Network Security Tools Engineer

LeidosSuitland, MarylandOn-siteFull-timeMid level, 2–5 yearsListed 1 hour ago

Apply now

About this role

Network Security Tools Engineer

Location: Suitland, MD
Clearance Required: Active TS/SCI

Leidos is seeking an experienced Network Security Tools Engineer to join our cybersecurity team in Suitland, MD . This position will support the security technologies and infrastructure that provide visibility, monitoring, detection, and protection across a mission critical enterprise environment.

In this role, you will be responsible for the administration, engineering, optimization, integration, and troubleshooting of enterprise network security tools and platforms. You will work closely with cybersecurity operations, network engineering, and other technical teams to ensure security tools remain available, properly configured, and capable of providing reliable data to support threat detection and incident response.

The ideal candidate will bring a strong combination of networking and cybersecurity experience , along with hands on experience supporting enterprise security technologies such as SIEM, IDS/IPS, firewalls, endpoint security, packet capture, and network visibility solutions.

Primary Responsibilities

- Deploy, configure, administer, upgrade, and maintain enterprise network security tools and platforms, including SIEM, firewalls, proxy servers, packet capture solutions, IDS/IPS, endpoint security, and network visibility technologies.
- Monitor the health, availability, performance, and data ingestion of cybersecurity tools to ensure continuous visibility across the enterprise environment.
- Troubleshoot and resolve security tool performance, connectivity, integration, configuration, and data collection issues.
- Support the integration of security technologies across enterprise networks, systems, and other cybersecurity platforms.
- Collaborate with Security Operations Center teams to optimize security tools, tune detection capabilities, reduce false positives, and improve the quality of security alerts.
- Provide technical support during cybersecurity incidents and service outages, including troubleshooting issues affecting security monitoring and data collection.
- Support the integration and automation of cybersecurity tools using scripting and orchestration technologies.
- Analyze network and security telemetry to identify gaps, performance issues, and opportunities to improve security visibility.
- Maintain accurate technical documentation, including architecture diagrams, system configurations, runbooks, standard operating procedures, and asset inventories.
- Collaborate with cybersecurity, network, systems, and engineering teams to support the continued operation and improvement of the enterprise security infrastructure.

Basic Qualifications

- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related technical discipline with 8+ years of relevant professional experience or a Master's degree with 6+ years of relevant professional experience. Equivalent practical experience may be considered in lieu of a degree, as permitted by contract requirements.
- Active TS/SCI security clearance in DISS.
- Hands on experience supporting information security, network administration, cybersecurity engineering, or enterprise security tools.
- Strong understanding of networking concepts and protocols, including TCP/IP, DNS, DHCP, HTTP/S, routing, and network security architecture .
- Experience administering or supporting enterprise cybersecurity technologies such as Splunk, Microsoft Sentinel, Elastic, CrowdStrike, Palo Alto Networks, Wireshark, SteelCloud , or similar platforms.
- Experience working with network and enterprise operating systems, including Linux and Windows .
- Experience troubleshooting complex network, system, or cybersecurity tool issues.
- Ability to work effectively with technical teams in a mission critical enterprise environment.

Required Certifications:

- Active DoD 8570 compliant industry certification listed under CSSP Infrastructure Support such as SecurityX, CISSP, CASP, etc., or the ability to obtain the required certification within 30 days of hire.

Preferred Qualifications

- Vendor specific certifications from Cisco, Palo Alto Networks, Splunk, or similar technology providers.
- Experience with IDS/IPS, SIEM, endpoint detection and response, firewalls, packet capture, network visibility, or security orchestration technologies.
- Experience with scripting or automation using Python, PowerShell, Bash , or similar technologies.
- Familiarity with cloud networking and security controls within AWS, Azure, or Google Cloud Platform environments.
- Experience integrating cybersecurity tools with automation or Security Orchestration, Automation, and Response platforms.
- Experience supporting cybersecurity operations or Security Operations Center environments.

NITESONI

DABAOPP1

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

##

##

## Original Posting:
October 2, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

## Pay Range:
Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.