Full-Time

Principal Cyber Engineer

Confirmed live in the last 24 hours

Leidos

Leidos

10,001+ employees

Provides technology solutions for defense and healthcare

Compensation Overview

$104.7k - $189.2k/yr

Senior, Expert

Company Historically Provides H1B Sponsorship

Aurora, CO, USA + 1 more

More locations: Chantilly, VA, USA

In Person

US Top Secret Clearance, US Citizenship Required

Category
Cybersecurity
IT & Security
Required Skills
PowerShell
Bash
Microsoft Azure
Python
Git
AWS
Risk Management
Jenkins
Terraform
Ansible
Google Cloud Platform
Requirements
  • Active Top Secret/SCI (TS/SCI) with Polygraph security clearance required. Must be U.S. Citizen.
  • Bachelor's degree and 8 to 12 years of prior relevant experience. Experience may be considered in lieu of a degree.
  • Understanding of DoD IT security protocols and requirements
  • Knowledge of security frameworks, standards, and best practices (NIST, CIS, ISO 27001, OWASP).
  • Extensive experience in configuring and managing security tools such as SIEM, EDR, IDS/IPS, firewalls, and vulnerability management platforms.
  • Expertise in secure cloud architecture and cloud security practices (AWS, Azure, GCP).
  • Strong understanding of network security protocols, encryption technologies, and authentication methods.
  • Hands-on experience with scripting and automation (e.g., Python, PowerShell, Bash) to enhance security processes.
  • Familiarity with DevSecOps principles and tools such as Git, Jenkins, Terraform, or Ansible.
Responsibilities
  • Lead the design, implementation, and management of advanced cybersecurity solutions that protect critical systems and sensitive data.
  • Serve as a technical authority, providing strategic direction and hands-on expertise in securing enterprise infrastructure, applications, and cloud environments.
  • Collaborate with cross-functional teams to develop, deploy, and maintain cybersecurity frameworks, ensuring compliance with industry standards and regulatory requirements.
  • Play a pivotal role in evaluating emerging threats, driving innovation, and mentoring junior cybersecurity engineers to foster a culture of continuous improvement and operational excellence.
  • Development of software and hardware for solutions in support of offensive and defensive security, researching cyber technology domains for trends, vulnerabilities or known flaws to ensure that critical missions are resilient to cyber exploits and attacks.
  • Implement coding foundation in various languages to create tools and techniques, perform code analysis, conduct code manipulation and develop coding solutions tailored to the area of need.
  • Offensive development responsibilities include vulnerability research and analysis, reversing engineering threats to determine methods of exploitation, malware research, researching innovative tools and techniques, developing malicious payloads, and manipulating code execution.
  • Defensive development responsibilities include protection of data, networks and net-centric capabilities, as well as detection of, identification of and response to attacks.
  • Securing development environments and software through application security architecture software evaluations web application vulnerability assessment penetration testing and fuzzing, malware research and vulnerability mitigation.
  • Work to achieve key project/program objectives and deliverables.
  • Responsible for entire projects or processes spanning multiple technical areas.
  • Manage large projects or processes with moderate impact on the achievement of sub-family results.
  • Design, implement, and maintain secure architectures for on-premises, cloud, and hybrid environments.
  • Develop and enforce security standards, policies, and procedures based on industry best practices such as NIST, CIS, and ISO 27001.
  • Evaluate and integrate security technologies such as firewalls, SIEMs, EDR, IDS/IPS, WAFs, and DLP to enhance the organization’s security posture.
  • Design and implement secure network architectures, ensuring segmentation and zero-trust principles.
  • Develop and manage advanced threat detection and response strategies to protect against evolving cyber threats.
  • Lead security incident investigations, root cause analysis (RCA), and implement corrective and preventive actions (CAPA).
  • Monitor and analyze security events using Security Information and Event Management (SIEM) tools and other threat intelligence platforms.
  • Develop and test incident response plans (IRPs) and disaster recovery processes to ensure business continuity.
  • Implement and maintain Identity and Access Management (IAM) systems, enforcing least privilege and role-based access controls (RBAC).
  • Manage Multi-Factor Authentication (MFA) and Privileged Access Management (PAM) solutions to prevent unauthorized access.
  • Conduct regular access audits and enforce policy-based identity governance.
  • Design and manage secure cloud architectures in AWS, Azure, and/or Google Cloud (GCP), ensuring compliance with security standards.
  • Integrate security into DevOps/CI/CD pipelines to enable secure development practices (DevSecOps).
  • Leverage Infrastructure as Code (IaC) to automate security configurations and reduce misconfigurations.
  • Develop and manage vulnerability management programs, ensuring timely remediation of discovered vulnerabilities.
  • Conduct penetration testing, red team/blue team exercises, and security audits to assess and enhance system resilience.
  • Collaborate with system administrators and developers to prioritize and remediate identified vulnerabilities.
  • Ensure compliance with regulatory standards such as GDPR, HIPAA, PCI-DSS, SOC 2, and FedRAMP.
  • Develop and maintain risk management processes, including conducting risk assessments and defining mitigation strategies.
  • Collaborate with legal, compliance, and internal audit teams to ensure alignment with regulatory requirements.
  • Collaborate with IT, engineering, and development teams to integrate security best practices into all stages of the system lifecycle.
  • Lead security architecture reviews, risk assessments, and compliance audits.
  • Mentor and provide technical leadership to junior security engineers, promoting knowledge sharing and professional growth.
  • Advocate for a “security-first” mindset across the organization.
Desired Qualifications
  • Certified Information Systems Security Professional (CISSP).
  • GIAC Security Expert (GSE) or other GIAC certifications.
  • Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP).
  • AWS Certified Security – Specialty, Azure Security Engineer Associate, or Google Professional Cloud Security Engineer.
  • Certified Cloud Security Professional (CCSP).
  • Experience conducting penetration testing, red team/blue team exercises, and vulnerability assessments.
  • Knowledge of Zero Trust security models and micro-segmentation principles.

Leidos operates in the technology, science, and engineering sectors, focusing on enhancing safety, health, and efficiency. The company provides specialized solutions in defense, aviation, information technology, and biomedical research, catering to government agencies, private companies, and healthcare organizations. Leidos offers services such as cybersecurity, data analytics, systems integration, and software development, which are tailored to meet the unique needs of its clients. This approach helps clients tackle complex challenges and improve their operational efficiency. Revenue is generated through long-term contracts and service agreements, ensuring a steady income stream. Leidos is recognized for its commitment to sustainability, corporate responsibility, and workplace diversity, making it a respected employer and a leader in promoting inclusion. The company's goal is to deliver advanced solutions while positively impacting communities and the environment.

Company Size

10,001+

Company Stage

IPO

Headquarters

Reston, Virginia

Founded

1969

Simplify Jobs

Simplify's Take

What believers are saying

  • Acquisition of Kudu Dynamics enhances AI capabilities in cybersecurity.
  • Partnership on quantum magnetometer technology positions Leidos as a leader in quantum navigation.
  • Collaboration with Protect AI strengthens AI security for U.S. government agencies.

What critics are saying

  • Integration challenges from acquiring Kudu Dynamics may affect AI capabilities.
  • Focus on quantum technology may face technical and regulatory hurdles.
  • Involvement in hypersonic systems could attract geopolitical tensions and regulatory challenges.

What makes Leidos unique

  • Leidos excels in defense, aviation, IT, and biomedical research sectors.
  • The company is recognized for its innovative solutions and workplace culture.
  • Leidos' commitment to sustainability and corporate responsibility sets it apart.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Medical, dental, & vision insurance

Health Savings account

Income protection

PTO

Paid parental leave

Jury duty pay

Bereavement leave

401(k) Retirement Plan

Employee Stock Purchase Plan

Family Benefits

Company News

GovCon Wire
Jun 24th, 2025
Leidos Recruits Healthcare Industry Expert Andrew Burchett as VP, Chief Technology and Innovation Officer

Andrew Burchett, a healthcare industry leader, has joined Leidos as vice president and chief technology and innovation officer.

GIS Resources
Jun 17th, 2025
Leidos Advances Quantum Technology Navigation to Tackle GPS Jamming

Leidos is spearheading efforts to develop quantum technology navigation systems designed to protect critical infrastructure from GPS jamming and spoofing attacks.

ExecutiveBiz
Jun 6th, 2025
Leidos Partners With Frequency Electronics on Quantum Magnetometer for MagNav Technology

Leidos partners with Frequency Electronics on quantum magnetometer for MagNav technology.

ExecutiveBiz
May 30th, 2025
Leidos National Security Sector President Roy Stevens Receives 2025 Wash100 Award

Leidos national security sector president Roy Stevens receives 2025 Wash100 Award.

PR Newswire
May 28th, 2025
Leidos acquires Kudu Dynamics, advancing AI capabilities for cyber warfighters

/PRNewswire/ -- Leidos (NYSE:LDOS) announced today that it has acquired Kudu Dynamics, accelerating Leidos' rapid scaling of artificial intelligence...