Data Security Engineer

LeidosAdelphi, MD
$87,100 - $157,450Hybrid

About The Position

The C5ISR Center Cyber Security Service Provider (CSSP) delivers 24x7x365 defensive cyber operations supporting critical Department of War (DoW) missions. Our team provides continuous monitoring, threat detection, incident response, and vulnerability management across cloud and on-premises environments, including AWS, Azure, GCP, Oracle Cloud, and SaaS platforms. Leidos is seeking a Data Security Engineer to build, optimize, and sustain the cybersecurity data pipelines that power these defensive operations. You will ingest, normalize, enrich, and manage high-volume security telemetry within Elastic; optimize data performance and quality; automate workflows; and troubleshoot dependencies across Elastic, Kafka, and CI/CD systems. You will partner with cyber teams to ensure analysts and defenders have reliable, analytics-ready data for threat detection and response.

Requirements

  • Bachelor's degree and 4–8 years of relevant experience, or additional experience may substitute in lieu of degree.
  • 3+ years of data engineering, data analysis, cybersecurity data engineering, or related experience.
  • Experience with data ingestion, transformation, normalization, or high-volume data-processing pipelines.
  • Experience with relevant technologies such as Elastic Stack, Kafka, Python, Bash, and CI/CD tooling.
  • Familiarity with Elastic Common Schema (ECS) or similar cybersecurity data models.
  • Required DoD 8570/8140-aligned and CSSP Analyst certifications, as applicable to the position.
  • U.S. Citizenship with an active TS/SCI clearance.
  • Strong written and verbal communication skills.

Nice To Haves

  • Experience onboarding and normalizing high-volume cybersecurity telemetry and log sources.
  • Experience with Kafka, Python/Bash automation, CI/CD, or DevSecOps practices.
  • Experience supporting AWS, Azure, GCP, Oracle Cloud, hybrid-cloud, or multi-cloud environments.
  • Knowledge of cybersecurity operations, including SIEM, threat detection, incident response, and security monitoring.
  • Experience supporting a DoD CSSP, SOC, or other large-scale defensive cyber operations environment.
  • Strong troubleshooting skills across complex data pipelines and interconnected systems.

Responsibilities

  • Design, maintain, and optimize scalable cybersecurity data ingestion and normalization pipelines.
  • Develop transformations and enrichments for diverse security log and telemetry sources.
  • Configure and optimize Elasticsearch, Logstash, Kibana, and Fleet for high-volume, high-availability operations.
  • Maintain index templates, mappings, schemas, and data models supporting analytics and detection logic.
  • Implement data validation, deduplication, and quality controls to ensure data integrity.
  • Automate ingestion, transformation, and engineering workflows using Python, Bash, and related tools.
  • Monitor pipeline and indexing performance, troubleshoot data-flow issues, and optimize throughput, storage, and query performance.
  • Maintain traceability and troubleshoot dependencies across Kafka, Elastic, and CI/CD tooling.
  • Partner with Detection Engineering, Threat Analysis, Endpoint, and other cyber teams to support operational requirements.
  • Maintain technical documentation, SOPs, and engineering artifacts.

Benefits

  • Pay Range $87,100.00 - $157,450.00
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service