Jobs · Information Technology · Maryland

Systems Engineer - Security

Amentum · Columbia, MD · 1 mo ago
On-siteInformation TechnologyFull-time

Amentum is seeking a Systems Engineer - Security to join an exciting program delivering state-of-the-art solutions and hands-on assistance in designing, implementing, managing, and sustaining operations across diverse network environments. This role thrives in an innovative, technical culture that values creative problem-solving and offers training opportunities to stay current with emerging technologies.

Purpose and Impact

Come be part of a dynamic team that architects, engineers, and sustains enterprise-grade security solutions across complex IT environments. This hands-on role drives security innovation, mentors junior engineers, and ensures mission-critical systems adhere to organizational policies and compliance frameworks. The position fosters professional growth through cross-training and skill development in a highly technical, collaborative environment.

Responsibilities

  • Architect, implement, and maintain enterprise security controls and infrastructure components across Windows, Linux, and virtualized environments.
  • Lead the design, deployment, configuration, and lifecycle management of endpoint hardening and security tools (e.g., Ivanti, WSUS, Trellix, Tenable).
  • Oversee patch management processes, including OS updates, third-party software updates, and administrative tool upgrades.
  • Provide expert-level troubleshooting, root-cause analysis, and performance optimization for complex security and infrastructure issues.
  • Evaluate, recommend, and lead the adoption of new security tools, technologies, and methodologies.
  • Develop and maintain security documentation, including System Security Plans (SSPs), RMF artifacts, engineering diagrams, and operational procedures.
  • Design and implement security requirements within enterprise business processes and technical architectures.
  • Support vulnerability assessments, interpret results, and develop risk-based mitigation strategies.
  • Conduct system hardening, configuration baselining, and compliance scanning to ensure adherence to security standards.
  • Support and guide incident response activities, including forensic analysis and containment strategies.
  • Collaborate with cross-functional teams to embed security throughout system lifecycles.
  • Mentor and provide technical leadership to junior and mid-level security engineers.
  • Contribute to long-term security strategy, capability development, and continuous improvement initiatives.
  • Support a diverse set of enterprise networks and mission environments as part of a high-performing security engineering team.

Requirements

  • 6+ years of progressive experience designing, engineering, and securing enterprise-scale IT systems across complex network environments.
  • Senior-level knowledge in architecting, deploying, and maintaining security infrastructure, including endpoint protection, vulnerability management, configuration management, and enterprise hardening solutions.
  • Demonstrated experience leading security engineering initiatives, including implementing advanced security controls, designing secure configurations, and overseeing patch and update strategies for Linux and Windows environments.
  • Extensive hands-on experience with enterprise security tools, such as Ivanti, WSUS, Trellix, Tenable, or equivalent platforms, including tool integration, optimization, and lifecycle management.
  • Strong understanding of security frameworks and compliance requirements, such as NIST RMF, NIST 800-53, STIGs, or equivalent federal/DoD standards.
  • Demonstrated ability to lead complex troubleshooting efforts, perform root-cause analysis, and drive long-term remediation strategies across enterprise systems.
  • Experience mentoring junior engineers, providing technical leadership, and contributing to team capability development.
  • Required IAT/Management-level certification: one or more of the following — CASP+, CISSP, or equivalent senior-level certification.
  • Required vendor certification in one or more relevant technologies (e.g., Microsoft, VMware, Cisco, NetApp, Pure Storage, HP, Dell, Linux+, Red Hat, HBSS, ACAS). Candidates without an active certification must obtain at least one within 6 months of hire.
  • Active TS/SCI security clearance.

Preferred Qualifications

  • Bachelor’s degree.
  • Experience working within a Security Operations Center (SOC).
  • Prior military experience.

Schedule

  • 8 hours/day, 5 days per week, fully onsite.
  • Must be available to support Thursday night patching after hours (starting at 5 PM).
  • Occasional travel may be required.

Pay

$155,000 - $175,000 per year.

Benefits

  • Health, dental, and vision insurance.
  • Paid time off and holidays.
  • Retirement benefits (including 401(k) matching).
  • Educational reimbursement.
  • Parental leave.
  • Employee stock purchase plan.
  • Tax-saving options.
  • Disability and life insurance.
  • Pet insurance.

Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.

Similar jobs

Systems Engineer- Security

Randstad Digital AmericasMalvern, PA· 2 wk ago
Information Technology$54.49–$59.49/hrapply on randstadusa.com

Systems Security Engineer

Booz Allen HamiltonAtlanta, GA· 1 mo ago
Information Technology$69k–$158k/yrapply on careers.boozallen.com

Systems Security Engineer

Modern Technology Solutions, Inc. (MTSI)Wright-Patterson Air Force Base, OH· 2 mo ago
Information Technologyapply on mtsi-va.eightfold.ai

Systems Security Engineer

General Dynamics Mission SystemsTaunton, MA· 3 wk ago
Information Technology$131k/yrapply on gdmissionsystems.com

Systems Security Engineer

UICGS / Bowhead Family of CompaniesDahlgren, VA· 4 wk ago
Information Technology$100k–$125k/yrapply on bowheadcareers-uicalaska.icims.com