Cybersecurity Engineering Lead
Listed on 2026-01-19
-
IT/Tech
Cybersecurity, Systems Engineer
We are GDIT. The people support and securing some of the most complex government, defense, and intelligence projects across the country. At GDIT, we ensure today is safe and tomorrow is smarter. Our work has meaning, making an impact on both the world around us and ourselves. This is your place to embrace autonomy, seize opportunity, and deliver your best every day.
GDIT has an opening for a Cybersecurity Engineering Lead supporting the Army National Guard (ARNG) in Falls Church, VA. Join us on a pivotal IT Service Management contract that drives the modernization, expansion, and evolution of the ARNG’s global IT services. The program focuses on IT infrastructure, WAN, authentication, directory services, cybersecurity, application hosting, and more, using the ITIL framework to deliver quality IT services to the ARNG.
MEANINGFULWORK AND PERSONAL IMPACT Leadership & Oversight
Support the Cybersecurity Manager in developing and implementing a cybersecurity strategy by overseeing the engineering team, supervising staff, and mentoring team members.
Lead the deployment of cybersecurity tools and frameworks, provide technical guidance, and act as the primary liaison with government partners and stakeholders.
Oversee initiatives to drive rapid improvements and foster a professional, collaborative team culture.
Lead the design, deployment, and optimization of cybersecurity tools, including SIEM platforms (e.g., Splunk, Elastic Search), log management systems, and endpoint solutions.
Configure and maintain cybersecurity tools while creating real-time alerts, dashboards, and use cases for threat detection.
Apply expertise to ensure solutions are scalable and aligned with cybersecurity best practices.
Build and maintain compliance documentation, including System Security Plans (SSPs), Risk Management Framework (RMF) requirements, and accreditation artifacts.
Utilize eMASS and implement DISA STIGs, SCAP/SCC scans, and other tools to meet accreditation and evaluation criteria.
Create and manage technical documentation, processes, and reports tailored to leadership, stakeholders, and team needs.
Respond to customer and team inquiries, engage in regular staff meetings, and deliver effective communication of cybersecurity efforts to leadership.
Provide customer-facing support, acting as the primary escalation point for technical issues while delivering high-level service and ensuring mission success.
Handle after-hours on-call support, troubleshooting, and resolution activities as needed.
Education:
Bachelor’s degree in cybersecurity, computer science, information assurance, or a related field—or equivalent experience.
Experience:
10+ years in IT, cybersecurity, or information assurance roles, with at least 4+ years of demonstrated leadership experience.
Server Administration
: 2+ years of Red Hat Linux engineering and 2+ years of Windows Server Administration.SIEM Platforms
: 2+ years working with SIEM platforms, preferably Splunk or Elastic Search.Compliance/Accreditation
:
Experience applying DISA STIGs, using SCAP/SCC scanning tools, and working with CCRI and RMF processes.Scripting
:
Proficiency with Power Shell, Python, or BASH scripting is highly preferred.Certificates
:
Familiarity with TLS and SSL certificate management.Virtualization/Storage
:
Knowledge or experience with VMware ESXi, Net App, or SAN architectures.Additional Technologies
:
Experience with Apache Kafka or Confluent is a plus.
Must Possess the appropriate baseline certification(s) to achieve a minimum of DoD 8570.01-M Information Assurance Technical (IAT) Level II (i.e., CompTIA Security+ CE) prior to start. Will need to obtain an additional computing environment certification within six-months of hire based on position designation. (i.e., CEH, CCNA-Security, CND, etc.). Candidate may have further discussions with the program’s Cyber Security Manager for more details.
When 8140 requirements are implemented on program/contract, employees will…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).