Cyber Security Engineer (Job 1480)

DLH

Bethesda (MD)

On-site

USD 150,000 - 170,000

Full time

38 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

PTO
401(k) matching
Health benefits

Job summary

DLH is seeking a Senior Cyber Security Engineer to support a federal client in Bethesda, MD. The role emphasizes Zero Trust, vulnerability management, and secure engineering in multi-tenant cloud and on‑prem environments, with strong collaboration across security, infra, and development teams.

The ideal candidate will analyze risk, leverage threat intelligence, and drive remediation across enterprise systems while communicating complex findings to stakeholders. Active clearance is required.

Qualifications

  • Bachelor’s or Master’s degree with years of relevant security experience.
  • Experience in cybersecurity and vulnerability management across enterprise environments.
  • Hands-on with vulnerability scanning tools (Tenable Nessus) and web app scanners.
  • Knowledge of DevSecOps and CI/CD security integration.
  • Familiarity with MDAV and endpoint security solutions.
  • Experience with cloud platforms (AWS/Azure/GCP) and containerized apps.
  • Experience with Splunk for detection and analysis.
  • Strong understanding of security frameworks (NIST, FedRAMP, CIS, DISA STIGs).
  • Ability to translate AI/ML security concerns into controls; strong communication.
  • Active Public Trust Clearance required.

Responsibilities

  • Integrate Zero Trust Architecture into enterprise environments through risk-based controls.
  • Contribute to security architecture covering IAM and cloud security design.
  • Lead and support vulnerability management with risk-based remediation.
  • Analyze threat intelligence sources (CVE, KEV) to prioritize fixes.
  • Perform vulnerability assessments using Nessus and web scanners.
  • Monitor threats with MDAV and endpoint security tools.
  • Collaborate with DevSecOps to embed SCA, SAST, and DAST in CI/CD.
  • Develop and maintain a Splunk SIEM for dashboards and trends.
  • Support continuous monitoring across on‑premise, cloud, and hybrid environments.
  • Create technical documentation and implementation guidance.
  • Stay current on federal cyber directives and best practices.

Skills

Zero Trust
DevSecOps
Threat intelligence
Vulnerability management
MDAV / endpoint security
NIST / FISMA / FedRAMP
Splunk SIEM
Cloud security (AWS/Azure/GCP)
Scripting (PowerShell, Python)
Public Trust Clearance

Education

Bachelor’s degree in Computer Science, Cybersecurity, Software Engineering, or related field
Master’s degree in Computer Science, Cybersecurity, Software Engineering, or related field
High School Diploma with 12 years of relevant experience

Tools

Tenable Nessus
Web application scanners
Microsoft Defender Antivirus
Splunk
CI/CD security tooling
PowerShell
Python

Job description

DLH delivers improved health and national security readiness solutions for federal programs through science research and development, systems engineering and integration, and digital transformation. Our experts in public health, performance evaluation, and health operations solve the complex problems faced by civilian and military customers alike by leveraging advanced tools – including digital transformation, artificial intelligence, data analytics, cloud enablement, modeling, and simulation, and more. DLH is dedicated to the idea that “Your Mission is Our Passion” and brings a unique combination of government sector experience, proven methodology, and unwavering commitment to innovation to improve the lives of millions.

Overview

DLH is seeking a highly skilled Senior Cyber Security Engineer to support a federal client in Bethesda, MD. This role focuses on strengthening enterprise cybersecurity posture through a combination of vulnerability management, secure engineering practices, DevSecOps integration, and advanced threat detection, while incorporating Zero Trust principles as part of a comprehensive defense strategy in multi-tenant cloud and on-premises environments.

The ideal candidate should be self-motivated and able to take ownership of workflows

They will bring experience identifying and prioritizing risk across enterprise systems, applying defense-in-depth principles across platforms, and leveraging security tools and threat intelligence (including CVE and CISA Known Exploited Vulnerabilities (KEV)) to proactively mitigate threats.

This role requires strong collaboration across security, infrastructure, and development teams, as well as the ability to communicate technical findings to both technical and non-technical stakeholders.

Responsibilities
  • Integrate Zero Trust Architecture into enterprise environments through gap analysis, security maturity assessments, and risk-based control implementation
  • Contribute to enterprise security architecture, including identity and access management and cloud security design
  • Lead and support vulnerability management efforts, including identification, prioritization, and remediation of vulnerabilities based on risk, exploitability, and business impact
  • Analyze and operationalize threat intelligence sources, including CVE databases and the CISA KEV catalog, to prioritize remediation and strengthen defenses against actively exploited vulnerabilities
  • Perform vulnerability assessments using tools such as Tenable Nessus and web application scanners, and triage findings to reduce false positives/negatives
  • Utilize Microsoft Defender Antivirus (MDAV) and endpoint detection tools to monitor, detect, and respond to threats across endpoints
  • Collaborate with DevSecOps, infrastructure, and development teams to incorporate security controls and automated scanning (SCA, SAST, DAST) into CI/CD pipelines and SDLC practices
  • Develop and maintain a SIEM solution, such as Splunk, for queries, dashboards, and reports to identify trends, detect anomalies, and highlight control gaps
  • Support continuous monitoring and improve detection capabilities across hybrid enterprise environments, including on-premises, cloud, and containers.
  • Develop clear technical documentation, including assessment reports, mitigation strategies, and implementation guidance
  • Stay current on emerging threats, vulnerabilities, federal cybersecurity directives, and industry best practices
Qualifications
  • Bachelor’s degree in Computer Science, Cybersecurity, Software Engineering, or related field with a minimum of 10 years of experience; or Master’s degree in Computer Science, Cybersecurity, Software Engineering, or related field with a minimum of 6 years of experience; or High School Diploma with a minimum of 12 years of relevant experience.
  • Experience in cybersecurity, vulnerability management, systems engineering, or related fields
  • Strong experience with vulnerability management programs, including risk prioritization using CVSS, threat intelligence, and exploit data (e.g., CVEs, CISA KEV)
  • Working knowledge of DevSecOps practices and integrating security into CI/CD pipelines
  • Hands-on experience with Microsoft Defender Antivirus (MDAV) and endpoint security solutions
  • Experience with vulnerability scanning and assessment tools (e.g., Tenable Nessus, web application scanners)
  • Familiarity with cloud environments (AWS, Azure, or GCP) and containerized applications (ARO, Kubernetes)
  • Experience with SIEM platforms such as Splunk for detection and analysis
  • Strong understanding of security frameworks and compliance standards (NIST SP 800-53, 800-171, 800-37, FedRAMP, FISMA, ISO 27001, CIS Benchmarks, DISA STIGs)
  • Knowledge of enterprise security architecture and modern security principles, including Zero Trust
  • Working knowledge of AI security risk management frameworks and the ability to translate AI/ML use cases into security controls, review checkpoints, and governance decisions
  • Strong analytical, problem-solving, and communication skills
  • Active Public Trust Clearance walking through the door
Preferred Certifications
  • Related Cyber certification, such as CYSA, CISSP, or equivalent
  • Cloud security certifications (Azure, AWS, or GCP)
  • Azure Security Engineer Associate or similar
  • Vulnerability management or threat intelligence-related certifications
  • Proficiency in scripting/automation (PowerShell, Python, Bash, etc.)
Basic Compensation: $150,000 - $170,000 yearly salary

The salary range listed reflects what we reasonably expect to pay for this role at the time of posting. The final offer may vary based on skills, experience, geographic location, market conditions, and internal equity. Additional compensation may include performance incentives and program-specific awards. We do not use salary history to determine compensation, in line with applicable law.

DLH Corp offers our employees an excellent benefits package, including Personal Time Off (PTO), medical, dental, vision, supplemental life with AD&D, disability coverage, flexible spending accounts, and more. We want our employees to save for their future; therefore, we offer a 401(k) Retirement Plan, which includes a matching component. DLH is dedicated to your career development, providing training to help drive success, with access to our best-in-class e-learning suite for formal and informal learning, professional and technical certification preparation, and education assistance at accredited institutions.

EEO

DLH Corporation is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment. DLH will provide reasonable accommodation to individuals with disabilities and disabled Veterans who need assistance to apply.

DLH is committed to maintaining a fair and authentic interview process

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Engineer (Job 1480)
Cyber Security Engineer (Job 1480)

DLH Corp • Bethesda (MD)

On-site
USD 150,000 - 170,000
PTO
Medical/Dental/Vision
401(k) with match
+2
DevSecOps Engineer (Job 1459)
DevSecOps Engineer (Job 1459)

DLH Corporation • Bethesda (MD)

On-site
USD 125,000 - 132,000
PTO
Medical, dental, vision
401(k) matching
+1
DevSecOps Engineer (Job 1459)
DevSecOps Engineer (Job 1459)

DHL Holdings Corp • Austin (TX)

On-site
USD 125,000 - 132,000
PTO
Medical insurance
Dental insurance
+4
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)

DLH Corporation • Bethesda (MD)

On-site
USD 135,000 - 150,000
PTO
Medical, dental, vision
401(k) with match
Security Assessment & Authorization (SA&A) Analyst (Job 1453)
Security Assessment & Authorization (SA&A) Analyst (Job 1453)

DLH Corporation • Bethesda (MD)

On-site
USD 102,000 - 115,000
PTO
Medical insurance
401(k) matching
+1
Software Engineer II (Secret Clearance Required) (Job 1282)
Software Engineer II (Secret Clearance Required) (Job 1282)

DLH Corporation • San Diego (CA)

On-site
USD 105,000 - 150,000
401(k) Retirement Plan with matching
Medical and dental coverage
Personal Time Off (PTO)
Security Assessment & Authorization (SA&A) Analyst (Job 1458)
Security Assessment & Authorization (SA&A) Analyst (Job 1458)

DLH Corporation • Bethesda (MD)

On-site
USD 115,000 - 126,000
PTO
401(k) matching
Education assistance
+1
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)

DLH Corp • Bethesda (MD)

On-site
USD 135,000 - 150,000
401(k) matching
Paid time off (PTO)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)

DLH • Bethesda (MD)

On-site
USD 135,000 - 150,000
PTO
Medical insurance
Dental Insurance
+4
Acquisition Security & Privacy Analyst (Job 1456)
Acquisition Security & Privacy Analyst (Job 1456)

DLH Corporation • Bethesda (MD)

On-site
USD 115,000 - 125,000
PTO
Medical insurance
Dental insurance
+5