Cybersecurity Engineer 3
Job Description
Base-2 Solutions is hiring a Cybersecurity Engineer 3 for an onsite role in the United States. This position focuses on safeguarding digital assets and sensitive information by designing, implementing, and maintaining cybersecurity infrastructure under a Top Secret/SCI clearance with CI Polygraph, while collaborating across teams to integrate security into the development lifecycle.
What you’ll do
- Design, implement, and manage security solutions, including firewalls, intrusion detection/prevention systems, endpoint protection, and encryption mechanisms.
- Perform regular security assessments to identify vulnerabilities and weaknesses across systems, networks, and applications.
- Develop and implement incident response plans to address security incidents and breaches.
- Monitor network traffic, system logs, and security alerts to detect and respond to potential incidents.
- Analyze and investigate anomalies and security breaches, taking appropriate actions to mitigate risks.
- Collaborate with cross-functional teams to establish and enforce security policies, standards, and procedures.
- Work with IT, software development, compliance, and other teams to integrate security into all phases of the development lifecycle.
- Maintain thorough documentation of security processes, procedures, and configurations.
- Prepare detailed reports on security findings, incidents, and actions taken.
Clearance and core requirements
- Active Top Secret/SCI with CI Polygraph.
- 7+ years of experience as a cybersecurity engineer, with specialization in designing and building implementations of required security controls.
- Experience implementing continuous monitoring and auditing of solutions for compliance with security controls.
- Strong skills specifying and implementing log collection into tools such as Splunk.
- Experience querying and analyzing aggregated logs to identify security-relevant anomalies or risks.
- Strong experience implementing security controls from government regulatory frameworks and security standards, including NIST SP 800-53, RMF, ICD 503, FISMA, and FedRAMP.
- Experience implementing controls for cloud, container, and DevSecOps services and solutions within IL5 to IL6+ environments.
- Strong understanding of network protocols, operating systems, and infrastructure components.
- Proficiency in incident response, security incident handling, and forensic analysis techniques.
- Experience with security tools such as Fortify, Acunetix, and Prisma Cloud.
- Effective communication skills to convey complex technical concepts to technical and non-technical stakeholders.
- CISSP or equivalent certification to support DoD 8140 requirements.
Tools and frameworks you’ll work with
- Splunk, Fortify, Acunetix, Prisma Cloud
- NIST SP 800-53, RMF, ICD 503, FISMA, FedRAMP
- DevSecOps, cloud, container
Compensation and benefits
- Competitive fixed salary or hourly pay (based on experience, skills, location, and internal equity).
- Employee referral bonuses up to $10,000 per hired referral.
- Additional bonus opportunities for exceptional performance and contributions to business development and company growth (role-dependent).
- 100% company-paid medical premiums for employees and eligible dependents. Choose from multiple plan options with CareFirst, Kaiser, and UnitedHealthcare, including PPO, POS, HMO, and HSA-compatible plans.
- 100% company-paid dental premiums for employees and eligible dependents.
- 100% company-paid vision premiums for employees and eligible dependents.
- 100% company-paid premiums for short-term disability, long-term disability, and accidental death & dismemberment (AD&D).
- 100% company-paid life insurance up to $200,000.
- 401(k) with immediate vesting: 4% company match plus 4% non-elective company contribution (8% total), with pre-tax and Roth options.
- Up to 20 days of flexible paid time off (PTO) and 11 paid floating holidays.
- Flexible work schedules, including flex time and compressed work periods (contract and project-dependent).