Cyber Network Defense Analyst
Security system engineer job at ManTech
**ManTech** seeks a motivated, career and customer-oriented **Cyber Network Defense Analyst** in **Herndon, VA.** As a CND Analyst on our team, you will use your expertise in specialized network defense to provide innovative and creative solutions to challenging cyber security problems. You will utilize the latest cyber tools available and assist with creating new ones while allowing you to advance the nation's information security posture.
**Responsibilities include, but are not limited to:**
+ Provide malicious code detection, intrusion detection, and information security tool development and integration.
+ Utilize forensic analysis to identify malware, misuse, and/or unauthorized activity.
+ Analyze all data sources, including Internet, Intelligence Community (IC) reporting, security events, firewall logs, and other data sources to identify malware, misuse, unauthorized activity or other cyber security related concerns.
+ Track intelligence using open source and classified sources to identify malicious code threats and provide solutions to counteract that threat.
+ Identify gaps in visibility or coverage of cyber defense systems.
+ Prepare data analytics and reporting.
**Minimum Qualifications:**
+ High School Diploma and 15+ years of experience in a cyber security or network security role, or Bachelor's degree in a technical field with 11+ years of experience
+ Experience writing script in programming languages such as Python, JavaScript, Yara or Snort
+ Experience using Splunk, Elasticsearch or similar tools for case development and application
+ Experience with network security applications, protocols, and associated hardware
+ Experience with one or more of the following classes of enterprise cyber defense technologies: Host based IDS and IPS, Network and host-based malware detection and prevention
**Preferred Qualifications:**
+ Experience with AWS infrastructure, tools and/or services
+ Experience working with MITRE ATT&CK
**Clearance Requirements:**
+ Must have an active/Current TS/SCI with polygraph
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
Information Security Systems Engineer - Expert
Herndon, VA jobs
BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the government, federal law enforcement officials, and troops deployed around the world.
At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed. We are all about trust, camaraderie and a shared ambition to lead the world in defense technologies and national security services. We offer flexible work environment to support the balance in your life and keep you performing at your best. Be a part of a company that is part of the community; driven to improve our future and protect our freedom.
We are looking for experienced Cyber Security Engineers to join our technology-based program supporting a key government customer. This program will deliver engineering services for network infrastructure as well as sophisticated enterprise computing infrastructure including end-point devices, data center hosted servers, multi-Cloud services as well as virtualized applications, and storage systems. Enterprise Computing Engineering services include modern application technology including containerized solutions with orchestrated workflow that function both on customer premise, and via remote Cloud services. Network infrastructure engineering services are comprised of core infrastructure, voice and video engineering, field engineering, application management and development for networks, network analytics, firewalls, network access controls and bandwidth service delivery. This is a fast paced, challenging, and career rewarding experience to provide solutions on one of the most complex and high-profile programs within the government.
ABC
#LI-DDUNN
Required Education, Experience, & Skills
We are actively seeking an Information Systems Security Engineer (ISSE) with a minimum of 11 years' experience with a Bachelor's Degree. Other degrees will be considered with the year's experience adjusted to accommodate. We are looking for a candidate with specific skills that may include the following:
* Implementation and validation of security controls that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation
* Developing architecture documentation and Systems Security Plans (SSP) to support Accreditation and Authorization (A&A) reviews
* POA&M development and implementation
* Coordinating with customer security organizations to achieve Authority to Operate (ATO).
* Knowledge of the complex environment involving shared networks and multiple security enclaves
* Engineering for Cyber engineering and integration services including security, authentication, identity management, authorization, and access control engineering.
* Self-starter able to work independently and build relationships with technical reps across divisions, comfortable with cyber security and able to brief issues to the customer
* Over 5 years of experience working on Government Agency enterprise infrastructure and engineering programs.
Preferred Education, Experience, & Skills
* Nessus / Rapid7
* Security Development and Operations (SecDevOps)
* Various security tools and processes such as Splunk, Nessus Security Center, WebInspect, Xacta
* Cloud security controls and implementation
* STIG compliance and vulnerability management
* CISSP
* AWS Certified Security Specialty
* Microsoft Office365
* Experience in one or more software products associated with cyber system engineering for data analytics including SQL security, TANIUM Endpoint Management Software, Powershell, MacAfee, App Blocker, Splunk ITSI.
* Experience with one or more software development environments supporting commercial or open source tools including but not limited to: Linux, Python, C, Bash Scripting, Perl, SQL, Splunk Phantom, UBA, and UIPath
* Experience in one or more cloud computing services and technologies including but not limited to: AWS/C2S, Microsoft Azure, Nutanix, VMware.
Pay Information
Full-Time Salary Range: $146670 - $249330
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20+ hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
About BAE Systems Intelligence & Security BAE Systems, Inc. is the U.S. subsidiary of BAE Systems plc, an international defense, aerospace and security company which delivers a full range of products and services for air, land and naval forces, as well as advanced electronics, security, information technology solutions and customer support services. Improving the future and protecting lives is an ambitious mission, but it's what we do at BAE Systems. Working here means using your passion and ingenuity where it counts - defending national security with breakthrough technology, superior products, and intelligence solutions. As you develop the latest technology and defend national security, you will continually hone your skills on a team-making a big impact on a global scale. At BAE Systems, you'll find a rewarding career that truly makes a difference.
Intelligence & Security (I&S), based in McLean, Virginia, designs and delivers advanced defense, intelligence, and security solutions that support the important missions of our customers. Our pride and dedication shows in everything we do-from intelligence analysis, cyber operations and IT expertise to systems development, systems integration, and operations and maintenance services. Knowing that our work enables the U.S. military and government to recognize, manage and defeat threats inspires us to push ourselves and our technologies to new levels.
This position will be posted for at least 5 calendar days. The posting will remain active until the position is filled, or a qualified pool of candidates is identified.
Information Security Systems Engineer - Expert
Herndon, VA jobs
BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the government, federal law enforcement officials, and troops deployed around the world.
At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed. We are all about trust, camaraderie and a shared ambition to lead the world in defense technologies and national security services. We offer flexible work environment to support the balance in your life and keep you performing at your best. Be a part of a company that is part of the community; driven to improve our future and protect our freedom.
We are looking for experienced Cyber Security Engineers to join our technology-based program supporting a key government customer. This program will deliver engineering services for network infrastructure as well as sophisticated enterprise computing infrastructure including end-point devices, data center hosted servers, multi-Cloud services as well as virtualized applications, and storage systems. Enterprise Computing Engineering services include modern application technology including containerized solutions with orchestrated workflow that function both on customer premise, and via remote Cloud services. Network infrastructure engineering services are comprised of core infrastructure, voice and video engineering, field engineering, application management and development for networks, network analytics, firewalls, network access controls and bandwidth service delivery. This is a fast paced, challenging, and career rewarding experience to provide solutions on one of the most complex and high-profile programs within the government.
ABC
\#LI-DDUNN
**Required Education, Experience, & Skills**
We are actively seeking an Information Systems Security Engineer (ISSE) with a minimum of 11 years' experience with a Bachelor's Degree. Other degrees will be considered with the year's experience adjusted to accommodate. We are looking for a candidate with specific skills that may include the following:
+ Implementation and validation of security controls that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation
+ Developing architecture documentation and Systems Security Plans (SSP) to support Accreditation and Authorization (A&A) reviews
+ POA&M development and implementation
+ Coordinating with customer security organizations to achieve Authority to Operate (ATO).
+ Knowledge of the complex environment involving shared networks and multiple security enclaves
+ Engineering for Cyber engineering and integration services including security, authentication, identity management, authorization, and access control engineering.
+ Self-starter able to work independently and build relationships with technical reps across divisions, comfortable with cyber security and able to brief issues to the customer
+ Over 5 years of experience working on Government Agency enterprise infrastructure and engineering programs.
**Preferred Education, Experience, & Skills**
+ Nessus / Rapid7
+ Security Development and Operations (SecDevOps)
+ Various security tools and processes such as Splunk, Nessus Security Center, WebInspect, Xacta
+ Cloud security controls and implementation
+ STIG compliance and vulnerability management
+ CISSP
+ AWS Certified Security Specialty
+ Microsoft Office365
+ Experience in one or more software products associated with cyber system engineering for data analytics including SQL security, TANIUM Endpoint Management Software, Powershell, MacAfee, App Blocker, Splunk ITSI.
+ Experience with one or more software development environments supporting commercial or open source tools including but not limited to: Linux, Python, C, Bash Scripting, Perl, SQL, Splunk Phantom, UBA, and UIPath
+ Experience in one or more cloud computing services and technologies including but not limited to: AWS/C2S, Microsoft Azure, Nutanix, VMware.
**Pay Information**
Full-Time Salary Range: $146670 - $249330
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20 hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
**Information Security Systems Engineer - Expert**
**119131BR**
EEO Career Site Equal Opportunity Employer. Minorities . females . veterans . individuals with disabilities . sexual orientation . gender identity . gender expression
Cyber Security Architect/Engineer (Illumio Zero Trust Segmentation Platform Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
You will directly shape our enterprise Zero Trust program, influence architectural decisions, and help safeguard mission-critical systems by deploying one of the most advanced segmentation platforms in the industry. This is a high-impact engineering role with visibility across security, cloud, and executive leadership. We are seeking an experienced Illumio Zero Trust Segmentation Platform Engineer to lead the design, implementation, and operational support of our enterprise micro-segmentation strategy. This role will own the Illumio Adaptive Security Platform (ASP) across hybrid environments and play a critical part in our Zero Trust initiative, partnering with security architects, cloud engineers, application teams, and IT operations to reduce lateral movement risk and strengthen our overall security posture.
This position will be based at Reston, VA
Responsibilities:
* Lead the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.
* Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.
* Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.
* Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
* Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.
* Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
* Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.
* Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.
* Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.
* Contribute to architectural standards, documentation, and enterprise security playbooks.
Job Requirements
Qualifications:
* 5+ years in cybersecurity, cloud security, or infrastructure engineering.
* 3+ years of expertise in Linux/Windows systems, virtualization (VMware, Hyper-V), and cloud environments (AWS, Azure, or GCP).
* 2+ years of experience with network security (firewalls, routing, segmentation models, TCP/IP).
* 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments (finance, healthcare, federal, or energy).
* 1+ year experience with infrastructure automation tools (Ansible, Terraform, or similar).
* 1+ year experience with REST APIs, scripting (Python, Bash, PowerShell), or automation frameworks.
* Active TS/SCI clearance; willingness to take a polygraph exam
* Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
* Active DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
* Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
* Prior Hands-on experience deploying and managing Illumio Adaptive Security Platform (ASP) in enterprise environments.
* Illumio certifications (e.g., Illumio ASP Professional or Expert).
* Experience with CMDB systems (ServiceNow), SIEM/SOAR tools, or vulnerability management platforms.
* Strong understanding of Zero Trust principles, micro-segmentation, and lateral movement mitigation
* Strong analytical and problem-solving skills with the ability to translate policies into technical controls.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Reston, VA 20191 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Cyber Security Architect/Engineer (Forescout Cyber Security Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
* Work with an expert team focused on implementing and operating next generation security solutions for government and commercial clients.
* Perform hands-on evaluation, implementation, and operation of leading security Cyber defense tools and technologies.
* Apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures.
* Apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges.
* You will join a team and engineer solutions to complex challenges for customers using your knowledge of network engineering, system administration and Active Directory.
* In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors.
* With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers.
Job Requirements
Qualifications:
* Experience architecting and designing IP networks, including developing and documenting network topologies
* Experience with network engineering, including physical or logical, such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW or appliances or network administration services, such as Active Directory, Guests LANS, and domain management
* Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures
* 1+ years of experience with performing systems administration Windows or Linux Administration, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades
* TS/SCI clearance with the ability to obtain a counter-intelligence polygraph.
* Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
* DoD 8570 IAT Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification.
* Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date.
* Experience with deployment or daily maintenance of Forescout CounterACT appliances
* Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems
* Ability to install and deploy Forescout in a customer environment
* Ability to integrate Cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk
* Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation
* Ability to be a self-starter, work without considerable direction, and work with a team
* Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Reston, VA 20191 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Cyber Security Architect/Engineer (Splunk Automation Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
* Lead the design and development of solutions to automate Cyber and Cloud services and activities.
* Develop and optimize data workflows and solution architectures that allow for intelligent storage, query, and exploration of datasets for Cyber and Cloud operations and engineering.
* Work closely with clients to develop and integrate highly available, scalable, and secure solutions that integrate security platforms across open source and COTS products.
* Work on developing extensible, scalable, and secure Cloud-based A&O services that can be adopted and integrated in a wide range of Cybersecurity use cases.
Job Requirements
Qualifications:
* 4+ years of experience in security engineering and architecture for highly regulated industries, including government, healthcare, or financial
* 3+ years of experience with software development or scripting, including Python development, and Splunk, including creating searches with Splunk Search Processing Language (SPL), building dashboards, and working with Splunk Enterprise Security (ES)
* 2+ years of experience working with REST APIs to integrate Splunk SOAR with other security and IT tools
* 1+ years of experience of Linux/Windows logging, administration and debugging support for automation workflows
* Experience with network protocols and security principles.
* Ability to work on high impact and high visibility projects as part of small, dynamic team
* Active TS/SCI clearance; willingness to take a polygraph exam
* Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
* Active DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
* Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
Additional Qualifications:
* 1+ year of experience with incident response processes, and security operations center (SOC) workflows
* Experience developing and maintaining technical documentation for playbooks and integrations
* Experience with other programming languages, including Java, JavaScript, or Ruby
* Experience with version control and related software, including Git, CVS, and SVN
* Experience integrating developing AWS or Azure cloud-based solutions
* Experience delivering solutions in accordance with Agile best practices and the SELC
* Experience developing a roadmap for SOAR maturity and expansion meet mission objectives
* Knowledge of micro-services concepts and SOAR to ES integration
* Splunk Enterprise Certified Architect and Splunk Enterprise Security Certified Admin certifications
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Reston, VA 20191 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Cyber Security Architect/Engineer (Endace Platform Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
We are seeking a seasoned Endace Implementation & Sustainment Engineer to architect, deploy, integrate, and operate Endace packet capture, monitoring, and network recording platforms across a large, distributed enterprise. The ideal candidate has deep experience in network forensics, packet analytics, and telemetry architecture, combined with hands-on familiarity supporting Zero Trust visibility and segmentation strategies. This role owns the end-to-end lifecycle for Endace systems-including design, installation, configuration, maintenance, and long-term optimization-while integrating the platform with SIEM/SOAR, detection engineering, analytics tooling, and broader Zero Trust security controls.
This position will be based at Reston, VA
Responsibilities:
* Lead the design, deployment, and configuration of Endace appliances for enterprise-scale packet capture.
* Develop packet capture strategies aligned to network architecture, mission requirements, and Zero Trust visibility controls.
* Build high-availability, scalable, and resilient Endace clusters across data centers and cloud-connected environments.
* Integrate Endace with analytics ecosystems (SIEM, SOAR, NDR, EDR, threat intel, investigation platforms).
* Maintain and tune Endace hardware and software for optimal performance, including upgrades, patching, sensor tuning, and storage lifecycle.
* Troubleshoot packet loss, timing drift, flow indexing issues, clock synchronization, and performance bottlenecks.
* Monitor device health, capacity, and telemetry fidelity to ensure consistent, forensically-sound data capture.
* Manage PCAP retention strategies, indexing policies, and storage allocation across distributed deployments.
* Align Endace visibility architecture with Zero Trust telemetry requirements and continuous verification workflows.
* Ensure packet capture and telemetry support identity-aware network segmentation and policy enforcement.
* Support development of traffic baselines, segmentation decisions, and enforcement models using Endace data.
* Automate deployment, configuration, and sustainment workflows using Ansible, Terraform, or scripting.
* Build dashboards, runbooks, playbooks, and investigation workflows for SOC, threat hunters, and IR teams.
* Partner with network engineering, cloud teams, and security operations to ensure full-spectrum telemetry coverage.
* Deliver training and guidance to operational teams on Endace platform usage and best practices.
Job Requirements
Qualifications:
* 5+ years of experience in cybersecurity engineering, network security, or SOC tooling.
* Strong understanding of packet analysis, network forensics, deep packet inspection, and PCAP workflows.
* Proficiency in Linux administration and scripting (Python, Bash, PowerShell).
* Experience supporting regulated or high-security environments (DoD, IC, FedRAMP, PCI, HIPAA).
* Familiarity with Zero Trust Architecture, segmentation principles, and identity-centric policy models.
* Demonstrated experience integrating Endace with SIEMs, SOAR tools, and investigation platforms.
* Solid understanding of core network protocols (TCP/IP, TLS, DNS, HTTP/S, NetFlow/IPFIX, etc.)
* Active TS/SCI clearance; willingness to take a polygraph exam
* Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
* DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
* Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
* Proven hands-on experience deploying, configuring, and managing Endace DAG/EndaceProbe solutions in production.
* Familiarity with complementary network tools (Zeek, Suricata, Arkime, NDR platforms).
* Experience with cloud networking and packet capture strategies in AWS, Azure, or GCP.
* Certifications such as CISSP, GCIA, GNFA, GCIH, or vendor-specific credentials.
* Strong analytical and problem-solving ability.
* Excellent communication and documentation skills.
* Able to collaborate with cross-functional technical and non-technical stakeholders.
* Comfortable leading architecture conversations and driving platform strategy.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Reston, VA 20191 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Cyber Security Architect/Engineer (Arkime Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
* Architect, deploy, and configure Arkime clusters, capture nodes, viewer nodes, and storage subsystems.
* Design packet capture strategies aligned to network topology, mission requirements, and Zero Trust monitoring needs.
* Develop and automate deployment workflows using scripts, orchestration tools, and configuration management.
* Integrate Arkime with SIEM, SOAR, EDR, and threat intel platforms to enrich detection and investigation workflows.
* Conduct regular tuning of parsers, views, tags, and sessions to support detection engineering and threat hunting.
* Perform version upgrades, patching, configuration changes, data lifecycle management, and log retention optimization.
* Align Arkime data capture with Zero Trust Architecture (ZTA) telemetry requirements.
* Support development of visibility baselines, identity-aware policies, and segmentation enforcement strategies.
* Work with network engineering, cloud engineering, and security operations to ensure end-to-end telemetry coverage.
* Develop dashboards, queries, workflows, and documentation for SOC, detection engineers, and incident responders.
* Provide training, playbooks, and technical expertise to internal engineering and operations teams.
Job Requirements
Qualifications:
* 5+ years of experience in cybersecurity, network security engineering, or security operations.
* Strong background in packet analysis, PCAP management, DPI technologies, and network protocols (TCP/IP, DNS, TLS, HTTP, etc.).
* Familiarity with Suricata, Zeek, or other packet/flow analysis platforms.
* Experience engineering within a Zero Trust Architecture (ZTA), including segmentation, continuous verification, and identity-centric access.
* Proficiency with Linux systems administration, containers, and distributed systems.
* Experience leveraging SIEM/SOAR platforms and integrating packet telemetry with detection workflows.
* Familiarity with automation tools (Ansible, Terraform, scripts) and infrastructure-as-code concepts.
* Active TS/SCI clearance; willingness to take a polygraph exam
* Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
* DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
* Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
* Hands-on experience implementing and maintaining Arkime/Moloch in production environments.
* Experience with cloud networking and traffic inspection in AWS/Azure/GCP.
* Experience with Elastic Stack or similar search/index pipelines.
* Background supporting regulated or high-security environments (FedRAMP, DoD, IC, PCI, etc.).
* Security certifications (e.g., CISSP, GCIH, GCIA, GNFA, GCED).
* Strong analytical and problem-solving skills.
* Ability to translate technical findings into clear operational guidance.
* Comfortable leading discussions with engineers, analysts, architects, and leadership.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Reston, VA 20191 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Cyber Security Architect/Engineer (Trellix Endpoint DLP Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
* Design, deploy, manage, and operationalize enterprise endpoint data protection controls as a Trellix Endpoint Data Loss Prevention (DLP) Engineer.
* Serve as the technical owner for Trellix EDR/DLP components, ensuring sensitive data is identified, monitored, and protected across the enterprise.
* Use analytical, engineering, and stakeholder engagement capabilities to assist with information protection strategy.
* Play a core role in safeguarding the organization's data.
* Build an enterprise-grade data protection program with visibility across security leadership, risk, and operational teams.
* Lead enterprise deployment, configuration, tuning, and maintenance of Trellix Endpoint DLP, including policy automation, agent health, and performance optimization.
* Assist with analyzing, testing, and operationalizing DLP policies, rulesets, classification logic, and incident workflows aligned to data governance requirements.
* Integrate the Trellix DLP platform with SIEM, SOAR, CASB, CMDB, and identity security tools for end-to-end visibility and automated response.
* Analyze DLP telemetry, alerts, and incidents to identify data exfiltration patterns, risk signals, and false positives.
* Partner with legal, compliance, data governance, and HR to define rulesets, thresholds, and exception workflows.
* Develop engineering playbooks, standard operating procedures, and runbooks for policy lifecycle management.
* Manage endpoint agent health, upgrades, change control, and enterprise-wide platform stability.
* Conduct root-cause analysis for user-impact, policy misfires, broken workflows, and endpoint inventory issues.
* Provide guidance to application and business teams on data classification, tagging, and secure data-handling practices.
* Align DLP implementations with Zero Trust, privacy, and enterprise data protection strategies.
Job Requirements
Qualifications:
* 4+ years of experience in cybersecurity engineering, data protection, or endpoint security
* 2+ years of experience with Trellix Endpoint DLP, Trellix ePO, associated modules, agent-based controls, and Windows and Linux endpoint management and troubleshooting
* 2+ years of experience developing and deploying solutions for highly regulated industries such as healthcare, finance, federal, defense, and energy
* Experience with integration patterns across SIEM, SOAR, and identity security platforms, and broader Trellix or McAfee security stack such as ENS, DLP Monitor, DLP Discover, and ePO
* Experience with scripting in PowerShell, Python, or Bash for automation and workflow optimization, creating classification taxonomies, and integrating DLP with enterprise data catalogs
* Ability to interpret data movement patterns and policy outcomes
* Active TS/SCI clearance; willingness to take a polygraph exam
* Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree
* DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
* Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date
* Knowledge of data loss prevention concepts, endpoint security controls, and data classification models
* Possession of strong analytical skills
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Reston, VA 20191 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Cyber Security Architect/Engineer - CAASM - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
* Be responsible for the successful installation, configuration, and integration of the Cyber Asset Attack Surface Management (CAASM) platform within complex client environments.
* Hold an understanding of IT infrastructure, networking, and security tools to ensure seamless data onboarding and high customer satisfaction.
* Collaborate closely with clients, project managers, and internal engineering teams to deliver a comprehensive and accurate asset inventory solution.
* Configure and manage CAASM solution deployment in accordance with the systems engineering lifecycle (SELC).
* Monitor, design, and onboard new data connections by integrating CAASM with a wide range of third-party security and management tools.
* Create and maintain deployment scripts and automation processes to streamline installations and enhance data management efficiency.
* Analyze and interpret complex Cyber datasets to uncover insights, performing exploratory analysis and ensuring data quality, accuracy, and reliability.
* Document the installation and configuration of production deployments.
* Perform system monitoring and ongoing daily maintenance for deployed CAASM instances, ensuring system health, data integrity, and adherence to security best practices.
* Participate in on-call rotation for Production support.
Job Requirements
Qualifications:
* 4+ years of experience architecting, implementing, integrating, and managing COTS solutions for hybrid cloud environments
* 3+ years of experience performing systems administration in Windows, Linux, or VMware environments, including performing basic troubleshooting, installation, configuration, monitoring system performance or availability, and performing security upgrades
* 3+ years of experience programming and debugging, shell scripting, application containerization, data storage, and retrieval from a variety of sources
* 2+ years of experience deploying, hosting, monitoring, and securing solutions for Government customers
* Experience with APIs and data pipelines to ingest, normalize, and correlate asset data with vulnerability feeds, threat intelligence, and security findings from multiple sources
* Knowledge of scripting languages for automation and troubleshooting, and of APIs with their usage for data integration
* Active TS/SCI clearance; willingness to take a polygraph exam
* Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
* DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
* Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
Additional Qualifications:
* 2+ years of experience automating workflows securely with COTS products via RESTful API's
* 2+ years of experience integrating Axonius or Armis
* 2+ years of experience in securing solutions in accordance with Federal regulatory compliance frameworks
* Experience supporting Federal DoD and Intelligence Agencies, including supporting large Federal programs
* Experience with SAFe Agile methodologies in a scaled enterprise setting
* Experience with cloud platforms, particularly AWS and Azure
* Knowledge of networking fundamentals
* Ability to provide support in an IT operations and maintenance role, including ticket work information updates, issue response, and remediation
* Possession of excellent communication and relationship skills to articulate technical topics and build consensus among stakeholders
* Possession of strong problem-solving and analytical skills
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Reston, VA 20191 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Cyber Security Architect/Engineer (IDS/IPS Cyber Security Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
We are seeking an experienced Network Intrusion Detection Engineer to join our cybersecurity team. The ideal candidate must possess strong Linux engineering expertise with experience managing YAML configuration files, and how these configurations integrate and influence the Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS). Highly qualified candidates will have hands-on engineering and O&M experience with Suricata and/or other network-based IDS capabilities such as Snort, VectraAI, Corelight, etc. You will play a critical role in deploying, tuning, and maintaining the IDS within a complex enterprise IT environment, primarily running on Red Hat Enterprise Linux.
This position will be based at Reston, VA
What You'll Work On:
* Designing, deploying, and maintaining IDS/IPS systems across a large enterprise with multiple networks.
* Developing, reviewing, and optimizing YAML configuration files to ensure optimal detection capabilities and minimal false positives.
* Understanding and managing the interaction between YAML configuration and its runtime engine, including rule loading, protocol decoding, and logging.
* Tuning IDS/IPS for optimal performance with NICs, including configuring Direct Memory Access (DMA), RSS queues, interrupt coalescing, and leveraging any NIC-specific acceleration features.
* Collaborating with security teams to integrate IDS/IPS with SIEM and other security monitoring platforms.
* Troubleshooting installation and operational issues specific to IDS/IPS on Red Hat Enterprise Linux, addressing compatibility, kernel module requirements, SE-Linux policies, and performance tuning.
* Identifying and mitigating common pitfalls encountered when deploying IDS/IPS in large-scale enterprise environments, including package dependencies, system resource constraints, and NIC driver/configuration issues.
* Provide detailed documentation and runbooks for Suricata configuration, tuning NICs, and deployment processes.
* Staying current with Platform IDS/IPS Software releases, NIC driver updates, and community best practices for network interface tuning and IDS/IPS performance enhancement.
Job Requirements
Qualifications:
* Proven experience working with Snort, Suricata, Corelight or other network IDS/IPS systems, including hands-on management of its YAML configuration files.
* Strong knowledge of configuration structure, syntax, and how it controls detection rules, logging, and output modules.
* Extensive experience administering Red Hat Enterprise Linux (RHEL) systems, including package management (yum/dnf), kernel module management, SE-Linux configuration, and system optimization via Unix CLI and other remote shell access vectors (pu TTY, SSH, etc.)
* Hands-on experience tuning Suricata for high-performance packet capture with Napatech NICs or similar advanced network interface cards.
* Familiarity with NIC-specific features such as DMA, Receive Side Scaling (RSS), interrupt moderation, and offload capabilities, and how to configure them for Suricata.
* Experience troubleshooting Suricata's interaction with NIC drivers and kernel modules in an enterprise environment.
* TS/SCI clearance with the ability to obtain a counter-intelligence polygraph.
* Bachelor's degree and 5+ years of experience supporting IT projects and activities or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
* DoD 8570 IAT Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification.• Ability to obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 60 days of start date.• Ability to obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 60 days of start date.
* Experience with scripting languages (Bash, Python, YAML/Ansible, etc.) to automate Suricata configuration and deployment tasks.
* Proficient understanding of network protocols, intrusion detection methodologies, and security event correlation.
* Experience integrating Suricata with Splunk, or other SIEM solutions.
* Knowledge of containerized deployments of Suricata (Docker/Kubernetes) in enterprise environments.
* Detection and Response (NDR) solutions, including Trellix/FireEye, Corelight, Endace, Vectra AI, Dark Trace, Cisco Security Network Analytics, Open XDR, Fortinet FortiNDR, Trend Vision, etc.
* Ability to be a self-starter, work without considerable direction, and work with a team.
* Possession of excellent verbal and written communication skills, including client briefings and coordinating efforts
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Reston, VA 20191 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Cyber Security Architect/Engineer (Forescout Cyber Security Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
Work with an expert team focused on implementing and operating next generation security solutions for government and commercial clients.
Perform hands-on evaluation, implementation, and operation of leading security Cyber defense tools and technologies.
Apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures.
Apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges.
You will join a team and engineer solutions to complex challenges for customers using your knowledge of network engineering, system administration and Active Directory.
In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors.
With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers.
Requirements
Qualifications:
• Experience architecting and designing IP networks, including developing and documenting network topologies
• Experience with network engineering, including physical or logical, such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW or appliances or network administration services, such as Active Directory, Guests LANS, and domain management
• Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures
• 1+ years of experience with performing systems administration Windows or Linux Administration, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades
• TS/SCI clearance with the ability to obtain a counter-intelligence polygraph.
• Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
• DoD 8570 IAT Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification.
• Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date.
• Experience with deployment or daily maintenance of Forescout CounterACT appliances
• Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems
• Ability to install and deploy Forescout in a customer environment
• Ability to integrate Cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk
• Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation
• Ability to be a self-starter, work without considerable direction, and work with a team
• Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Cyber Security Architect/Engineer - CAASM - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
Be responsible for the successful installation, configuration, and integration of the Cyber Asset Attack Surface Management (CAASM) platform within complex client environments.
Hold an understanding of IT infrastructure, networking, and security tools to ensure seamless data onboarding and high customer satisfaction.
Collaborate closely with clients, project managers, and internal engineering teams to deliver a comprehensive and accurate asset inventory solution.
Configure and manage CAASM solution deployment in accordance with the systems engineering lifecycle (SELC).
Monitor, design, and onboard new data connections by integrating CAASM with a wide range of third-party security and management tools.
Create and maintain deployment scripts and automation processes to streamline installations and enhance data management efficiency.
Analyze and interpret complex Cyber datasets to uncover insights, performing exploratory analysis and ensuring data quality, accuracy, and reliability.
Document the installation and configuration of production deployments.
Perform system monitoring and ongoing daily maintenance for deployed CAASM instances, ensuring system health, data integrity, and adherence to security best practices.
Participate in on-call rotation for Production support.
Requirements
Qualifications:
• 4+ years of experience architecting, implementing, integrating, and managing COTS solutions for hybrid cloud environments
• 3+ years of experience performing systems administration in Windows, Linux, or VMware environments, including performing basic troubleshooting, installation, configuration, monitoring system performance or availability, and performing security upgrades
• 3+ years of experience programming and debugging, shell scripting, application containerization, data storage, and retrieval from a variety of sources
• 2+ years of experience deploying, hosting, monitoring, and securing solutions for Government customers
• Experience with APIs and data pipelines to ingest, normalize, and correlate asset data with vulnerability feeds, threat intelligence, and security findings from multiple sources
• Knowledge of scripting languages for automation and troubleshooting, and of APIs with their usage for data integration
• Active TS/SCI clearance; willingness to take a polygraph exam
• Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
• DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
• Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
Additional Qualifications:
• 2+ years of experience automating workflows securely with COTS products via RESTful API's
• 2+ years of experience integrating Axonius or Armis
• 2+ years of experience in securing solutions in accordance with Federal regulatory compliance frameworks
• Experience supporting Federal DoD and Intelligence Agencies, including supporting large Federal programs
• Experience with SAFe Agile methodologies in a scaled enterprise setting
• Experience with cloud platforms, particularly AWS and Azure
• Knowledge of networking fundamentals
• Ability to provide support in an IT operations and maintenance role, including ticket work information updates, issue response, and remediation
• Possession of excellent communication and relationship skills to articulate technical topics and build consensus among stakeholders
• Possession of strong problem-solving and analytical skills
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Cyber Security Architect/Engineer (Illumio Zero Trust Segmentation Platform Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
You will directly shape our enterprise Zero Trust program, influence architectural decisions, and help safeguard mission-critical systems by deploying one of the most advanced segmentation platforms in the industry. This is a high-impact engineering role with visibility across security, cloud, and executive leadership. We are seeking an experienced Illumio Zero Trust Segmentation Platform Engineer to lead the design, implementation, and operational support of our enterprise micro-segmentation strategy. This role will own the Illumio Adaptive Security Platform (ASP) across hybrid environments and play a critical part in our Zero Trust initiative, partnering with security architects, cloud engineers, application teams, and IT operations to reduce lateral movement risk and strengthen our overall security posture.
This position will be based at Reston, VA
Responsibilities:
• Lead the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.
• Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.
• Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.
• Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
• Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.
• Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
• Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.
• Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.
• Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.
• Contribute to architectural standards, documentation, and enterprise security playbooks.
Requirements
Qualifications:
• 5+ years in cybersecurity, cloud security, or infrastructure engineering.
• 3+ years of expertise in Linux/Windows systems, virtualization (VMware, Hyper-V), and cloud environments (AWS, Azure, or GCP).
• 2+ years of experience with network security (firewalls, routing, segmentation models, TCP/IP).
• 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments (finance, healthcare, federal, or energy).
• 1+ year experience with infrastructure automation tools (Ansible, Terraform, or similar).
• 1+ year experience with REST APIs, scripting (Python, Bash, PowerShell), or automation frameworks.
• Active TS/SCI clearance; willingness to take a polygraph exam
• Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
• Active DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
• Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
• Prior Hands-on experience deploying and managing Illumio Adaptive Security Platform (ASP) in enterprise environments.
• Illumio certifications (e.g., Illumio ASP Professional or Expert).
• Experience with CMDB systems (ServiceNow), SIEM/SOAR tools, or vulnerability management platforms.
• Strong understanding of Zero Trust principles, micro-segmentation, and lateral movement mitigation
• Strong analytical and problem-solving skills with the ability to translate policies into technical controls.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Cyber Security Architect/Engineer (Endace Platform Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
We are seeking a seasoned Endace Implementation & Sustainment Engineer to architect, deploy, integrate, and operate Endace packet capture, monitoring, and network recording platforms across a large, distributed enterprise. The ideal candidate has deep experience in network forensics, packet analytics, and telemetry architecture, combined with hands-on familiarity supporting Zero Trust visibility and segmentation strategies. This role owns the end-to-end lifecycle for Endace systems-including design, installation, configuration, maintenance, and long-term optimization-while integrating the platform with SIEM/SOAR, detection engineering, analytics tooling, and broader Zero Trust security controls.
This position will be based at Reston, VA
Responsibilities:
Lead the design, deployment, and configuration of Endace appliances for enterprise-scale packet capture.
Develop packet capture strategies aligned to network architecture, mission requirements, and Zero Trust visibility controls.
Build high-availability, scalable, and resilient Endace clusters across data centers and cloud-connected environments.
Integrate Endace with analytics ecosystems (SIEM, SOAR, NDR, EDR, threat intel, investigation platforms).
Maintain and tune Endace hardware and software for optimal performance, including upgrades, patching, sensor tuning, and storage lifecycle.
Troubleshoot packet loss, timing drift, flow indexing issues, clock synchronization, and performance bottlenecks.
Monitor device health, capacity, and telemetry fidelity to ensure consistent, forensically-sound data capture.
Manage PCAP retention strategies, indexing policies, and storage allocation across distributed deployments.
Align Endace visibility architecture with Zero Trust telemetry requirements and continuous verification workflows.
Ensure packet capture and telemetry support identity-aware network segmentation and policy enforcement.
Support development of traffic baselines, segmentation decisions, and enforcement models using Endace data.
Automate deployment, configuration, and sustainment workflows using Ansible, Terraform, or scripting.
Build dashboards, runbooks, playbooks, and investigation workflows for SOC, threat hunters, and IR teams.
Partner with network engineering, cloud teams, and security operations to ensure full-spectrum telemetry coverage.
Deliver training and guidance to operational teams on Endace platform usage and best practices.
Requirements
Qualifications:
• 5+ years of experience in cybersecurity engineering, network security, or SOC tooling.
• Strong understanding of packet analysis, network forensics, deep packet inspection, and PCAP workflows.
• Proficiency in Linux administration and scripting (Python, Bash, PowerShell).
• Experience supporting regulated or high-security environments (DoD, IC, FedRAMP, PCI, HIPAA).
• Familiarity with Zero Trust Architecture, segmentation principles, and identity-centric policy models.
• Demonstrated experience integrating Endace with SIEMs, SOAR tools, and investigation platforms.
• Solid understanding of core network protocols (TCP/IP, TLS, DNS, HTTP/S, NetFlow/IPFIX, etc.)
• Active TS/SCI clearance; willingness to take a polygraph exam
• Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
• DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
• Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
• Proven hands-on experience deploying, configuring, and managing Endace DAG/EndaceProbe solutions in production.
• Familiarity with complementary network tools (Zeek, Suricata, Arkime, NDR platforms).
• Experience with cloud networking and packet capture strategies in AWS, Azure, or GCP.
• Certifications such as CISSP, GCIA, GNFA, GCIH, or vendor-specific credentials.
• Strong analytical and problem-solving ability.
• Excellent communication and documentation skills.
• Able to collaborate with cross-functional technical and non-technical stakeholders.
• Comfortable leading architecture conversations and driving platform strategy.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Cyber Security Architect/Engineer - Case Management Engineer - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
We are looking for a Backend Security Engineering Case Management Engineer to architect and implement the backend foundation of our next-generation case management platform. This role is focused on backend systems design, data architecture, integration engineering, and workflow enablement, ensuring the platform serves as a scalable, extensible system-of-record for security programs.
This position will be based at Reston, VA
Responsibilities:
Collaborate with program architects to design the backend infrastructure for a modern security case management solution, including data models, storage layers, metadata standards, and service orchestration.
Establish engineering standards for API design, data handling, security, error management, and auditability.
Design and implement high-performance APIs, microservices, and system components that support case lifecycle workflows.
Build the foundational taxonomy and object models for cases, entities, evidence, workflows, and automation triggers.
Drive platform scalability, reliability, and performance through best-practice engineering patterns.
Develop backend integrations between the case management platform and security tools such as SIEM, EDR, vulnerability management platforms, threat intelligence sources, identity systems, and ticketing/ITSM platforms.
Build and maintain API services, event pipelines, data ingestion jobs, and synchronization services.
Implement automated backend workflows to support case routing, enrichment, evidence linkage, and cross-platform data federation.
Ensure the platform adheres to industry security practices, including authentication, authorization, and secure data transmission.
Maintain documentation including backend architecture diagrams, schema definitions, integration specs, and operational runbooks.
Collaborate with frontend teams, product owners, and platform architects to ensure cohesive end-to-end system design.
Requirements
Qualifications:
• 5+ years of backend engineering or platform engineering experience.
• Strong proficiency in backend languages (e.g., Python, Java, Go, Node.js).
• Demonstrated experience architecting or integrating with workflow, case/ticketing, or automation platforms (e.g., ServiceNow, Jira, TheHive, custom-built systems).
• Deep experience designing APIs (REST, GraphQL) and event-driven systems.
• Strong skills in integrating complex systems using APIs, message queues, streaming platforms, and ETL pipelines.
• Solid knowledge of security engineering concepts, secure coding standards, and platform hardening for highly regulated environments (e.g. DoD, Energy, Finance).
• Active TS/SCI clearance; willingness to take a polygraph exam
• Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ year of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
• DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
• Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
• Strong architectural and system design capabilities
• Ability to translate platform requirements into scalable backend implementations
• Strong attention to detail with a focus on reliability and maintainability
• Excellent communication and cross-functional collaboration
• Database expertise (SQL and NoSQL), schema design, and performance optimization.
• Exposure to cloud-native architecture in AWS, GCP, or Azure.
• Familiarity with data modeling for security or operational systems.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Cyber Security Architect/Engineer (IDS/IPS Cyber Security Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
We are seeking an experienced Network Intrusion Detection Engineer to join our cybersecurity team. The ideal candidate must possess strong Linux engineering expertise with experience managing YAML configuration files, and how these configurations integrate and influence the Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS). Highly qualified candidates will have hands-on engineering and O&M experience with Suricata and/or other network-based IDS capabilities such as Snort, VectraAI, Corelight, etc. You will play a critical role in deploying, tuning, and maintaining the IDS within a complex enterprise IT environment, primarily running on Red Hat Enterprise Linux.
This position will be based at Reston, VA
What You'll Work On:
• Designing, deploying, and maintaining IDS/IPS systems across a large enterprise with multiple networks.
• Developing, reviewing, and optimizing YAML configuration files to ensure optimal detection capabilities and minimal false positives.
• Understanding and managing the interaction between YAML configuration and its runtime engine, including rule loading, protocol decoding, and logging.
• Tuning IDS/IPS for optimal performance with NICs, including configuring Direct Memory Access (DMA), RSS queues, interrupt coalescing, and leveraging any NIC-specific acceleration features.
• Collaborating with security teams to integrate IDS/IPS with SIEM and other security monitoring platforms.
• Troubleshooting installation and operational issues specific to IDS/IPS on Red Hat Enterprise Linux, addressing compatibility, kernel module requirements, SE-Linux policies, and performance tuning.
• Identifying and mitigating common pitfalls encountered when deploying IDS/IPS in large-scale enterprise environments, including package dependencies, system resource constraints, and NIC driver/configuration issues.
• Provide detailed documentation and runbooks for Suricata configuration, tuning NICs, and deployment processes.
• Staying current with Platform IDS/IPS Software releases, NIC driver updates, and community best practices for network interface tuning and IDS/IPS performance enhancement.
Requirements
Qualifications:
• Proven experience working with Snort, Suricata, Corelight or other network IDS/IPS systems, including hands-on management of its YAML configuration files.
• Strong knowledge of configuration structure, syntax, and how it controls detection rules, logging, and output modules.
• Extensive experience administering Red Hat Enterprise Linux (RHEL) systems, including package management (yum/dnf), kernel module management, SE-Linux configuration, and system optimization via Unix CLI and other remote shell access vectors (pu TTY, SSH, etc.)
• Hands-on experience tuning Suricata for high-performance packet capture with Napatech NICs or similar advanced network interface cards.
• Familiarity with NIC-specific features such as DMA, Receive Side Scaling (RSS), interrupt moderation, and offload capabilities, and how to configure them for Suricata.
• Experience troubleshooting Suricata's interaction with NIC drivers and kernel modules in an enterprise environment.
• TS/SCI clearance with the ability to obtain a counter-intelligence polygraph.
• Bachelor's degree and 5+ years of experience supporting IT projects and activities or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
• DoD 8570 IAT Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification.• Ability to obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 60 days of start date.• Ability to obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 60 days of start date.
• Experience with scripting languages (Bash, Python, YAML/Ansible, etc.) to automate Suricata configuration and deployment tasks.
• Proficient understanding of network protocols, intrusion detection methodologies, and security event correlation.
• Experience integrating Suricata with Splunk, or other SIEM solutions.
• Knowledge of containerized deployments of Suricata (Docker/Kubernetes) in enterprise environments.
• Detection and Response (NDR) solutions, including Trellix/FireEye, Corelight, Endace, Vectra AI, Dark Trace, Cisco Security Network Analytics, Open XDR, Fortinet FortiNDR, Trend Vision, etc.
• Ability to be a self-starter, work without considerable direction, and work with a team.
• Possession of excellent verbal and written communication skills, including client briefings and coordinating efforts
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Cyber Security Architect/Engineer (Trellix Endpoint DLP Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
Design, deploy, manage, and operationalize enterprise endpoint data protection controls as a Trellix Endpoint Data Loss Prevention (DLP) Engineer.
Serve as the technical owner for Trellix EDR/DLP components, ensuring sensitive data is identified, monitored, and protected across the enterprise.
Use analytical, engineering, and stakeholder engagement capabilities to assist with information protection strategy.
Play a core role in safeguarding the organization's data.
Build an enterprise-grade data protection program with visibility across security leadership, risk, and operational teams.
Lead enterprise deployment, configuration, tuning, and maintenance of Trellix Endpoint DLP, including policy automation, agent health, and performance optimization.
Assist with analyzing, testing, and operationalizing DLP policies, rulesets, classification logic, and incident workflows aligned to data governance requirements.
Integrate the Trellix DLP platform with SIEM, SOAR, CASB, CMDB, and identity security tools for end-to-end visibility and automated response.
Analyze DLP telemetry, alerts, and incidents to identify data exfiltration patterns, risk signals, and false positives.
Partner with legal, compliance, data governance, and HR to define rulesets, thresholds, and exception workflows.
Develop engineering playbooks, standard operating procedures, and runbooks for policy lifecycle management.
Manage endpoint agent health, upgrades, change control, and enterprise-wide platform stability.
Conduct root-cause analysis for user-impact, policy misfires, broken workflows, and endpoint inventory issues.
Provide guidance to application and business teams on data classification, tagging, and secure data-handling practices.
Align DLP implementations with Zero Trust, privacy, and enterprise data protection strategies.
Requirements
Qualifications:
• 4+ years of experience in cybersecurity engineering, data protection, or endpoint security
• 2+ years of experience with Trellix Endpoint DLP, Trellix ePO, associated modules, agent-based controls, and Windows and Linux endpoint management and troubleshooting
• 2+ years of experience developing and deploying solutions for highly regulated industries such as healthcare, finance, federal, defense, and energy
• Experience with integration patterns across SIEM, SOAR, and identity security platforms, and broader Trellix or McAfee security stack such as ENS, DLP Monitor, DLP Discover, and ePO
• Experience with scripting in PowerShell, Python, or Bash for automation and workflow optimization, creating classification taxonomies, and integrating DLP with enterprise data catalogs
• Ability to interpret data movement patterns and policy outcomes
• Active TS/SCI clearance; willingness to take a polygraph exam
• Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree
• DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
• Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date
• Knowledge of data loss prevention concepts, endpoint security controls, and data classification models
• Possession of strong analytical skills
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Cyber Security Architect/Engineer (Splunk Automation Engineer) - JB
Reston, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Reston, VA
Responsibilities:
Lead the design and development of solutions to automate Cyber and Cloud services and activities.
Develop and optimize data workflows and solution architectures that allow for intelligent storage, query, and exploration of datasets for Cyber and Cloud operations and engineering.
Work closely with clients to develop and integrate highly available, scalable, and secure solutions that integrate security platforms across open source and COTS products.
Work on developing extensible, scalable, and secure Cloud-based A&O services that can be adopted and integrated in a wide range of Cybersecurity use cases.
Requirements
Qualifications:
• 4+ years of experience in security engineering and architecture for highly regulated industries, including government, healthcare, or financial
• 3+ years of experience with software development or scripting, including Python development, and Splunk, including creating searches with Splunk Search Processing Language (SPL), building dashboards, and working with Splunk Enterprise Security (ES)
• 2+ years of experience working with REST APIs to integrate Splunk SOAR with other security and IT tools
• 1+ years of experience of Linux/Windows logging, administration and debugging support for automation workflows
• Experience with network protocols and security principles.
• Ability to work on high impact and high visibility projects as part of small, dynamic team
• Active TS/SCI clearance; willingness to take a polygraph exam
• Bachelor's degree and 5+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
• Active DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
• Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of start date
Additional Qualifications:
• 1+ year of experience with incident response processes, and security operations center (SOC) workflows
• Experience developing and maintaining technical documentation for playbooks and integrations
• Experience with other programming languages, including Java, JavaScript, or Ruby
• Experience with version control and related software, including Git, CVS, and SVN
• Experience integrating developing AWS or Azure cloud-based solutions
• Experience delivering solutions in accordance with Agile best practices and the SELC
• Experience developing a roadmap for SOAR maturity and expansion meet mission objectives
• Knowledge of micro-services concepts and SOAR to ES integration
• Splunk Enterprise Certified Architect and Splunk Enterprise Security Certified Admin certifications
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Cyber Security Analyst
Security system engineer job at ManTech
General information Requisition # R64178 Posting Date 11/21/2025 Security Clearance Required TS/SCI w/ Poly Remote Type Onsite Time Type Full time Description & Requirements Unlock the secrets of intelligence with MANTECH! Join a dynamic team at the forefront of national security, providing advanced solutions to government intelligence agencies. Since 1968, we've been solving the toughest challenges with groundbreaking tech. Explore thrilling projects in Digital Transformation, Cybersecurity, IT, Data Analytics and Software Development. Elevate your career and make a difference. Your adventure begins now-unleash your potential with MANTECH!
* This is for a future opportunity*
MANTECH seeks a motivated, career and customer-oriented Cyber Security Analyst to join our team onsite in Herndon, VA or Reston, VA in support of a high-priority mission at one of our National Intelligence Customers.
Responsibilities include but are not limited to:
* Responsible for supporting the acceptance of an Authorization to Operate (ATO) for the new Modern Data Platform (MDP) transformation
* Support the documenting and navigating the customer's accreditation process for ATO
* Work closely with Security Engineers to ensure security solutions are meeting customer accreditation requirements and following security controls
* Will use RMF (Risk Management Framework) NIST 800-53, NISPOM, and ICDs for cybersecurity and information security protocols to drive tasking and ensure compliance
* ISSE/ISSO tasking in support of documenting and navigating the customer's accreditation process for ATO
Minimum Qualifications:
* Bachelor's degree in a related field OR additional equivalent work experience
* 5+ years of experience relevant to this position
* Experience with Software Development Lifecycle, application security, Cloud principles and engineering
* Expert in System Accreditation process and protocols within the Intelligence Community
* Experience with NIST 800-53 and implementing Risk Management Framework
* Understanding of vulnerability assessment tools like Rapid7 or Nessus
* Knowledge of User Access Monitoring and Identity Access Management
* Experience creating and reviewing system design documents and workflows
Preferred Qualifications:
* Experience with Terraform, SIEM and AI/ML Governance
* Knowledge of cross-domain solutions, Zero Trust, and/or IDP (Identity Provider) integration skills
* DoD 8570-compliant certification (e.g., Security+, CYSA+, CEH, or CISSP)
* Experience with security tools such as Splunk, CrowdStrike, or Wireshark
* Familiarity with SCAP tools, STIGs, or automated compliance reporting
* Knowledge of incident response and digital forensics processes
Clearance Requirements:
* Must have active TS/SCI with Polygraph
Physical Requirements:
* Must be able to remain in a stationary position 50% of the time
* Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
* Frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
Auto-Apply