Cyber Security Engineer

GD Information Technology•Huntsville, AL
•Onsite

About The Position

Make a meaningful impact as a Cybersecurity Engineer supporting GDIT’s Cybersecurity Service Provider (CSSP) and Defensive Cyberspace Operations (DCO). This role safeguards global digital infrastructure and strengthens cyber resiliency across mission systems. As the Technical Lead, you will guide analysts, engineers, and responders to meet operational timelines, improve detection accuracy, and enhance defenses against advanced threats.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field.
  • 7+ years cybersecurity engineering or cyber operations (DoD/federal).
  • 3+ years technical leadership.
  • Experience leading incident response, threat hunting, vulnerability management, or forensic teams.
  • Expertise with SIEM/EDR, Elastic Stack, ACAS, and cyber analytics.
  • Strong knowledge of RMF, DoDI 8510.01, NIST SP 800 series, CJCSM 6510.01B.
  • Deep understanding of incident response and detection engineering.
  • Experience developing SOPs, dashboards, TTPs, forensic reports, and analytics.
  • Minimum: Interim Secret clearance.
  • Strong leadership across diverse cyber disciplines.
  • Excellent communication for technical and executive audiences.
  • Strong analytical/problem‑solving skills under pressure.
  • Ability to work across multiple classification levels/sensitive environments.
  • US Citizenship Required

Nice To Haves

  • Preferred: Top Secret with SCI eligibility.
  • GIAC, Elastic, or DoD 8140/8570 certifications (GREM, GCFA, GCTI, CEH, CISSP, CCSP, etc.).
  • Experience in CTE or adversary simulation.
  • Prior leadership within an accredited CSSP.
  • Experience with dashboard/data pipeline engineering.

Responsibilities

  • Serve as senior technical authority for incident response, cyber defense, threat hunting, forensics, vulnerability management, and threat emulation.
  • Provide SME guidance ensuring adherence to DoD/client requirements, CJCSM 6510.01B, and CSSP standards.
  • Lead technical planning, coordination, and execution for mission‑critical operations.
  • Oversee 24/7 monitoring, detection, and incident classification under Cyberspace Domain Awareness.
  • Ensure rapid response meeting CSSP MTTR requirements (8‑hour max).
  • Lead vulnerability analysis, ACAS rollups, IAVM trending, PPSM compliance, and endpoint security assessments.
  • Oversee forensic operations following NIST SP 800‑86, maintaining chain‑of‑custody and producing full case reports.
  • Guide intelligence‑driven threat hunts; correlate OSINT/CSINT with internal telemetry for advanced threat identification.
  • Lead development of analytics, rules, and countermeasures for SIEM/EDR/Elastic Stack.
  • Support Cyber Threat Emulation using GFE tools.
  • Oversee SOPs, TTPs, CTOs, COAs, forensic reports, vulnerability reports, and training materials.
  • Ensure outputs meet DoD plain‑language standards and approved formats.
  • Support RMF activities including SSP updates, control assessments, POA&M management, audits, and incident response testing.
  • Lead development of Elastic dashboards, enrichment pipelines, anomaly detection models, and analytics.
  • Oversee Cybersecurity BI dashboards across networks with validated daily updates.
  • Drive automation and testing strategies for proactive, data‑driven defense.

Benefits

  • Variety of medical plan options, some with Health Savings Accounts
  • Dental plan options
  • Vision plan
  • 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match
  • Full flex work weeks where possible
  • Variety of paid time off plans, including vacation, sick and personal time, holidays
  • Paid parental, military, bereavement and jury duty leave
  • Short and long-term disability benefits
  • Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service