Cyber Security Engineer
Leidos
- Location
- 6314 Remote/Teleworker US
- Work model
- Remote
- Level
- Senior
- H-1B history
- 26 approvals (FY2023)
- Posted
- Sep 4, 2026
Skills
About this role
Leidos is seeking highly qualified professionals to support the TSA TOMCAT Program . We are especially interested in connecting with current incumbent personnel supporting this mission who are interested in continuing their work and bringing their valuable mission knowledge and experience to Leidos.
Position
Summary The Cybersecurity Engineer provides engineering and operational cybersecurity support across the TOMCAT environment, integrating security requirements into enterprise IT operations, incident response, vulnerability management, system changes, patching, and service delivery. The position works closely with TSA SOC personnel, Information Assurance leadership, system owners, infrastructure engineers, ServiceNow teams, and operational service teams to identify , analyze, remediate, and track cybersecurity risks while maintaining mission continuity. Work Location Remote, with onsite, surge, or shift support as required. Essential Duties Could Include the following: Provide cybersecurity engineering and operational support for TOMCAT enterprise services. Support vulnerability management, security remediation, POA&M activities, RMF processes, and cybersecurity compliance reporting. Analyze vulnerability findings, security risks, remediation status, exceptions, and trends. Coordinate cybersecurity remediation activities with system owners, infrastructure engineers, patch teams, and operations leads. Support detection, analysis, and response to cybersecurity incidents. Coordinate with TSA SOC, ISSOs, CIC, and technical service towers during cyber-related incidents. Analyze security alerts, indicators, affected assets, containment actions, and remediation status. Support security configuration, patching, hardening, monitoring, and technical-control activities. Maintain audit evidence, cybersecurity reporting artifacts, corrective-action records, and technical documentation. Support FISMA, NIST, TSA/DHS security requirements, and operational compliance activities. Integrate cybersecurity considerations into incident, change, release, configuration, and operational processes. Support security assessments and technical reviews of proposed changes and new technologies . Participate in root-cause analysis and lessons-learned activities following cybersecurity events. Maintain cybersecurity SOPs, runbooks, technical procedures, and knowledge articles. Provide technical recommendations to improve the security and resilience of enterprise services.
Qualifications
Could Include Requirements will vary depending on the specific position and level. Qualifications may include: Bachelors degree and 8+ years of prior relevant experience with either cy bersecurity engineering, information security, or information assurance experience in an enterprise or federal environment. A dditional years of experience may be considered in lieu of degree. Knowledge of NIST cybersecurity principles and federal cybersecurity requirements. Experience with vulnerability management, remediation, POA&M, RMF, and security reporting. Knowledge of cybersecurity incident response processes. Experience working with enterprise security, endpoint, network, cloud, or infrastructure technologies. Strong analytical, troubleshooting, documentation, and communication skills. Ability to coordinate cybersecurity actions with technical operations without disrupting mission systems. Ability to obtain and maintain TSA Suitability Ability to obtain and maintain Public Trust Security Clearance Required Certifications One or more of the following, consistent with the source library: Security+. CISSP. CySA +. GCIH or GCIA. CAP/CGRC. Preferred Qualifications TSA, DHS, or federal cybersecurity experience. Experience with SIEM, EDR,