Sr. Security Engineer

wwtexternalcareersite

San Antonio (TX)

On-site

USD 125,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health, Dental, and Vision Care
Onsite Health Centers
Employee Assistance Program
Wellness program
Competitive pay
Profit Sharing
401k Plan with Company Matching
Life and Disability Insurance
Tuition Reimbursement
PTO and Holidays
Parental Leave
Military Leave
Bereavement
Nursing Mothers Benefits
Voluntary Legal
Pet Insurance
Employee Discount Program

Job summary

World Wide Technology (WWT) is seeking a Sr. Security Engineer for its Government Services team in San Antonio, TX, on-site at Lackland AFB.

The role focuses on deploying, operating, and sustaining cybersecurity platforms within a DoD environment, emphasizing automation, threat intel integration, and cyber defense analytics. You will work with cross-functional teams to implement cloud-based components, maintain Linux apps and containers, and support MITRE ATT&CK-aligned detection workflows with

Qualifications

  • Top Secret clearance with SCI eligibility required
  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field.
  • 4+ years of experience supporting cybersecurity platforms, cyber operations environments, or enterprise IT systems.
  • Experience with network detection and response (NDR) and intrusion detection systems (IDS) such as Zeek, Suricata, or equivalent
  • Experience using the Elastic Stack (Elasticsearch, Logstash, Kibana), MDE, Trellix, or Tanium to ingest, correlate, and analyze large-scale security telemetry and develop queries and dashboards to detect anomalous behavior and indicators of compromise.
  • Experience performing threat hunting in AWS environments using cloud telemetry such as CloudTrail and VPC Flow Logs, with familiarity leveraging HashiCorp Boundary for secure, identity-aware access to investigative systems and cloud resources.
  • Experience with Docker, Podman or Kubernetes for application deployments.
  • Experience with Type 1 hypervisors, virtual machines, EC2 instances, and Linux administration
  • Experience supporting security products or security operations workflows.
  • Minimum 4 years’ experience in DoW incident response and threat hunting
  • Familiarity with the Pyramid of Pain and the MITRE ATT&CK framework.
  • DoD 8570 IAT Level II certification (e.g., Security+ or equivalent).
  • AWS API integration experience
  • AWS Cloud Certification
  • Threat hunting in enterprise networks (preferred)
  • Network infrastructure for packet capture (preferred)
  • GIAC Certified Forensic Analyst (GCFA) (preferred)

Responsibilities

  • Support deployment, configuration, API integration and sustainment of cloud-based cyber platform components.
  • Maintain and troubleshoot Linux based applications on various distributions.
  • Maintain and troubleshoot services hosted as containers or virtual machines.
  • Maintain and troubleshoot network forensics technologies similar to Zeek and Suricata.
  • Develop and maintain automation using python scripts to support platform operations and security analytics.
  • Support integration of threat intelligence data sources and detection workflows aligned with the MITRE ATT&CK framework.
  • Assist with automated attack kill chain analysis and security event correlation.
  • Support cybersecurity operations teams with the platform API integration (Cloud), troubleshooting, performance monitoring, and system maintenance.

Skills

Top Secret clearance
4+ years cybersecurity experience
Threat hunting
DoD/DoW incident response
MITRE ATT&CK familiarity
Pyramid of Pain familiarity
AWS cloud environment experience
Cloud telemetry analysis
Linux administration
Security operations workflows
Threat intelligence integration
Network forensics
Automation scripting (Python)

Education

Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field

Tools

Elastic Stack
MDE
Trellix
Tanium
Docker
Podman
Kubernetes
EC2
HashiCorp Boundary
CloudTrail
VPC Flow Logs
Zeek
Suricata
AWS API integration
AWS Cloud Certification

Job description

Required Qualifications

  • Top Secret clearance with SCI eligibility required
  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field.
  • 4+ years of experience supporting cybersecurity platforms, cyber operations environments, or enterprise IT systems.
  • Experience with network detection and response (NDR) and intrusion detection systems (IDS) such as Zeek, Suricata, or equivalent
  • Experience using the Elastic Stack (Elasticsearch, Logstash, Kibana), MDE, Trellix, or Tanium to ingest, correlate, and analyze large-scale security telemetry and develop queries and dashboards to detect anomalous behavior and indicators of compromise.
  • Experience performing threat hunting in AWS environments using cloud telemetry such as CloudTrail and VPC Flow Logs, with familiarity leveraging HashiCorp Boundary for secure, identity-aware access to investigative systems and cloud resources.
  • Experience with Docker, Podman or Kubernetes for application deployments.
  • Experience with Type 1 hypervisors, virtual machines, EC2 instances, and Linux administration
  • Experience supporting security products or security operations workflows.
  • Minimum 4 years’ experience in DoW incident response and threat hunting
  • Familiarity with the Pyramid of Pain and the MITRE ATT&CK framework.
  • DoD 8570 IAT Level II certification (e.g., Security+ or equivalent).
  • AWS API integration experience
  • AWS Cloud Certification

Preferred Qualifications:

  • Experience conducting threat hunting within enterprise or mission-hosted network environments by analyzing network traffic, authentication activity, endpoint telemetry, and application logs to identify malicious activity, lateral movement, and persistence mechanisms.
  • Experience configuring network infrastructure to enable packet capture solutions. Familiarity with the Cisco 3-Layer Hierarchical Model, Purdue Model, and other architectural frameworks (Strongly Preferred)
  • GIAC Certified Forensic Analyst (GCFA)

Preferred locations: San Antonio, TX (JBSA)

Certain states and localities require employers to post a reasonable estimate of salary range. A reasonable estimate of the current base pay range for this position is $125,000.00 to $160,000.00 annually. Actual salary will be based on a variety of factors, including shift, location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base pay.

The well-being of WWT employees is essential. So, when it comes to our benefits package, WWT has one of the best. We offer the following benefits to all full-time employees:

  • Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness program
  • Financial Benefits: Competitive pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement
  • Paid Time Off: PTO and Sick Leave (starting at 20 days per year) & Holidays (10 per year), Parental Leave, Military Leave, Bereavement
  • Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program

We strive to create an environment where all employees are empowered to succeed based on their skills, performance, and dedication. Our goal is to cultivate a culture of belonging that encourages innovation, collaboration, and respect for all team members, ensuring that WWT remains a great place to work for All!

If you have any questions or concerns about this posting, please email taposting@wwt.com.

#LI-AH1

This is a full-time direct hire position and you must currently have an activeTop Secret/SCI Clearance or above. We are not able to offer visa sponsorship, 1099 status, or work with C2C for this role.

Why WWT?

At World Wide Technology, we work together to make a new world happen.Our important work benefits our clients and partners as much as it does our people and communities across the globe. WWT is dedicated to achieving its mission of creating a profitable growth company that is also a Great Place to Work for All. We achieve this through our world-class culture, generous benefits and by delivering cutting-edge technology solutions for our clients.

Founded in 1990, WWT is a global technology solutions provider leading the AI and Digital Revolution. WWT combines the power of strategy, execution and partnership to accelerate digital transformational outcomes for organizations around the globe. Through its Advanced Technology Center, a collaborative ecosystem of the world's most advanced hardware and software solutions, WWT helps clients and partners conceptualize, test and validate innovative technology solutions for the best business outcomes and then deploys them at scale through its global warehousing, distribution and integration capabilities.

With over 12,000 employees across WWT and Softchoice and more than 60 locations around the world, WWT's culture, built on a set of core values and established leadership philosophies, has been recognized 14 years in a row by Fortune and Great Place to Work® for its unique blend of determination, innovation and creating a great place to work for all.

Want to work with highly motivated individuals on high-performance teams? Join WWT today!

What is the Government Services Team and why join?

Our Government Services team provides cleared resources with a global reach to federal civilian, Department of Defense (DoD), and intelligence community markets. We excel at delivering innovative, operationally ready, and cost-effective IT solutions that accelerate the interoperability and resiliency of mission-critical systems.

LOCATION: San Antonio, TX (fully on-site Lackland AFB)

What will you be doing?

WWT is looking for a Sr. Security Engineer supports the deployment, operation, and sustainment of the cybersecurity platforms within a secure Department of Defense (DoW) environment. This role focuses on platform operations, automation, threat intelligence integration, and support of cyber defense analytics.

Key Responsibilities:

  • Support deployment, configuration, API integration and sustainment of cloud-based cyber platform components.
  • Maintain and troubleshoot Linux based applications on various distributions.
  • Maintain and troubleshoot services hosted as containers or virtual machines.
  • Maintain and troubleshoot network forensics technologies similar to Zeek and Suricata.
  • Develop and maintain automation using python scripts to support platform operations and security analytics.
  • Support integration of threat intelligence data sources and detection workflows aligned with the MITRE ATT&CK framework.
  • Assist with automated attack kill chain analysis and security event correlation.
  • Support cybersecurity operations teams with the platform API integration (Cloud), troubleshooting, performance monitoring, and system maintenance.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. Security Engineer
Sr. Security Engineer

World Wide Technology, Inc. • San Antonio (TX)

On-site
USD 125,000 - 160,000
Health and Wellbeing
Profit Sharing
401k Plan with Company Matching
+2
Sr. Security Engineer
Sr. Security Engineer

World Wide Technology • Mountain Home (TX)

On-site
USD 125,000 - 160,000
Health (medical, dental, vision)
401k with company match
Paid time off and holidays
+2
Sr. Security Engineer
Sr. Security Engineer

World-Wide-Technology • San Antonio (TX)

On-site
USD 125,000 - 160,000
Health and Wellbeing benefits
401k with company matching
Paid time off & holidays
+3
Sr Cyber Defense Incident Responder
Sr Cyber Defense Incident Responder

World Wide Technology • Mountain Home (TX)

On-site
USD 140,000 - 160,000
Health & wellbeing benefits
401k plan with company matching
Paid time off & holidays
+1
Sr Cyber Defense Incident Responder
Sr Cyber Defense Incident Responder

wwtexternalcareersite • San Antonio (TX)

On-site
USD 140,000 - 160,000
Health and Wellbeing benefits
Financial Benefits: 401k + matching
Paid Time Off and Holidays
+1
Sr. Network Engineer Route-Switch
Sr. Network Engineer Route-Switch

wwtexternalcareersite • United States

On-site
USD 180,000 - 200,000
Health & Wellbeing benefits
Financial benefits & 401k
Paid time off
Sr Cyber Defense Incident Responder
Sr Cyber Defense Incident Responder

World-Wide-Technology • San Antonio (TX)

On-site
USD 140,000 - 160,000
Health and Wellbeing benefits
Profit Sharing
401k with company matching
+1
Cybersecurity Engineer
Cybersecurity Engineer

wwtexternalcareersite • Charleston (SC)

Hybrid
USD 150,000 - 170,000
Health and Wellbeing
Financial benefits
PTO & Holidays
+1
Jr Cyber Defense Incident Responder
Jr Cyber Defense Incident Responder

wwtexternalcareersite • San Antonio (TX)

On-site
USD 80,000 - 110,000
Health benefits
401k with match
PTO & holidays
+2
Network Engineer Route-Switch
Network Engineer Route-Switch

wwtexternalcareersite • United States

On-site
USD 160,000 - 180,000
Health and wellbeing benefits
401k with company matching
Paid time off and holidays
+1