Senior Security Engineer

RPMGlobal

Bethesda, Northern (MD, KY)

Hybrid

USD 140,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Base-2 Solutions seeks a Senior Security Engineer to lead security operations, vulnerability management, and RMF/ATO support at a Bethesda site. This hands-on role requires coordinating across Windows/Linux teams, applying DISA STIGs, and maintaining continuous monitoring and security documentation.

The candidate will mentor staff, review logs with SIEM tools, and ensure compliance with NIST SP 800-53 and ICD 503. Active TS/SCI is required.

Qualifications

  • Lead and coordinate day‑to‑day security operations and set priorities.
  • Oversee vulnerability management from detection to remediation.
  • Support RMF/ATO activities with documentation and evidence.
  • Review security logs and events using SIEM tools like Splunk.
  • Ensure DISA STIGs and baseline configurations are applied.
  • Mentor staff and communicate risk and status clearly.

Responsibilities

  • Lead security operations, assign tasks, and track progress.
  • Provide technical guidance to security and engineering teams.
  • Coordinate remediation across Windows, Linux, and networks.
  • Oversee vulnerability scanning with ACAS/Tenable/Nessus.
  • Translate requirements into technical and operational actions.

Skills

Security leadership
Vulnerability management
RMF/ATO
Continuous monitoring
Security engineering
Technical guidance

Education

Bachelor's degree in CS/IT
DoD 8570.11 IAT Level II cert (Security+ CE, CCNA-Security, GSEC, SSCP)

Tools

ACAS
Tenable Nessus
Splunk
McAfee HBSS
Active Directory / Windows security

Job description

Position Summary

Base-2 Solutions is seeking a Senior Security Engineer to serve as the technical lead for day-to-day security activities supporting enterprise and isolated environments. This hands‑on technical lead will provide technical leadership and oversight for security operations, vulnerability management, RMF/ATO support, continuous monitoring, and security engineering activities. The position is 100% on‑site, with all work performed at the customer site in Bethesda, MD.

Essential Duties and Responsibilities
  • Lead and coordinate day‑to‑day security operations, establish priorities, and assign and track activities across the security team.
  • Provide technical leadership and guidance to security personnel, system administrators, engineers, and other technical teams.
  • Lead vulnerability management from identification through closure, including analysis, prioritization, remediation, validation, and documentation.
  • Coordinate vulnerability remediation across Windows, Linux, network, desktop support, and other engineering teams, and provide hands‑on support for complex or high‑priority issues as needed.
  • Oversee and perform vulnerability scanning and analysis using ACAS, Tenable/Nessus, or equivalent technologies.
  • Oversee implementation and validation of DISA STIGs and approved security configuration baselines across infrastructure systems.
  • Ensure recurring security activities are performed, including audit log and account reviews, vulnerability reviews, security control validation, and continuous monitoring.
  • Support and oversee RMF/ATO activities, including security documentation, control evidence, Body of Evidence (BoE), POA&Ms, and compliance with NIST SP 800‑53, ICD 503, and applicable security directives.
  • Work with the ISSM to translate security and compliance requirements into technical and operational activities and evaluate system or configuration changes for potential security impact.
  • Provide security oversight and technical support for isolated or restricted environments, including vulnerability scanning, logging, patching, hardening, and security monitoring.
  • Review security logs and events using Splunk or equivalent SIEM/log‑management technologies and ensure identified issues are appropriately addressed.
  • Develop and maintain repeatable security processes and procedures for vulnerability management, compliance monitoring, evidence collection, and security operations.
  • Track security risks, deficiencies, remediation activities, and compliance status, and communicate status, risks, and recommendations to customer and program leadership.
  • Participate in Technical Exchange Meetings (TEMs), security reviews, engineering meetings, and customer discussions related to system security and accreditation.
  • Manage, supervise, and mentor security and technical staff as assigned.
Required Qualifications
  • Education and relevant experience meeting an applicable pathway in the Required Education and Experience Equivalency section.
  • Experience with application performance and latency problems related to security requirements from front, middle, and back end.
  • Working experience with Windows Server 2016/2019, Active Directory, IIS, DNS, DHCP, Exchange, and DFS.
  • Experience implementing security controls on common network services such as file, email, and Active Directory across multiple geographically dispersed sites.
  • Experience with networking technologies and security assessment, including but not limited to STIGs.
  • Experience implementing and supporting enterprise system security and malware monitoring and prevention tools such as Splunk, McAfee HBSS, and ACAS.
  • Solid network and systems troubleshooting experience with TCP/IP, Internet security, and encryption, including data at rest and data in transit.
  • Ability to produce clear and concise documents and diagrams capturing networking and operational procedures and LAN/WAN topology using MS Visio, MS Project, MS Excel, and MS Word.
  • Candidate must, at a minimum, meet DoD 8570.11‑ IAT Level II certification requirements, currently Security+ CE, CCNA‑Security, GSEC, or SSCP along with an appropriate computing environment (CE) certification.
  • US Citizenship is required due to the nature of the government contracts we support.
Preferred Qualifications
  • Experience managing and/or supervising a team of technical professionals.
  • CISSP or CASP Certification.
Required Education and Experience Equivalency
  • Bachelor's degree in Computer Science, Information Technology, or a related field with at least 8 years of relevant experience.
  • Additional years of experience may be considered in lieu of degree.
Required Certifications
  • Candidate must, at a minimum, meet DoD 8570.11‑ IAT Level II certification requirements (currently Security+ CE, CCNA‑Security, GSEC, or SSCP along with an appropriate computing environment (CE) certification).
Required Security Clearance
  • Active Top Secret/SCI
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Talentify • Bethesda (MD)

On-site
USD 120,000 - 180,000
Junior Security Engineer
Junior Security Engineer

RPMGlobal • Bethesda (MD), Northern (KY)

Hybrid
USD 65,000 - 90,000
Security Engineering Architect Lead
Security Engineering Architect Lead

RPMGlobal • Bethesda (MD), Northern (KY)

Hybrid
USD 150,000 - 190,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
On-Site Senior Security Engineer - Vulnerability & Compliance Lead
On-Site Senior Security Engineer - Vulnerability & Compliance Lead

RPMGlobal • Bethesda (MD), Northern (KY)

Hybrid
USD 140,000 - 190,000
Senior Network Engineer
Senior Network Engineer

Talentify • Bethesda (MD)

On-site
USD 120,000 - 170,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Senior Information System Security Officer
Senior Information System Security Officer

RPMGlobal • Reston (VA)

On-site
USD 120,000 - 180,000
Security Operations Engineer – Senior
Security Operations Engineer – Senior

C3EL • Washington

On-site
USD 100,000 - 130,000
Sr. Information Systems Security Engineer ACTIVE TS/SCI CIP REQUIRED
Sr. Information Systems Security Engineer ACTIVE TS/SCI CIP REQUIRED

Select Search Associates LLC • Manassas (VA)

On-site
USD 140,000 - 190,000