CSSP Cybersecurity Engineer, Junior

TekSynapKirtland, NM
$100,000 - $130,000Onsite

About The Position

The DTRA CSSP Cybersecurity Engineer serves as a core technical authority responsible for the configuration, deployment, sustainment, and optimization of CSSP’s security toolsets and infrastructure. This engineering role is critical for supporting CSSP infrastructure environment, collaborating on the secure ingestion and normalization of diverse subscriber data sources, and executing systematic patch management on underlying CSSP infrastructure. By bridging the gap between systems engineering and CSSP compliance, this engineer ensures continuous operational readiness, high-fidelity security telemetry, and strict adherence to JFHQ-DoDIN defensive mandates.

Requirements

  • Active Top Secret security clearance with SCI eligibility.
  • Must possess an active DoD 8570/8140 IAT Level II baseline certification (e.g., Security+ CE) AND CSSP Infrastructure Support or equivalent certification
  • Minimum of 2 to 5 years of progressive work experience in cybersecurity systems engineering, systems administration, or defensive infrastructure support.
  • Bachelor of Arts (BA) or Bachelor of Science (BS) degree from an accredited college or university. (Equivalent work experience may be considered in lieu of a degree).
  • Demonstrated experience implementing cybersecurity engineering principles to meet Federal framework goals.
  • Ability to provide high-level technical drawings, validate complex technical solutions, and map business, system, and data flows.
  • U.S Citizenship Required

Responsibilities

  • Support the configuration, optimization, and management of DTRA CSSP security toolsets to assist analysts in performing rapid initial triage and deep-dive alert investigations.
  • Assist in the design and implementation of configuration updates to existing CSSP infrastructure, proposing technical adjustments, drafting technical drawings, and documenting change proposals in alignment with change control processes.
  • Support the technical integration of incoming subscriber networks into the central SIEM by configuring forwarders, APIs, and syslog collectors to securely ingest subscriber datasets and maintain robust telemetry.
  • Verify that inbound subscriber log feeds are continuously validated, parsed, and normalized against the Splunk Common Information Model (CIM), while assisting with machine learning models and security dashboards.
  • Maintain host-level security for Enterprise Security Linux systems within the CSSP by deploying routine vulnerability patches and enforcing Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIG).
  • Partner closely with customer stakeholders, system administrators, and team leads to validate engineering solutions and draft technical manuals, standard operating procedures, architectural network diagrams, and training slides.

Benefits

  • health
  • dental
  • vision
  • 401K
  • life insurance
  • short-term and long-term disability plans
  • vacation time
  • holidays
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service