About this role
Type of Requisition:
Pipeline
Clearance Level Must Currently Possess:
Interim Secret
Clearance Level Must Be Able to Obtain:
Top Secret/SCI
Public Trust/Other Required:
None
Job Family:
Cyber and IT Risk Management
Job Qualifications:
Skills:
Cyber Defense, Cyber Operations, Forensic Sciences, Information Assurance, Information System Security
Certifications:
None
Experience:
7 + years of related experience
US Citizenship Required:
Yes
Job Description:
Seize your opportunity to make a personal impact as a Cybersecurity Engineer. GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career.
At GDIT, people are our differentiator. You will help ensure today is safe and tomorrow is smarter. Our work depends on a Cybersecurity Engineer joining our team as a key technical authority supporting Cybersecurity Service Provider (CSSP) and Defensive Cyberspace Operations (DCO). This role is critical in safeguarding global digital infrastructure, ensuring cyber resiliency across mission systems that support detection, tracking, and interception of threats. The Cybersecurity Engineer is the Technical Lead that elevates the mission by guiding analysts, engineers, and responders to meet strict operational timelines, improve detection fidelity, and strengthen defensive capabilities against sophisticated adversaries.
HOW THE CYBERSECURITY ENGINEER WILL MAKE AN IMPACT
- Technical Leadership & Oversight Serve as the senior technical authority across cybersecurity functions including incident response, cyber defense, threat hunt, forensics, vulnerability management, and threat emulation
- Provide SME-level guidance to ensure all technical activities meet DoD/client cybersecurity requirements, CJCSM 6510.01B, and CSSP governance standard
- Lead technical planning, coordination, and execution for mission-essential operational requirements
- Operational Support & Mission Execution Oversee 24/7 cyber defense monitoring, detection, and incident classification activities under Cyberspace Domain Awareness
- Ensure rapid response performance, maintaining CSSP Mean Time to Respond (MTTR) requirements
- Lead teams performing vulnerability analysis, ACAS posture rollups, IAVM trending, PPSM compliance assessments, and endpoint security rollups
- Oversee forensic analysis capability, ensuring adherence to NIST SP 800‑86, maintaining chain‑of‑custody, and delivering full forensic case reports
- Threat Intelligence & Proactive Defense Guide intelligence-driven threat hunt missions; correlate OSINT/CSINT with internal telemetry to identify advanced adversary TTPs
- Lead the development of analytics, rulesets, and countermeasures for CSSP toolsets (SIEM/EDR/Elastic Stack)
- Support Cyber Threat Emulation activities using GFE toolsets to test defensive posture against realistic adversary behaviors.
- Technical Documentation, Quality & Compliance Oversee technical documentation including SOPs, TTPs, CTOs, COAs, forensic reports, vulnerability reports, and training materials.
- Ensure all outputs meet DoD plain-language standards and are delivered in Government-approved formats.
- Support RMF lifecycle activities including SSP updates, control assessments, POA&M management, audit log review, and incident response testing.
- Tooling, Automation & Innovation Lead development and refinement of Elastic dashboards, data enrichment pipelines, anomaly detection models, and threat analytics.
- Oversee Cybersecurity Business Intelligence Dashboards on unclassified and classified networks, ensuring daily refreshed, validated data pipelines.
- Drive automation and testing strategies to evolve defensive operations toward proactive, data-driven cyber defense.
WHAT YOU’LL NEED TO SUCCEED:
- Education : Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field
- Required Certifications : CISSP – Certified Information systems Security Professional required
- ISSAP – Information Systems Security Architecture Professional strongly preferred
- ISSEP – Information Security Systems Engineering Professional preferred
- CISM – Certified Information Security Manager preferred
- GIAC Certifications GCIH, GCIA, GCED preferred
- CCSP – Certified Cloud Security Professional preferred
- PMP- Project Management Professional preferred
- Required Experience : 7+ years of cybersecurity engineering or cyber operations experience in DoD or federal environments
- 3+ years in a technical leadership role
- Demonstrated experience leading incident response, threat hunting, vulnerability management, or forensic analysis teams
- Required Technical Skills : Extensive experience with SIEM/EDR platforms, Elastic Stack, ACAS, and cyber defense analytics
- Strong knowledge of RMF
- Deep understanding of cyber incident response processes and detection engineering
- Experience developing SOPs, TTPs, dashboards, forensic reports, and cyber analytics
- Security Clearance Level : Secret clearance required
- Top Secret preferred
- Required Skills and Abilities: Strong leadership and team‑coordination skills across diverse cyber and CSSP disciplines
- Excellent communication skills for both technical and executive audiences
- Strong analytical and problem‑solving abilities under pressure
- Ability to work across multiple classification levels and sensitive environments
- Preferred Skills: GIAC, Elastic, or DoD 8140/8570 certifications (GREM, GCFA, GCTI, CEH, CISSP, CCSP, etc.)
- Experience in CTE environments or advanced adversary simulation.
- Prior leadership experience within an accredited CSSP
- Experience overseeing dashboard/data pipeline engineering
- Location : Alabama on‑site; situational telework only when authorized.
The likely salary range for this position is $111,155 - $150,385. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
Less than 10%
T elecommuting Options:
Onsite
Work Location:
USA AL Huntsville
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.
Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc .
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans