Marathon TS is seeking a Cybersecurity / Information Assurance (IA) Engineer to support a trusted defense contractor's secure systems and AI/ML-enabled environments. This role focuses on monitoring, analysis, incident response, and compliance activities in accordance with DoD Directive and applicable federal cybersecurity frameworks.
The IA Engineer will support intrusion detection and incident response, perform security monitoring and reporting, analyze potential threats and vulnerabilities, and assist in remediation and damage control activities. The role also supports the security review of AI/ML-enabled systems, CI/CD pipelines, and cloud-based environments while contributing to cybersecurity exercises and readiness activities.
Responsibilities:Monitor, analyze, and report cybersecurity events, incidents, and potential intrusions
Examine potential security violations or malicious activity and assess impact
Preserve digital artifacts and enter, track, and escalate incidents as required
Support incident response activities, including damage assessment and remediation planning
Analyze patterns of attacks, noncompliance, and insider threat indicators and recommend mitigation actions
Configure, optimize, test, and troubleshoot network and IA devices
Enhance and maintain rule sets to identify or block malicious traffic sources
Supervise installation, monitoring, testing, administration, and maintenance of IA hardware and software
Support cybersecurity exercise design and execution
Participate in risk assessments and C&A activities
Review IA-enabled AI/ML software, hardware, and firmware for compliance
Contribute to CI/CD pipeline security, including design, testing, and deployment activities
Bachelor of Science in Cybersecurity or a related technical discipline
Minimum + years of practical cybersecurity / IA experience
Experience implementing and monitoring cybersecurity policies aligned to NIST, CMMC, and DoD guidance
Experience preparing, reviewing, and maintaining IA documentation and SOPs
Experience supporting IA risk assessments and compliance reviews
Ability to prepare recommendations for Designated Approving Authorities (DAA)
Experience reviewing security safeguards to ensure policy and plan compliance
Experience developing security awareness and compliance programs for users
Experience supporting software development lifecycle activities, including CI/CD security
Strong experience with Microsoft and Generative AI tools
Practical knowledge of Cybersecurity Maturity Model Certification (CMMC)
Experience with Agile project lifecycle tools (, JIRA)
Experience using code repositories (Git, GitHub, GitLab)
CompTIA Security+ CE (minimum preferred)
Other cybersecurity certifications (CISSP, CEH, etc.) a plus
Must be a Citizen with an Active DoD Secret clearance, or the ability to obtain and maintain one
Information Assurance/Security System • Knoxville, TN