Cybersecurity Engineer with Security Clearance
New Cybersecurity Engineer St. Louis, MO Apply **ACTIVE TS/SCI SECURITY CLEARANCE REQUIRED** D2 is your place.You make it your own by embracing autonomy, seizing opportunity, and being trusted to deliver your best every day.Our work depends on a TS/SCI cleared Information Security Engineer joining our team to support our intelligence customer in Springfield, VA or Arnold, MO. This position supports the Geospatial Services & Solutions business area to provide high-quality, cost-effective solutions to the customer.As part of the GSS team, the cybersecurity engineer’s expertise is needed to support a sophisticated enterprise environment. How an Cyber Security Engineer Will Make an Impact This role is responsible for implementing and maintaining cybersecurity controls across enterprise infrastructure, including Windows, Linux, network, virtualization, and cloud environments.The successful candidate will execute RMF continuous monitoring activities, implement STIG’s, remediate vulnerabilities, manage POA&Ms, and support Assessment & Authorization (A&A) efforts in accordance with NIST SP 800-53, ICD 503, and DOD security requirements.This is a hands-on technical role requiring experience hardening systems, responding to security findings, supporting enterprise security tools, and collaborating with infrastructure teams to maintain a secure, compliant, and resilient operating environment. Specific Duties and ResponsibilitiesAct as the representative of the Information System Security Manager (ISSM), ensuring compliance with DoD and Intelligence Community (IC) information security policies, procedures, and directivesSupport efforts to operate, maintain, and dispose of information system materials in accordance with RMF, NIST, ICD 503, and applicable security directives, policies, and System Security Plans (SSPs)Implement and maintain Security Technical Implementation Guides (STIGs) across Windows, Linux (RHEL), network, virtualization, and cloud environments to ensure compliance with DoD security requirementsExecute technical remediation activities to address security findings identified through ACAS, STIG reviews, vulnerability scans, and security assessmentsManage assigned Plan of Action and Milestones (POA&Ms) by implementing technical solutions, validating remediation efforts, documenting completion evidence and supporting POA&M closureSupport RMF continuous monitoring activities by implementing required security controls, maintaining A&A documentation, and ensuring compliance with NIST SP 800-53 and ICD 503 requirementsGenerate and implement required cybersecurity awareness training, ensuring users understand their security responsibilities prior to system accessInitiate protective and corrective measures when security incidents, vulnerabilities, or compliance issues have been identifiedEnsure IA hardware, software, and operating systems comply with approved security configuration guides and organizational security baselinesImplement and enforce IA policies and procedures as defined by RMF authorization packages and A&A documentationAbility to work on multiple projects simultaneously in a dynamic, fast-paced, team-oriented environmentPerform Operations & Sustainment (O&S) functions for enterprise network security infrastructure, including firewalls, web gateways, mail gateways, IDS/IPS, load balancers, performance monitoring tools, and management systemsPerform maintenance, hardening, patching, and advanced configuration of security infrastructure to protect enterprise networks from emerging cyber threatsSupport and secure Cloud Infrastructure, including AWS-based technologiesUtilize enterprise security tools such as ACAS, HBSS, Carbon Black, Tanium, RedSeal, and related cybersecurity platformsConduct forensic network traffic and log analysis to investigate incidents, isolate issues, and respond to analyst alertsRespond to escalated cybersecurity and infrastructure troubleshooting requestsMaintain and administer network infrastructure standards, documentation, and fault-tolerant configurationsPresent monitoring testing, compliance, and remediation results and reports as requiredPerform and support integration testing, security validation, and operational readiness activitiesDevelop automation and scripting solutions using Powershell, Bash, Python, or similar languages to improve security operations and complianceCollaborate with systems, network, and cloud engineering teams to implement secure architectures and operational best practicesParticipate in special projects as required Required Knowledge, Experience and Skills:Bachelor’s Degree in Computer Science, Engineering, Cybersecurity, Information Technology or a related technical discipline, or the equivalent combination of education, professional training or work experience5+ years of related experience in data security administrationExperience implementing and supporting the Risk Management Framework (RMF) throughout the system lifecycleStrong knowledge of NIST SP 800-53, ICD 503, and DoD security policiesHands-on experience implementing, maintaining, and remediating Security Technical Implementation Guides (STIGs) across Windows, Linux (RHEL), network, virtualizationExperience executing technical remediation activities for vulnerabilities identified through ACAS, STIG compliance reviews, and other vulnerability management toolsExperience in writing, maintaining, and closing Plan of Action and Milestones (POA&Ms), including documenting remediation evidence and validating corrective actionsExperience implementing and maintaining Assessment & Authorization (A&A) documentation and supporting RMF continuous monitoring activitiesExperience with security tools such as ACAS, HBSS, Carbon Black, Tanium, RedSeal, or equivalentExperience installing, hardening, deploying, documenting, and troubleshooting network perimeter security technologiesExperience scripting with Unix/Linux (RHEL), Bash, Python, and PowerShellStrong analytical, troubleshooting, documentation, and communication skillsAbility to work independently while managing multiple priorities Desired Knowledge, Experience, and Skills:Experience supporting NGA TESR environmentsExperience supporting Intelligence Community Assessment & Authorization processesExperience with security automation and Infrastructure-as-CodeExperience with enterprise SIEM platforms such as Splunk or ElasticDOD 8570/8140 compliant certifications such as Security+, CISSP, CAP, or CASP+ Additional InformationAll your information will be kept confidential according to EEO guidelines.Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically $125 - $135k. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.Highlights of our benefits include Health/Dental/Vision, 401(k) match, Accrued PTO, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and more! D2 Technical Services is committed to a merit-based recruitment process and encourages applications from all qualified individuals.As a Veteran-Owned Small Business, we particularly welcome applications from veterans who have the requisite skills and experience.Job applicants that are interested in one of our openings and may require a reasonable accommodation to participate in the job application or interview process, should contact us to request an accommodation.