Cybersecurity & Network Systems Engineer

KBR, Inc.Colorado Springs, CO
1d

About The Position

The Cybersecurity & Network Systems Engineer performs modernization, security engineering, and network architecture efforts across Tactical Integrated Ground Suite (TIGS) program. Leveraging expertise in Cisco, identity & access management, Zero Trust Architecture, containerized environments, and NIST‑aligned cybersecurity engineering, this role develops secure enterprise and deployable network solutions, performs site surveys, authors network inputs, implements STIG and RMF package requirements, and supports ATO validation activities. The engineer provides hands‑on configuration, system hardening, network migration execution, zero trust integration, and cross-platform troubleshooting while ensuring all deliverables (drawings, artifacts, diagrams, documentation, training inputs) meet Army standards and program objectives.

Requirements

  • Bachelor's degree and 2 years of experience OR an Associate's degree and 6 years of experience.
  • Active TS/SCI Clearance
  • Strong hands-on experience with Cisco/Juniper, AAA/TACACS+, VLAN segmentation.
  • Demonstrated capability implementing NIST-aligned cybersecurity controls and Zero Trust architectures.
  • Experience with IAM solutions including Keycloak, policy-based authentication, and SSO federations.
  • Hands-on experience with Docker, Kubernetes, ESXi, and infrastructure automation.
  • Experience operating IDS/IPS systems (Suricata), OPNsense, Grafana, and packet analysis platforms.
  • Minimum requirement for CompTIA Security+

Nice To Haves

  • Experience supporting RMF, eMASS package inputs, STIG compliance and vulnerability remediation.
  • Familiarity with Army networks, TDL/TDP processes, and DISA STIG/SRG baseline configurations.
  • Experience with wireless surveys, RF spectrum analysis, and site infrastructure validation.
  • Experience with deployment of Zero Trust overlays (OpenZiti, Pomerium) and NAC solutions (PacketFence).
  • Exposure to Cisco Security training: SCOR, SAUI, CBROPS.
  • Experience with enterprise and tactical closed restricted network migration efforts utilizing a varied OS environment such as Ubuntu/RHEL, Windows 11/Server, networking/identity, and secure endpoint integration.

Responsibilities

  • Cybersecurity Engineering and RMF STIG Integration to apply NIST, RMF, and Zero Trust principles across network modernization initiatives and supporting infrastructure projects.
  • Develop STIG automation and STIG checklists, perform vulnerability scans using tools such as ACAS, document findings, and support POAM development and remediation tracking.
  • Architect and implement Zero Trust and IAM solutions using technologies such as Keycloak, Pomerium, PacketFence, and identity centric access controls.
  • DevOps, Automation and Modern Platform Integration supporting configuration and infrastructure management using Ansible, Terraform, Docker, Kubernetes, and related automation frameworks.
  • Support engineering of containerized security labs, overlay networks, distributed Kubernetes clusters, and secure cloud adjacent architectures.
  • Oversee cybersecurity operations support services spanning hardware and software tools and sensors from perimeter defenses to endpoint systems, including equipment management, logging, incident response, compliance reporting, RMF support, SCA coordination, and CSSP integration.
  • Evaluate cybersecurity policies, emerging technologies, and operational best practices to provide recommendations that strengthen the effectiveness and efficiency of cybersecurity operations.
  • Analyze complex security issues and develop effective solutions and incident response actions to maintain cybersecurity compliance, operational readiness, and reduce cyber risk.
  • Lead preparation and maintenance of artifacts to support RMF packages and achieve ATO, including maintaining documentation, implementing and monitoring security controls, and reporting status to ISSM, ISSO, and Program Manager.
  • Support security incident response team requirements including inspections, audits, policy reviews, strategy development, and recommendations to improve overall security posture.

Benefits

  • 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule.
  • We support career advancement through professional training and development.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service