Senior Security Engineer (Information Security Analyst IV)
Location : Washington, DC (Onsite, 5 days / week)
Clearance : Public Trust (U.S. Citizen or Green Card Holder; 3+ years U.S. residency required)
Category : Information Technology Technical
Business Unit : Digital Modernization
Role Summary
The Senior Security Engineer supports the Department of Transportations (DOT) Cybersecurity mission by enhancing and maintaining the security posture of DOT information systems and infrastructure. These systems play a critical role in safeguarding U.S. critical infrastructure, including highways, bridges, and roadways. This position provides advanced security engineering, participates in strategic security design, and delivers technical expertise for integrated security systems and endpoint protection.
The role requires independent decision-making, leadership, and the ability to guide less experienced staff. It also involves complex problem-solving, interaction with senior federal leadership, and contributions that directly impact mission and schedule outcomes.
Key Responsibilities
- Implement endpoint protection profile changes to address external threats and enforce security requirements.
- Coordinate with application, infrastructure, and engineering teams to troubleshoot endpoint protection software issues.
- Integrate endpoint security data with security log aggregation tools, including SIEM platforms.
- Participate in cybersecurity incident handling activities as requested.
- Stay current on emerging threats, vulnerabilities, and industry best practices related to endpoint security.
- Work assigned cybersecurity and security operations ITSM (ServiceNow) tickets through completion.
- Participate in Cybersecurity and Security Operations (SecOps) meetings.
- Collaborate on cybersecurity solutions that enhance the DOTs security posture.
- Configure, validate, and test secure systems and physical controls to detect security weaknesses.
- Contribute to strategic security design efforts, translating business and security requirements into technical solutions.
- Recommend policy changes and guide others in achieving departmental cybersecurity objectives.
Required Technical Skills
Endpoint protection management solutions (hands-on experience).Proven understanding of Federal cybersecurity requirements, including FISMA and the NIST 800 series .Ability to articulate endpoint security concepts to non-technical stakeholders.Demonstrated experience collaborating across cross-functional cybersecurity teams.Ability to evaluate complex security problems and apply judgment within established practices and policies.Experience with integration of endpoint security data into SIEM or log aggregation tools.Experience working security operations tickets within ServiceNow .Knowledge of security systems, secure configuration, validation, and testing methodologies.Preferred / Nice-to-Have Skills
Foundational understanding of :Application and technology stacksCloud-based systemsOperating systemsDatabasesNetworkingFirewallsData Loss Prevention (DLP)Endpoint security softwareNetwork IDS / IPSHost-based IDS / IPSGeneral cybersecurity best practices and industry standardsQualifications & Experience
9+ years of experience in Cybersecurity or related IT fields.Bachelors degree + 9 years ORMasters degree + 7 years of experienceTechnical Certifications (one or more required) :Network+Security+SSCPGISFISACA Cybersecurity FundamentalsOr similar technical cybersecurity certificationAbility to obtain and maintain a Public Trust clearance.Benefits (employee contribution) :
Health insurance
Health savings accountDental insuranceVision insuranceFlexible spending accountsLife insuranceRetirement planAll qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.