, detection, and incident classification to meet CSSP MTTR requirements (8-hour max).
  • Oversee vulnerability analyses and endpoint security assessments; manage forensic operations and reports.
  • Develop analytics, rules, and countermeasures for SIEM/EDR/Elastic Stack.
  • Document SOPs, reports, and training materials; support RMF activities and audits.

Skills

Cyber Defense
Cyber Operations
Forensic Sciences
Information Assurance
Information System Security

Education

Bachelor's degree

Job description

# Cyber Security EngineerGDIT · gdit.comCategory: Detection & ResponseLocation: USA AL HuntsvilleSalary: $147,292 – $199,278Clearance: TS/SCI## Quality of lifeWhat the posting states. Hover or tap a perk to see the line it came from.* Retirement match* Paid parental leaveType of Requisition:PipelineClearance Level Must Currently Possess:Interim SecretClearance Level Must Be Able to Obtain:Top Secret/SCIPublic Trust/Other Required:NoneJob Family:Cyber and IT Risk ManagementJob Qualifications:Skills:Cyber Defense, Cyber Operations, Forensic Sciences, Information Assurance, Information System SecurityCertifications:NoneExperience:7 + years of related experienceUS Citizenship Required:YesJob Description:Make a meaningful impact as a Cybersecurity Engineer supporting GDIT’s Cybersecurity Service Provider (CSSP) and Defensive Cyberspace Operations (DCO). This role safeguards global digital infrastructure and strengthens cyber resiliency across mission systems. As the Technical Lead, you will guide analysts, engineers, and responders to meet operational timelines, improve detection accuracy, and enhance defenses against advanced threats.KEY RESPONSIBILITIESTechnical Leadership & Oversight • Serve as senior technical authority for incident response, cyber defense, threat hunting, forensics, vulnerability management, and threat emulation.• Provide SME guidance ensuring adherence to DoD/client requirements, CJCSM 6510.01B, and CSSP standards.• Lead technical planning, coordination, and execution for mission‐critical operations.Operational Support & Mission Execution • Oversee 24/7 monitoring, detection, and incident classification under Cyberspace Domain Awareness.• Ensure rapid response meeting CSSP MTTR requirements (8‐hour max).• Lead vulnerability analysis, ACAS rollups, IAVM trending, PPSM compliance, and endpoint security assessments.• Oversee forensic operations following NIST SP 800‐86, maintaining chain‐of‐custody and producing full case reports.Threat Intelligence & Proactive Defense • Guide intelligence‐driven threat hunts; correlate OSINT/CSINT with internal telemetry for advanced threat identification.• Lead development of analytics, rules, and countermeasures for SIEM/EDR/Elastic Stack.• Support Cyber Threat Emulation using GFE tools.Documentation, Quality & Compliance • Oversee SOPs, TTPs, CTOs, COAs, forensic reports, vulnerability reports, and training materials.• Ensure outputs meet DoD plain‐language standards and approved formats.• Support RMF activities including SSP updates, control assessments, POA&M management, audits, and incident response testing.Tooling, Automation & Innovation • Lead development of Elastic dashboards, enrichment pipelines, anomaly detection models, and analytics.• Oversee Cybersecurity BI dashboards across networks with validated daily updates.• Drive automation and testing strategies for proactive, data‐driven defense.QUALIFICATIONSEducation• Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field.Experience• 7 years cybersecurity engineering or cyber operations (DoD/federal).• 3 years technical leadership.• Experience leading incident response, threat hunting, vulnerability management, or forensic teams.Technical Skills• Expertise with SIEM/EDR, Elastic Stack, ACAS, and cyber analytics.• Strong knowledge of RMF, DoDI 8510.01, NIST SP 800 series, CJCSM 6510.01B.• Deep understanding of incident response and detection engineering.• Experience developing SOPs, dashboards, TTPs, forensic reports, and analytics.Clearance• Minimum: Interim Secret.• Preferred: Top Secret with SCI eligibility.Skills & Abilities• Strong leadership across diverse cyber disciplines.• Excellent communication for technical and executive audiences.• Strong analytical/problem‐solving skills under pressure.• Ability to work across multiple classification levels/sensitive environments.Preferred• GIAC, Elastic, or DoD 8140/8570 certifications (GREM, GCFA, GCTI, CEH, CISSP, CCSP, etc.).• Experience in CTE or adversary simulation.• Prior leadership within an accredited CSSP.• Experience with dashboard/data pipeline engineering.Location• On‐site in Huntsville, AL; situational telework when authorized.The likely salary range for this position is $147,292 - $199,278. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.Scheduled Weekly Hours:40Travel Required:Less than 10%Telecommuting Options:OnsiteWork Location:USA AL HuntsvilleAdditional Work Locations:Total Rewards at GDIT:Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

General Dynamics Information Technology, Inc. • Huntsville (AL)

On-site
USD 111,000 - 150,000
AWS Cloud Security Systems Administrator - TS/SCI with Polygraph
AWS Cloud Security Systems Administrator - TS/SCI with Polygraph

VulnU • Bethesda (MD), Northern (KY)

Hybrid
USD 108,000 - 132,000
401K with company match
Comprehensive health plans
Paid education and certifications
+1
Isse
Isse

General Dynamics IT • Nebraska

On-site
USD 129,000 - 130,000
Health benefits
401K with company match
Educational assistance
+1
Information System Security Officer (ISSO) - TS/SCI with Polygraph
Information System Security Officer (ISSO) - TS/SCI with Polygraph

VulnU • McLean (VA), Northern (KY)

Hybrid
USD 143,000 - 162,000
401K with company match
Comprehensive health plan
Paid education and certifications
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

gdit • Springfield (VA)

On-site
USD 164,000 - 209,000
Cyber Analyst Principal (TS/SCI Full-Scope Polygraph clearance required)
Cyber Analyst Principal (TS/SCI Full-Scope Polygraph clearance required)

VulnU • McLean (VA), Northern (KY)

Hybrid
USD 170,000 - 229,000
Retirement match
Paid parental leave
Information Security Analyst Advisor
Information Security Analyst Advisor

VulnU • Annapolis (MD)

On-site
USD 115,000 - 155,000
401K with company match
Comprehensive health and wellness
Paid education and certifications
+1
Penetration Tester Mid-Level
Penetration Tester Mid-Level

VulnU • Ashburn (VA), Northern (KY)

Hybrid
USD 108,000 - 129,000
CSSP DCO Analyst
CSSP DCO Analyst

General Dynamics Information Technology • Omaha (NE)

On-site
USD 87,000 - 117,000
Health benefits (Medical/Dental/Vision
401K with company match
Educational Assistance and eLearning
+2
Cybersecurity CSfC Engineer - Active Top Secret required
Cybersecurity CSfC Engineer - Active Top Secret required

gdit • Washington

On-site
USD 200,000 - 270,000