Leidos is a technology and mission innovation company serving government and commercial customers. The company is seeking a Junior Security Engineer to support security operations, vulnerability management, RMF/ATO activities, system hardening, and continuous monitoring across enterprise and isolated environments. The role involves implementing security requirements, remediating issues, maintaining security documentation, and collaborating with technical teams at the customer site.
Perform day-to-day security activities under the direction of senior security personnel and escalate risks, technical issues and blockers as appropriate
Support vulnerability management activities from identification through closure, including analysis, remediation, validation and documentation
Perform vulnerability scanning and analyze findings using ACAS, Tenable/Nessus or equivalent technologies
Work with Windows, Linux, network, desktop support and other engineering teams to assist with vulnerability remediation and security-related technical issues
Implement and validate DISA STIGs and approved security configuration baselines across infrastructure systems
Perform recurring security activities, including audit log reviews, account reviews, vulnerability reviews, security control validation and continuous monitoring
Support RMF/ATO activities, including security documentation, control evidence, Body of Evidence (BoE), POA&Ms and compliance with NIST SP 800-53, ICD 503 and applicable security directives
Assist with reviewing system and configuration changes for potential security impact and document findings for review by senior security personnel and the ISSM
Support security activities for isolated or restricted environments, including vulnerability scanning, logging, patching, hardening and security monitoring
Review security logs and events using Splunk or equivalent SIEM/log-management technologies and escalate identified issues as appropriate
Assist with maintaining security procedures, documentation, compliance evidence and vulnerability remediation records
Track assigned security findings, remediation activities and action items through completion and provide status updates as required
Participate in security reviews, engineering meetings and Technical Exchange Meetings (TEMs) as required
Research security vulnerabilities, technical requirements and remediation approaches and provide findings and recommendations to senior security personnel
Develop technical knowledge across the environment and take on increased responsibility for security activities as experience and proficiency grow
Qualification
Required
• Experience with application performance and latency problems related to security requirements from front, middle, and back end
• Working experience with Windows Server 2016/2019, Active Directory, IIS, DNS, DHCP, Exchange, DFS
• Experience implementing security controls on common network services such as file, email, and active directory across multiple geographically dispersed sites
• Experience with networking technologies and security assessment to include, but not limited to, STIGs
• Experience implementing and supporting enterprise system security and malware monitoring and prevention tools such as Splunk, McAfee HBSS, and ACAS
• Solid network and systems troubleshooting experience with TCP/IP, Internet security, and encryption (data at rest, data in transit)
• Ability to produce clear and concise documents and diagrams capturing networking and operational procedures and LAN/WAN topology using MS Visio, MS Project, MS Excel and MS Word
• Candidate must, at a minimum, meet DoD 8570.11- IAT Level II certification requirements (currently Security+ CE, CCNA-Security, GSEC, or SSCP along with an appropriate computing environment (CE) certification)
• Bachelor's degree with at least 2 years of relevant experience. Additional years of experience may be considered in lieu of degree
• Active TS/SCI clearance with Polygraph required OR active TS/SCI and willingness to get a Poly
• US Citizenship is required due to the nature of the government contracts we support
Preferred
• CISSP or CASP Certification
Benefits
Health and Wellness programs
Income Protection
Paid Leave
Retirement
Leidos is an industry and technology leader serving government & commercial customers with smarter, more efficient digital and mission innovations.
Glassdoor
3.9
Founded in 1969
Reston, Virginia, USA
10001+ employees
https://www.leidos.com
Leidos is an industry and technology leader serving government & commercial customers with smarter, more efficient digital and mission innovations.