CYBERSECURITY ENGINEER SR PRINCIPAL
Advance your career while impacting our national security in cyber as a Cybersecurity Engineer Sr Principal at GDIT. Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government.
MEANINGFUL WORK AND PERSONAL IMPACT
As a Cybersecurity Engineer Sr Principal, the work you'll do at GDIT will be impactful to the mission of our customer's classified commercial cloud environment. You will play a crucial role in engineering and operating security controls for a classified secure workstation enclave, ensuring continuous monitoring, and compliance for mission-critical systems.
- Support and lead configuration, hardening, and updates of Linux operating systems, directly contributing to the secure operation of the enclave.
- Collaborate with enclave engineers, system administrators, and vendors to administer and maintain core security applications (SIEM, vulnerability scanning, endpoint protection, insider threat tooling) that safeguard the environment.
- Drive continuous monitoring and incident response activities by validating telemetry, triaging alerts, investigating incidents, and supporting RMF-aligned vulnerability management, endpoint security, and auditing.
- Utilize Red Hat/Linux, Splunk, Tenable, Trellix, Teramind, and Microsoft Active Directory/Group Policy to implement and validate security controls, maintain visibility, and provide actionable insights into the enclave's security posture.
- Configure, harden, and update Linux operating systems within the secure enclave.
- Administer and monitor core security tools (Splunk SIEM, Tenable, Trellix, Teramind), ensuring telemetry, policies, and integrations function as intended.
- Triage and investigate security alerts and incidents in alignment with the Incident Response Plan.
- Oversee vulnerability and STIG scanning (host inventory, scan policies, and results) and coordinate remediation with the engineering team.
- Ensure complete endpoint visibility and policy enforcement across hosts and insider threat tooling.
- Support RMF Continuous Monitoring activities, including vulnerability management, endpoint security, auditing, and security alert monitoring.
- Contribute to security documentation, control implementation statements, assessment artifacts, and POA&M mitigation activities.
WHAT YOU'LL NEED TO SUCCEED
Bring your cyber expertise and drive for innovation to GDIT. The Cybersecurity Engineer Sr Principal must have:
- Education: Bachelor of Arts/Bachelor of Science
- Experience: 10+ years of related experience
Technical skills:
- Hands-on experience with Red Hat operating system and other Linux distributions
- Hands-on engineering experience administering and maintaining security operations using Splunk (SIEM), Tenable (vulnerability management), and Trellix (endpoint security)
- Hands-on experience with Teramind for insider threat monitoring
- Understanding of Microsoft Active Directory and implementing controls via Group Policy
- Knowledge of the complete NIST SP 800 series (especially 800-37, 800-53, 800-30) and risk management principles
Security clearance level: Active Top Secret
Role requirements:
- Onsite -McLean, VA
- Must be DoD 8140 / 8570.01-M compliant
GDIT IS YOUR PLACE
- Growth: AI-powered career tool that identifies career steps and learning opportunities
- Support: An internal mobility team focused on helping you achieve your career goals
- Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
- Flexibility: Full-flex work week to own your priorities at work and at home
- Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you'll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.