Cybersecurity Engineer

LED FastStartBossier City, LA
$76,565 - $97,750Hybrid

About The Position

Deliver simple solutions to complex problems as a Cybersecurity Engineer at GDIT. Here, you’ll help strengthen security operations and enhance visibility across critical environments. With a career in cybersecurity engineering, you’ll make the protection of mission‑essential systems your priority — and we’ll make your career growth ours. At GDIT, people are our differentiator. As a Cybersecurity Engineer, you will help ensure today is safe and tomorrow is smarter. Our work depends on a Cybersecurity Engineer to support SIEM engineering, detection development, and security monitoring for the TSS MST. This role focuses on developing and applying skills in SIEM data onboarding, search and detection support, and platform maintenance. The position operates under the guidance of the Senior Cyber Security Engineer / SIEM SME, with a defined path toward expanded engineering responsibilities. This position will be hybrid based at GDIT's Integrated Technology Center in Bossier City, LA. Due to contractual requirements, US Citizenship is required.

Requirements

  • BA/BS or equivalent years of experience
  • 2+ years of experience in IT, systems administration, help desk/NOC, or security operations
  • Understanding of networking fundamentals (TCP/IP, DNS, syslog)
  • Experience with at least one SIEM platform (Splunk preferred)
  • Familiarity with Windows and/or Linux operating systems
  • Basic scripting ability in Python, PowerShell, or Bash
  • Experience with ticketing systems such as ServiceNow or Jira
  • Exposure to SOC workflows or cybersecurity‑focused training programs
  • Strong attention to detail and ability to work in a fast‑paced SOC environment
  • One of the following at hire or within 6 months: Security+, Network+, or equivalent certification; Splunk Core Certified User
  • US Citizenship is required

Nice To Haves

  • Interest in pursuing advanced cybersecurity certifications such as GCIA, GCIH, CySA+, or Splunk Admin/Splunk Cloud Admin

Responsibilities

  • Onboard new log sources under senior engineer guidance, including configuring forwarders, event collectors, and syslog inputs.
  • Write and troubleshoot SIEM search queries to support investigations and analyst requests.
  • Build and maintain dashboards, reports, and alerts following established detection standards.
  • Assist with data quality checks such as field extractions, timestamp issues, and parsing errors.
  • Support SIEM platform maintenance, including license usage monitoring, storage checks, and capacity reporting.
  • Tune correlation searches and alerts to reduce false positives.
  • Document detection logic, runbooks, and SOPs for platform and content updates.
  • Assist Tier I/II analysts with SIEM queries and triage of platform‑related issues.
  • Develop familiarity with the MITRE ATT&CK framework as applied to detection content.
  • Assist with SOAR playbook testing and documentation.
  • Shadow EDR administration tasks, including sensor health checks and alert review.
  • Support vulnerability scan result review and ticket workflows.
  • Participate in automation scripting assignments using Python, PowerShell, or Bash.
  • Engage in mentorship, knowledge‑sharing sessions, and progressively larger engineering responsibilities.

Benefits

  • variety of medical plan options, some with Health Savings Accounts
  • dental plan options
  • a vision plan
  • a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match
  • full flex work weeks where possible
  • a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave
  • short and long-term disability benefits
  • life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service