Enable job alerts via email!

Security Data Engineer

Leidos

Adelphi (MD)

Remote

USD 85,000 - 154,000

Full time

Today
Be an early applicant

Job summary

A technology solutions company is seeking a Security Data Engineer to support a Department of Defense Cyber Security Service Provider. The role involves managing enterprise datasets, building ingestion pipelines, and collaborating with various teams to enhance data models. Minimum qualifications include a Bachelor's degree, 4-8 years of experience, and active TS/SCI security clearance. Offering a competitive salary range of $85,150 to $153,925, with remote work options available.

Qualifications

  • 4-8 years of relevant experience in cybersecurity or data engineering.
  • Active TS/SCI security clearance is mandatory.
  • Certifications: 8570 IAT I & IAM II (e.g., Security+).

Responsibilities

  • Build and maintain scalable ingestion and normalization pipelines for Elastic.
  • Monitor and optimize indexing performance.
  • Create and maintain technical documentation and SOPs.

Skills

Data normalization
Elastic operations
Scripting (Python, Bash)
Communication skills

Education

Bachelor's degree

Tools

Elastic components (Elasticsearch, Logstash, Kibana)
Kafka
Job description

Description

The Leidos Digital Modernization Team is seeking a Security Data Engineer to support a large Department of Defense (DoD) Cyber Security Service Provider (CSSP). This role focuses on engineering, operations, and management of enterprise datasets within a high-impact cybersecurity environment.

Role Overview

You will join the C5ISR CSSP team, which delivers network operations and cyber defense services to CSSP subscribers. As part of the engineering team, your primary focus will be managing an enterprise Elastic environment, emphasizing data normalization, enhancement, and enrichment.

Responsibilities
  • Maintain awareness of operational data feeds and ensure traceability across systems (e.g., Kafka, Elastic, CI/CD tools).
  • Build and maintain scalable ingestion and normalization pipelines for Elastic, ensuring architectural alignment.
  • Develop custom enhancements and enrichments for diverse log sources.
  • Configure, optimize, and scale Elastic components (Elasticsearch, Logstash, Kibana, Fleet) for high-throughput workloads.
  • Manage index templates, mappings, and schemas to support analytics, detection logic, and long-term data strategies.
  • Implement validation, deduplication, and quality control for cybersecurity telemetry.
  • Automate workflows using scripting languages (e.g., Python, Bash) for ingestion, schema updates, and transformations.
  • Collaborate with Detection Engineering, Threat Analysis, and Endpoint teams to align data models with operational needs.
  • Monitor and optimize ingestion/indexing performance for efficiency and scalability.
  • Create and maintain technical documentation, SOPs, and engineering artifacts for sustainment and knowledge sharing.
Required Qualifications
  • Bachelor’s degree and 4–8 years of relevant experience.
  • Minimum 3 years of experience in data engineering or analysis.
  • Certifications: 8570 IAT I & IAM II (e.g., Security+), and CSSP Analyst (e.g., CEH, GCIH).
  • Active TS/SCI security clearance.
  • Strong written, verbal, and interpersonal communication skills, with the ability to brief senior leadership (SES & Flag Officers) as needed.

Come break things (in a good way). Then build them smarter.

We’re the tech company everyone calls when things get weird. We don’t wear capes (they’re a safety hazard), but we do solve high-stakes problems with code, caffeine, and a healthy disregard for “how it’s always been done.”

Pay Range: $85,150.00 - $153,925.00

Remote

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.