About this role
Standard Job Description
WHAT WE’RE DOING
At Lockheed Martin's Rotary and Mission System's Cyber Resiliency organization, we are dedicated to engineering and deploying cutting-edge cyber defense solutions across our corporation. Our focus on cybersecurity is paramount to ensuring mission success for our customers, even in the face of evolving cyber threats.
THE WORK
As a member of our team, you will be involved in a variety of activities aimed at enhancing the cyber resiliency of the AFSOC ACS program. We seek an experienced Cybersecurity Engineer to design, deploy, and sustain enterprise cybersecurity engineering solutions. This role will lead the implementation of core security controls, ensure alignment with Risk Management Framework (RMF) and Certification & Accreditation (C&A) requirements, and collaborate closely with system stakeholders and government security officials (ISSO) to maintain a resilient, compliant security posture across the system lifecycle. This includes tasks such as:
• Design and deploy cybersecurity engineering tools and controls to meet the following requirements: Event Management/SIEM, Data Loss Prevention (DLP), Data Backup & Disaster Recovery, File Integrity Monitoring (FIM), and Host-based Intrusion Detection
• Utilize Ansible playbooks for automated deployment, configuration, and ongoing management of security systems and hardened environments
• Proficiently administer and utilize GitLab for source code management, CI/CD pipeline orchestration, and integrated security scanning (SAST/DAST/container) to enforce secure development lifecycle (SDLC) practices within a cybersecurity engineering role
• Harden operating systems (Windows, Linux), applications, and network devices against current threats and CIS/NIST benchmarks
• Perform regular patching and updating of vulnerable third-party software; maintain vulnerability management lifecycle
• Continuously monitor the security posture of the system; analyze logs, alerts, and trends to identify and remediate gaps
• Provide end-to-end support for maintaining Certification and Accreditation (C&A) of the system, including all RMF package documentation, artifacts, and submission to the ISSM
• Collaborate with system engineers, developers, and operations teams to ensure the cybersecurity posture is integrated and maintained throughout the system development lifecycle (SDLC)
Please Note:
• This position requires a government Secret security clearance; you must be a US Citizen for consideration
• This position will involve around 25% travel to our customer sites throughout the U.S and abroad
WHO WE ARE
Lockheed Martin is driven by innovation, integrity, and a commitment to excellence. We believe in applying the highest standards of business ethics and visionary thinking to everything we do. As part of our team, you will collaborate with a cross functional team of technical professionals including software and systems engineers and radar operators to maintain the cybersecurity posture of the Space Fence Radar System
We are looking for individuals who are passionate about cybersecurity and eager to contribute their skills and expertise to our mission
You should have demonstrable knowledge in cybersecurity administration or systems administration, through practical, hands-on work experience
Strong interpersonal and communication skills, critical thinking abilities, and the ability to collaborate effectively with a team are essential
You should have a solid working knowledge of Linux or Windows based systems and have an active CompTIA Security+ certification or higher IAT Certification
Having experience with Windows Active Directory and a familiarity with DISA STIGs
Basic Qualifications
• Bachelors degree in Computer Science, Information Technology, Cybersecurity, or related field (or equivalent professional experience)
• 5+ years of experience, or Master's Degree with 3+ year in cybersecurity engineering, or a related role
• Demonstrable and relevant cybersecurity engineering or systems administration experience
• Demonstrable and relevant proficiency with Ansible, Python, or similar automation tooling for system deployment and configuration
• Demonstrated experience hardening OS and applications using benchmarks
• Experience with patch management and third-party software vulnerability remediation
• Information Assurance Technician (IAT) Level II Certification or higher (e.g. CompTIA Security+ or CISSP)
• Ability to obtain an Secret DoD Secret security clearance prior to starting this position. Obtaining a Security Clearance requires US citizenship
• Ability to travel up to 25% travel to our customer sites throughout the U.S.
Desired Skills
• Proven administration and operational expertise with vulnerability and risk assessment tools such as Tenable Security Center, Nessus, and/or Assured Compliance Assessment Solution (ACAS) for vulnerability scanning, risk assessment, and continuous compliance monitoring.
• Hands-on administration and real-time monitoring of Endpoint Protection Platform (EPP) and Endpoint Detection and Response (EDR) such as Trellix Endpoint Security Solution (ESS), SentinelOne Singularity and Microsoft Defender to enforce endpoint protection, detect threats, and maintain enterprise-wide security posture
• Proficiency with SIEM solutions, log aggregation, security event analysis, and development of interactive dashboards for threat visibility and incident response using such tools as Splunk and Grafana.
• Industry-recognized Linux/Red Hat (RHCSA/RHCE) or Windows Server certifications validating operating system administration and security hardening capabilities
• Experience managing Windows Active Directory and implementing Group Policy Objects (GPOs) for security compliance, access control, and policy enforcement
• Working knowledge of DISA Security Technical Implementation Guides (STIGs) and applied experience using them for system hardening, validation, and RMF compliance
• Strong systems administration troubleshooting skills to rapidly diagnose, isolate, and remediate complex cybersecurity, networking, and infrastructure issues
• Exceptional communication and interpersonal skills, with experience supporting geographically disburse teams and interfacing with government security stakeholders (ISSM/ISSO) to achieve accreditation and compliance objectives
Pay Information
Full-Time Salary Range: $88300.00 - $163900.00
At Lockheed Martin, we know mission success starts with taking care of our people. Our Total Rewards program is designed to attract top talent, support your well-being, and help you grow—both professionally and personally.
The salary range for this position is as listed on the requisition. Please note that the salary information listed is a general guideline only. Lockheed Martin considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/ training, key skills as well as market(work location) and business considerations when extending an offer.
Benefits offered: Medical, Dental, Vision, Flexible work arrangements and schedules (e.g., 4x10), 401(k) match, Paid time off, Holidays, Parental Leave, EAP, Flexible Spending Accounts, Education Assistance, Life Insurance, Short-Term Disability, and Long-Term Disability.
* Annual short-term and/or long-term incentive compensation programs may be offered depending on the position. Payments under these annual programs are not guaranteed and can vary from year to year and are tied to a range of performance metrics.
* For (Washington state applicants only) Non-represented full-time employees: accrue at least 10 hours per month of Paid Time Off (PTO) to be used for incidental absences and other reasons; receive at least 90 hours for holidays. Represented full time employees accrue 6.67 hours of Vacation per month; accrue up to 52 hours of sick leave annually; receive at least 96 hours for holidays. PTO, Vacation, sick leave, and holiday hours are prorated based on start date during the calendar year.