New
Security Engineer
![]() | |
![]() United States, Virginia, Warrenton | |
![]() | |
Security Engineer Warrenton, VA Pay From: $120,000 per year MUST: Secret Clearance Required Experienced Security Engineer Splunk Power User certification required 8+ years of related experience required Foundational knowledge of network and information technology concepts HTTP / HTTPS request / response Networking - routing, switching, firewalls Ports, Protocols, and Services understanding Some exposure to architecture diagrams Understanding of Operating Systems administrative functions / common operations and events Log onboarding to include agent onboarding and syslog collection Understanding of Security Operations and Triage Process Ability to understand security events and packet capture events Exposure to NIST 800 53 Security control specifically to Audit and Accountability requirements Prior experience of asset management tool (Tanium preferred) Prior experience with ArcSight (preferred) Prior experience with Stealth watch (preferred) Experience with Splunk, ArcSight ESM, ArcSight Logger, and other Ticketing tools Certification required: Security+, CEH, CISSP, GCIH, GCIA, or equivalent Bachelors degree in IT required DUTIES: Perform information systems security (ISS) monitoring and event detection for FAA National Airspace System (NAS) assets Monitor numerous sources of collected security data including system security event logs, system Internet Protocol (IP) data flows, Intrusion Detection System (IDS) alerts and payload, and system performance monitoring services Coordinate with other NAS monitoring entities to obtain all required event information and full situational awareness Perform security event correlation and risk determination functions to define event response needs Perform NAS system security event response functions Use information provided via event monitoring and detection to coordinate FAA responses to resolved detected events Establish and maintain security event tickets throughout the event lifecycle Coordinate with the FAA Intelligence Organizations to obtain relevant external threat Intelligence from various sources via secure means as required by information classification Process acquired Intelligence into actionable information that has relevance to NAS operations and define any required mitigation actions Support cyber security Tabletop Exercises (TTX) on-site and remotely and participate in After Action Reviews (AAR) Quadrant is an affirmative action/equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, status as a protected veteran, or status as an individual with a disability. |