← Back to jobs

Senior Cybersecurity Engineer (Trelix)

General Dynamics Information Technology
FULL_TIME Remote · US McLean, VA, Fairfax, US USD 142792–175950 / month Posted: 2026-05-11 Until: 2026-07-10
Apply Now →
You will be redirected to the original job posting on BeBee.
Apply directly with the employer.
Job Description
Job Description: Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret/SCI Clearance Level Must Be Able To Obtain: Top Secret/SCI Public Trust/Other Required: None Job Family: Cyber and IT Risk Management Skills: Job Qualifications: Cybersecurity, Endpoint Security, Linux, Splunk Enterprise Security Certifications: None Experience: 8 + years of related experience US Citizenship Required: Yes Job Description: Description: We are seeking a highly skilled and multi-faceted Cyber Engineer for a critical contract role supporting Google's SIPRNet enclave. The ideal candidate is a proactive and seasoned professional with extensive, hands-on experience navigating Trelix, Red Hat Linux, the NIST 800-53 Risk Management Framework (RMF) control requirements, and Security Operations for a classified network in a unique commercial cloud setting. This role requires a blend of technical engineering prowess to provide Security Operations support as well as a deep understanding of continuous monitoring control requirements to prepare for security assessments and auditing. You will be a key contributor to our SIPR Enclave team, supporting the SIPR Enclave Lead in RMF activities and the Senior Cyber Engineer in security operations support. How The Cybersecurity Engineer Will Make An Impact: From a RMF perspective, as directed by the SIPR Enclave Lead - Supports maintaining the Continuous Monitoring program, specifically around vulnerability management, endpoint security, auditing, and security alert triage/monitoring. Supports control implementation statement updates, documentation development for plans or procedures, artifact identification for assessments, and body of evidence generation. Supports POAM mitigation and/or remediation activities. From a Security Tools administrative perspective, as directed by the Senior Cyber Engineer, the Engineer - Update and maintain security tool versions (Trelix, etc) Configure, patch, and update the Linux operating systems Monitors the security applications such as Trelix Scanning implementation (Tenable.sc, SCC Tool) SIEM implementation (Splunk) Endpoint security implementation (Trellix) Works with the vendors of the security applications as applicable to maintain security updates, licenses, resolve support issues (e.g., for Tenable plugins), etc. For Endpoint Management: Ensures all hosts can be seen in the endpoint security application with ongoing monitoring and applicable policies applied. Triages all alerts from the tool to ensure activity in the environment is authorized. For Insider Threat Monitoring: Ensures deployment of tool and related modules are performing as intended. Monitors aggregate user data as directed. Designs, develops, tests, and evaluates information system security throughout the systems development life cycle. For The SIEM: Ensure security systems are up to date and implemented. Validate the telemetry from the hosts and security applications are forwarded to the SIEM. Configures alerts for privileged activity that would be conducted in the enclave as well as alerts from security advisories. Triages all alerts from the SIEM to ensure activity in the environment is authorized. Investigates, resolves, and reports security incidents in alignment with the Incident Response Plan. For Scanning/STIGs: Ensures the inventory of hosts and recurring/ad-hoc scan policies are accurate. Reviews the scans to confirm correct, actionable data is generated to support the patching activities. Reviews STIG results and supports the team in implementing corrective action as applicable. What You'll Need To Be Successful: Education: BA/BS Degree or equivalent experience in lieu of degree Experience: 8+ years of related experience Ability to use security operations of Trelix. Ability to update security applications, such as Trelix. Experience patching and updating LINUX (or RHEL or Red Hat) Ability to harden the system using STIGs. Ability to update the underlying security tools Linux operating system. Role requirements: Knowledge of the