Cyber Security Engineer

GD Information Technology•Huntsville, AL
•Onsite

About The Position

Seize your opportunity to make a personal impact as a Cybersecurity Engineer. GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. At GDIT, people are our differentiator. You will help ensure today is safe and tomorrow is smarter. Our work depends on a Cybersecurity Engineer joining our team as a key technical authority supporting Cybersecurity Service Provider (CSSP) and Defensive Cyberspace Operations (DCO). This role is critical in safeguarding global digital infrastructure, ensuring cyber resiliency across mission systems that support detection, tracking, and interception of threats. The Cybersecurity Engineer is the Technical Lead that elevates the mission by guiding analysts, engineers, and responders to meet strict operational timelines, improve detection fidelity, and strengthen defensive capabilities against sophisticated adversaries.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field
  • CISSP – Certified Information systems Security Professional required
  • 7+ years of cybersecurity engineering or cyber operations experience in DoD or federal environments
  • 3+ years in a technical leadership role
  • Demonstrated experience leading incident response, threat hunting, vulnerability management, or forensic analysis teams
  • Extensive experience with SIEM/EDR platforms, Elastic Stack, ACAS, and cyber defense analytics
  • Strong knowledge of RMF
  • Deep understanding of cyber incident response processes and detection engineering
  • Experience developing SOPs, TTPs, dashboards, forensic reports, and cyber analytics
  • Secret clearance required
  • Strong leadership and team‑coordination skills across diverse cyber and CSSP disciplines
  • Excellent communication skills for both technical and executive audiences
  • Strong analytical and problem‑solving abilities under pressure
  • Ability to work across multiple classification levels and sensitive environments
  • US Citizenship Required

Nice To Haves

  • ISSEP – Information Security Systems Engineering Professional strongly preferred
  • CISM – Certified Information Security Manager preferred
  • GIAC Certifications GCIH, GCIA, GCED preferred
  • CCSP – Certified Cloud Security Professional preferred
  • PMP- Project Management Professional preferred
  • Top Secret preferred
  • GIAC, Elastic, or DoD 8140/8570 certifications (GREM, GCFA, GCTI, CEH, CISSP, CCSP, etc.)
  • Experience in CTE environments or advanced adversary simulation.
  • Prior leadership experience within an accredited CSSP
  • Experience overseeing dashboard/data pipeline engineering

Responsibilities

  • Serve as the senior technical authority across cybersecurity functions including incident response, cyber defense, threat hunt, forensics, vulnerability management, and threat emulation
  • Provide SME-level guidance to ensure all technical activities meet DoD/client cybersecurity requirements, CJCSM 6510.01B, and CSSP governance standard
  • Lead technical planning, coordination, and execution for mission-essential operational requirements
  • Oversee 24/7 cyber defense monitoring, detection, and incident classification activities under Cyberspace Domain Awareness
  • Ensure rapid response performance, maintaining CSSP Mean Time to Respond (MTTR) requirements
  • Lead teams performing vulnerability analysis, ACAS posture rollups, IAVM trending, PPSM compliance assessments, and endpoint security rollups
  • Oversee forensic analysis capability, ensuring adherence to NIST SP 800‑86, maintaining chain‑of‑custody, and delivering full forensic case reports
  • Guide intelligence-driven threat hunt missions; correlate OSINT/CSINT with internal telemetry to identify advanced adversary TTPs
  • Lead the development of analytics, rulesets, and countermeasures for CSSP toolsets (SIEM/EDR/Elastic Stack)
  • Support Cyber Threat Emulation activities using GFE toolsets to test defensive posture against realistic adversary behaviors.
  • Oversee technical documentation including SOPs, TTPs, CTOs, COAs, forensic reports, vulnerability reports, and training materials. Ensure all outputs meet DoD plain-language standards and are delivered in Government-approved formats.
  • Support RMF lifecycle activities including SSP updates, control assessments, POA&M management, audit log review, and incident response testing.
  • Lead development and refinement of Elastic dashboards, data enrichment pipelines, anomaly detection models, and threat analytics.
  • Oversee Cybersecurity Business Intelligence Dashboards on unclassified and classified networks, ensuring daily refreshed, validated data pipelines.
  • Drive automation and testing strategies to evolve defensive operations toward proactive, data-driven cyber defense.

Benefits

  • variety of medical plan options, some with Health Savings Accounts
  • dental plan options
  • a vision plan
  • a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match
  • full flex work weeks where possible
  • a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave
  • short and long-term disability benefits
  • life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service