Full-Time

Information Systems Security Engineer

Posted on 1/29/2025

Leidos

Leidos

10,001+ employees

Provides technology solutions for defense and healthcare

Data & Analytics
Enterprise Software
Cybersecurity
Defense

Compensation Overview

$85.2k - $153.9kAnnually

Mid, Senior

Company Historically Provides H1B Sponsorship

El Segundo, CA, USA

US Citizenship, US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Required Skills
PowerShell
Bash
Kubernetes
Microsoft Azure
Python
CloudFormation
AWS
Jenkins
Terraform
Ansible
Google Cloud Platform

You match the following Leidos's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • US Citizen and Possession of a current Active DoD Secret Clearance
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field, and 4 – 8 years of prior relevant years of experience in information security engineering with a focus on cloud and hybrid cloud environments
  • Hands-on experience with AWS, Azure, or Google Cloud Platform security tools and configurations
  • Proficiency in cloud security frameworks such as CSA CCM (Cloud Controls Matrix), FedRAMP, or similar
  • Experience embedding security in CI/CD pipelines using tools like Jenkins, GitLab, or GitHub Actions
  • Strong understanding of identity and access management (IAM), data encryption, key management, and network security in cloud and hybrid systems
  • Experience with automation tools (e.g., Terraform, Ansible, or CloudFormation) and scripting languages (e.g., Python, PowerShell, or Bash) for security automation
  • Familiarity with containerization and orchestration platforms like Kubernetes
  • Strong analytical and problem-solving skills with the ability to communicate complex technical concepts to non-technical stakeholders
  • Possess Industry certifications such as CISSP, CCSP, AWS Certified Security – Specialty, Microsoft Certified: Azure Security Engineer Associate, or GCP Professional Cloud Security Engineer
  • Experience with zero trust architecture principles and implementations
  • Knowledge of hybrid cloud networking (e.g., VPNs, ExpressRoute, Direct Connect)
  • Familiarity with DevSecOps pipelines and integration of security tools like SAST/DAST scanners
  • Experience conducting penetration testing or security assessments in cloud environments
  • Knowledge of advanced threat detection and prevention techniques, including EDR/XDR solutions
  • Your resume must demonstrate experience: Implementing Department of Defense cybersecurity policies, directives, instructions, and standards for software-intensive mission systems
  • Supporting milestones such as audits, IATT and ATOs
  • Developing Risk Management Framework assessment and authorization documentation
  • Writing and executing cybersecurity test procedures for validation of Risk Management Framework control compliance
  • Monitoring and analyzing outputs of cybersecurity-related tools for vulnerabilities, reportable security incidents, and residual risks
  • Reviewing and/or authoring documentation such as, Cybersecurity Strategies, Program Protection Plans, Anti-Tamper Plans, Counterintelligence Support Plans, Integrated Threat Assessment Reports, Operations Security Plans, Continuous Monitoring Plans, and Defensive Cyberspace Operations Plans
  • Working in eMASS and/or Xacta.
Responsibilities
  • Serve as Information Systems Security Engineer for cloud and hybrid cloud environments
  • Conduct security assessments, vulnerability analysis, and risk management for cloud-based and hybrid infrastructures, ensuring compliance with RMF (Risk Management Framework) standards
  • Author, review, coordinate and submit cybersecurity authorization required artifacts to eMASS (including change requests) to achieve milestones such as Interim Authority to Test (IATT) and Authorization to Operate (ATO)
  • Collaborate with development, infrastructure, and operations teams to implement security controls for cloud-based services such as AWS, Microsoft Azure, and Google Cloud Platform (GCP), Oracle Cloud Infrastructure (OCI)
  • Independently develop and maintain system security documentation, including drafting, reviewing, editing, and recommending guidance for Standard Operating Procedures (SOP), Tactics, Techniques, & Procedures (TTP), Plan of Action and Milestones (POA&M) and Federal Information Security Management Act (FISMA) Score Card
  • Ensure the secure integration of on-premises systems with cloud services, including identity and access management, data protection, and network security controls
  • Support the Authorization to Operate (ATO) process by preparing and maintaining security artifacts, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Continuous Monitoring (ConMon) documentation
  • Evaluate and recommend security tools, technologies, and best practices for use in cloud and hybrid environments, such as CSPM (Cloud Security Posture Management) and SIEM solutions
  • Participate in systems development lifecycle (SDLC) with a focus on security
  • Support system integration, testing, and troubleshooting for security compliance
  • Assisting with security audits, vulnerability assessments, and pen-testing activities
  • Monitor and respond to security incidents and threats within the cloud and hybrid environments, leveraging automation and orchestration to enhance incident response
  • Perform secure configuration and hardening of cloud-native services, virtual machines, and containers in accordance with industry standards like CIS Benchmarks and STIGs
  • Stay up-to-date on emerging threats, vulnerabilities, and cloud technologies to proactively strengthen the organization’s security posture.
Desired Qualifications
  • Master’s degree in computer science
  • Proficiency with SIEM tools like Splunk, Microsoft Sentinel, or AWS Security Hub
  • Knowledge of cloud-native security tools (e.g., AWS GuardDuty, Azure Defender, or Google Security Command Center)
  • Experience in supporting compliance audits for hybrid environments (e.g., DoD Cloud SRG)

Leidos operates in the technology, science, and engineering sectors, focusing on enhancing safety, health, and efficiency. The company provides specialized solutions in defense, aviation, information technology, and biomedical research, catering to government agencies, private companies, and healthcare organizations. Leidos offers services such as cybersecurity, data analytics, systems integration, and software development, which are tailored to meet the unique needs of its clients. This approach helps clients tackle complex challenges and improve their operational efficiency. Revenue is generated through long-term contracts and service agreements, ensuring a stable income stream. Leidos is recognized for its commitment to sustainability, corporate responsibility, and workplace diversity, making it a top employer and a leader in promoting inclusion. The company's goal is to deliver advanced solutions while positively impacting communities and the environment.

Company Stage

IPO

Total Funding

$36.5M

Headquarters

Reston, Virginia

Founded

1969

Simplify Jobs

Simplify's Take

What believers are saying

  • Increased demand for AI-driven cybersecurity solutions benefits Leidos' offerings.
  • Growing interest in sustainable technology aligns with Leidos' sustainability commitment.
  • Rising government defense spending could boost Leidos' defense sector operations.

What critics are saying

  • Increased competition in AI and data science may challenge Leidos' market position.
  • Multiple new VP appointments may lead to strategic misalignment.
  • Investor pressure for short-term gains may impact long-term strategies.

What makes Leidos unique

  • Leidos excels in defense, aviation, IT, and biomedical research markets.
  • The company is recognized for its commitment to sustainability and corporate responsibility.
  • Leidos is a top employer for veterans and promotes workplace diversity.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Medical, dental, & vision insurance

Health Savings account

Income protection

PTO

Paid parental leave

Jury duty pay

Bereavement leave

401(k) Retirement Plan

Employee Stock Purchase Plan

Family Benefits