Host Defense Design Engineer Senior

Posted:
10/10/2024, 5:00:00 PM

Location(s):
Quantico, Virginia, United States ⋅ Virginia, United States

Experience Level(s):
Senior

Field(s):
IT & Security

Unleash Your Potential

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customer’s success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.

If this sounds like an environment where you can thrive, keep reading!

The Mission

The Leidos team delivers the core backbone of the Service, Management, Integration and Transport (SMIT) program, including cybersecurity services, network operations, service desk, and data transport. Leidos will support network modernization efforts to provide Sailors, Marines and the civilian workforce the tools they need to be more efficient at increasing naval capabilities and further empowering the Navy Marine Corps team to compete and win.


Your Main Objective:

- Assists the Government Lead in the daily engineering duties on systems.

- Operate and manage all aspects of Information Systems, data availability, integrity, authentication, confidentiality, and non-repudiation. 

- Implement and monitor security measures for communication systems and networks while ensuring that systems and personnel adhere to established Government security requirements.

- Design, develop and execute security policies, plans, and procedures.

- Design and implement data network security measures.

- Operate Network Intrusion Detection and Forensics.

- Conduct performance analysis of Information Systems security incidents. Develop Continuity of Operations Plan (COOP) and Disaster Recovery (DR) plans and support certification of Information Systems and Networks. Operate and design Host Based Security System (HBSS), Intrusion Prevention Systems, Intrusion Detection Systems, other point of presence security tools, and related security operations.

- Perform integration with Public Key Infrastructure (PKI) certificates and network accounts to support two-factor authentication for all Active Directory (AD) domain account categories and eliminate the need for password-based authentication.

- Monitor and optimize replication speed of directory services.

- Design and implement the Enterprise Services portion of the Sensor Grid within the security infrastructure that collects intrusion, incident, and audit data from a collection of sources including but not limited to Content Monitoring products, Content Filtering products, HBSS for servers and hosts with the capability for packet capture, deep inspection, and customized signature capability.

- Design automated logging aggregation system that compresses, correlates, and provides 30 days of log data for analysis and audit from all sources.

- Design and integrate Computer Network Defense (CND) mechanisms, HBSS, and HBSS Device Control Modules at enterprise locations.

- Design Government provided components of HBSS to develop and maintain baseline.

- Design and implement anti-virus, scans, automation, and updates of servers/hosts. 

- Assist with the development and integration of identity and access management requirements.

- Provide security updates in accordance with Government procedures for directory services. Use automated tools for data collection.  Design and Operate configuration and integration and ePolicy Orchestrator (ePO) Servers.

- Execute antivirus product integration, configuration and Intrusion prevention, Endpoint encryption, and Data Loss Prevention (DLP).

- Oversee Rights Management Services for administrators, users and groups.

- Design tasks associated with application networking ports and protocols, Information Assurance (IA), routing and Local Area Network (LAN).

- Perform standard Active Directory services plus the availability to use Windows Light Directory Access Portal (LDAP) services for network devices and appliances.

What Sets You Apart

- Bachelor's Degree in Computer Science, MIS, Business, or related field
- 10 Years of Experience
- Active Secret Clearance
- Information Assurance Technician (IAT) Level III
- Must possess Information Technology Infrastructure Library (ITIL) version 3 Foundation certification.)

SMIT-MCEN

Original Posting Date:

2024-10-11

While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $101,400.00 - $183,300.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.