Springfield VA

Security Engineer

Job Specs

Cyber Systems


Job Description: Security Engineer

XOR Security is currently seeking several talented Security Engineers to support an Agency-level Advanced Cyber Analytics team. This program provides targeted threat monitoring and response capabilities requiring analysts to have advanced levels of experience in security event monitoring, incident response, malware analysis and reverse engineering, cyber intelligence, insider threat, penetration testing, and fusion analysis.  The positions will respectively focus on Security Engineering of advanced analytic tool suites and supporting infrastructure.  To support this vital mission, XOR staff are at the forefront of providing Advanced Analytics, and Systems Engineering support to include the development of advanced analytics and countermeasures to protect critical assets from hostile adversaries. To ensure the integrity, security, and resiliency of critical operations, we are seeking candidates with diverse backgrounds in cyber security systems operations, analysis and incident response. Strong written and verbal communications skills are a must. The ideal candidate will have a solid understanding of secure systems engineering in the cybersecurity space including an understanding of cyber threats and information security in the domains of TTP’s, Threat Actors, Campaigns, and Observables. Additionally, the ideal candidate would be familiar with intrusion detection systems, intrusion analysis, security information event management platforms, endpoint threat detection tools, big data analytics, and cyber ticketing management.

Location: Springfield, VA

Required Qualifications:

  • Minimum 5 years of experience with network systems engineering, systems development, and security engineering.
  • Experience with Docker (managing containers, networking containers, container orchestration)
  • Experience managing virtual environments (Hyper-V, VMware)
  • Automation experience to support CICD pipeline (tools such as Ansible, Jenkins, Git)
  • Strong Linux and Windows background
  • Experience with deploying and maintaining infrastructure in both development and production environments
  • Strong background in security best practices
  • Experience administering hardware, software, operating systems, and application components of various isolated network environments. These components include Windows workstations/servers, Linux/Unix servers, Mac OSX, Dell, Access Data, and Guidance Software products.
  • Strong background in network engineering and systems administration with the ability to maintain systems with 99% uptime requirements (including on-call and weekend support if required).
  • Experience developing network architectures, diagrams, security plans, and supporting information assurance
  • Troubleshoots problems and provides customer support for software operating systems, middleware and application issues.
  • Designs and stands up security tools, components, applications, and servers that meet production specifications and project schedules.
  • Experience with the configuration, installation of Big Data Analytics solutions, Dynamic/Static Malware Analysis systems, enterprise honeynet technologies, and Network/host-based security applications and appliances.
  • Participates in large system and subsystem planning and integration projects.
  • Writes and updates technical documentation such as user manuals, system documentation, and training materials.
  • Currently cleared or can be cleared to the TOP SECRET/SCI level preferably with a DHS-agency EOD.

Desired Qualifications:

  • Bachelor’s Degree in Information Technology, Cyber Security, Computer Science, Computer Engineering, or Electrical Engineering.
  • Familiarity with deploying and maintaining Elastic stack (including Elastic Cloud Enterprise)
  • Experience managing ingest and processing of large data sets 
  • Familiarity with Java,Python, Bash and Powershell
  • Experience managing security infrastructure including firewalls, proxies, networks, etc (Palo Alto and Cisco)
  • Experience with commonly used security tools is required (i.e. Splunk, Archer, Cisco, BlueCoat, Linux, HBSS, Mcafee, Tanium, Nessus, Elasticsearch)


Closing Statement:

XOR Security offers a very competitive benefits package including health insurance coverage from the first day of employment, 401k with a vested company match, vacation and supplemental insurance benefits.

XOR Security is an Equal Opportunity Employer (EOE). M/F/D/V.

Citizenship Clearance Requirement
Applicants selected may be subject to a government security investigation and must meet eligibility requirements - US CITIZENSHIP and TOP SECRET/SCI CLEARANCE REQUIRED.