Senior Information Systems Security Engineer - focus on Splunk/ACAS/Nessus experience
Amentum
Warrenton, VA (In Person)
$175,000 Salary, Full-Time
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
Work Schedule:
5 Days (Mon - Fri); 8 hrs/Day; 40 hrs/wklyEssential Responsibilities:
The duties and responsibilities of the Senior Information Systems Security Engineer include, but are not limited to the following: Endpoint Security Engineering (Trellix/ePO)Ecosystem Management:
Expertly design, configure, and maintain Trellix components (ePO, Trellix Agent, DLP, HIPS, Policy Auditor, ABM, and VSE) across Windows and Linux environments.Policy Development:
Author and deploy endpoint security policies for ENS modules (Threat Prevention, Firewall, Web Control) based on DISA STIGs and organizational needs.Threat Mitigation:
Develop custom signatures, rules, and exceptions to address zero-day threats and specific operational requirements.Operational Continuity:
Validate custom exceptions to ensure uninterrupted operation of mission-critical processes without compromising compliance. Vulnerability Management (ACAS/Nessus)Architecture & Strategy:
Design enterprise-wide vulnerability scanning strategies and manage the deployment of Security Centers and Nessus scanners.Advanced Troubleshooting:
Serve as the final escalation point for complex scan issues, credentialing problems, and system communication failures.Risk Reporting:
Configure automated reporting of compliance data to continuous monitoring systems and risk-scoring repositories.Security Integration & Engineering Tool Orchestration:
Integrate Trellix and ACAS with tools such as Splunk, XSOAR, and ServiceNow to automate workflows and enhance incident response.RMF Support:
Provide authoritative recommendations and ACAS-generated artifacts to support the Assessment and Authorization (A&A) process and RMF packages for Authority to Operate (ATO).Strategic Oversight:
Lead the maintenance and scalability of test, development, and operational environments, collaborating with Network and DevSecOps teams to enhance resilience.Multi-Tier Support:
Deliver Tier 1-3 maintenance and incident response for the full cybersecurity portfolio (ACAS, Trellix, Splunk, XSOAR).Compliance Mastery:
Deep understanding of DISA STIGs, NIST 800-53, and the Risk Management Framework (RMF).Minimum Requirements:
Must have active Top-Secret clearance with SCI or TS with the ability to acquire SCI Knowledge and experience with NESSUS/ACAS and Trellix administration Experience in Splunk role while working in a Splunk Clustered Environment Must be able to work a 40-hour work week, normally Monday through Friday. Ability to work overtime during critical peaks and be available to meet last-minute requests for overtime if needed. Ability to travel (5-10%) primarily within 75 miles. Familiarity with MS Office applications such as Excel, Word, Outlook, SharePoint, Project, and Visio. Exceptional attention to detail; excellent verbal and written communication skills; strong critical thinking, organizational, time-management, and problem-solving skills. Ability to work both independently and as part of a team in a dynamic environment.Clearance Required:
Must have active Top-Secret clearance with SCI or TS with the ability to acquireSCI Minimum Education:
Bachelor's Degree in a related field (Cyber and/or Engineering)Minimum Years of Experience:
8 years of relevant experienceRequired Certifications:
Must possess, or be able to obtain, one of the following 8140 IAT Level II or III baseline certifications before a start date: Level II certifications include - CCNA Security, GISCP, GSEC, Security+ CE, SSCP Level III certifications include - CASPCE, CCNP
Security, CISA, CISSP (or Associate),GCED, GCIH Preferred Qualifications:
RHEL Administration:
Proficient understanding of Red Hat Enterprise Linux (RHEL) 8 and 9, including the ability to monitor and maintain cybersecurity tools at the OS level.SOAR Automation:
Experience managing the full lifecycle of XSOAR infrastructure, including building complex playbooks, custom scripts, and integrations to automate cyber workflows.Splunk O&M:
Proficiency in Splunk Operations & Maintenance, including managing distributed components, index management, version upgrades, and creating custom dashboards via the Monitoring Console. #INDTech Pay:
$165,000.00 - $185,000.00 per yearBenefits:
401(k) 401(k) matching Dental insurance Employee assistance program Employee discount Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Parental leave Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insuranceEducation:
Bachelor's (Required)Experience:
Splun /working in Splunk-clustered environment: 8 years (Required)ACAS/Nessus:
8 years (Required)License/Certification:
TS/SCI Clearance (Required) IAT Level II (Required) IAT Level III (Preferred)Location:
Warrenton, VA 20186 (Required) Security clearance: Top Secret (Required)Work Location:
In personSimilar remote jobs
Loan Originator Networks, LLC
Seattle, WA
Posted1 day ago
Updated2 hours ago
All Care Therapies
Jersey City, NJ
Posted1 day ago
Updated2 hours ago
Fujifilm
Pierre, SD
Posted1 day ago
Updated2 hours ago
Similar jobs in Warrenton, VA
Angler Development
Warrenton, VA
Posted1 day ago
Updated2 hours ago
Palmer's Contracting Group
Warrenton, VA
Posted2 days ago
Updated1 day ago
Appleton Campbell
Warrenton, VA
Posted2 days ago
Updated1 day ago
Similar jobs in Virginia
Walmart
Waynesboro, VA
Posted1 day ago
Updated2 hours ago
Chesterfield County Health Center
Chesterfield, VA
Posted1 day ago
Updated2 hours ago
Power Concepts Electric LLC
Winchester, VA
Posted1 day ago
Updated2 hours ago