Cyber Security Engineer

Clearance Level
Information Security
Washington, District of Columbia

REQ#: RQ87733

Travel Required: None
Public Trust: Other
Requisition Type: Regular



  • Azure and AWS Cloud Network and Security expertise
  • Palo Alto NextGen Firewalls
  • Zscaler ZIA and ZPA
  • Redseal Security Modeling
  • Proxy SG gateways.
  • Splunk Enterprise and Splunk Enterprise Security
  • Cisco Routers and Switches. 
  • Routing Protocols (RIP, OSPF, BGP, IGRP, IS-IS AND EIGRP).
  • Switching Technologies (Vlans, Trunking, VTP & STP).
  • Access Lists.
  • IP Addressing (Subnetting & VLSM).
  • Understanding of Active Directory Windows 2016 (AD).
  • Network Address Translation (NAT).
  • LAN/WAN Technology
  • ASA Firewalls and VPN.
  • Linux OS and scripting capabilities
  • Python Programing and Scripting.


  • Azure certifications
  • AWS certifications
  • Zscaler ZIA and ZPA
  • Security +
  • Splunk Admin Certification
  • RedSeal Admin Certification
  • Palo Alto Certified Network Security Engineer (PCNSE)
  • Active Cisco Certified Network Professional (CCNP) certification. 
  • Cisco Certified Network Associate (CCNA).
  • ITIL version 3 certified.


  • Bachelors in Engineering – Computer Science and or Cyber Security


  • Top Secret Clearance and Q clearance


  • Builds, designs, tests and deploys parameter security systems to include firewalls and proxy devices
  • Responsible for firewall rule changes by process that includes analysis of request, security recommendation, change control documentation and obtaining approval for implementation.
  • Facilitates system implementation planning, providing review of firewall rules and security risk analysis. 
  • Conducts troubleshooting of firewall and network application issues, providing root cause determination and recommend resolution options. Manage vendor ticket, information gathering, and troubleshooting in the event of a platform issue
  • Plans, documents, and implements hardware and software refresh and upgrade of Palo Alto perimeter devices.
  • Conducts periodic firewall rule set review and auditing for standards and use.
  • Competence with Linux and firewall command line interfaces. 
  • Creates and maintains standard operating procedures and guides for new and/or existing perimeter hardware and software.
  •  Attends weekly teleconferences, onsite meetings, and participates in working groups, as related to constant changing security environment.
  • Support outbound email traffic and DNS traffic through E3 Einstein ( DHS) inspection suites.
  • Configure, manage and deploy the DMZ zones for various server farms handling agencies traffic via Vsys on Palo Alto firewalls
  • Configure, manage and deploy the Zscaler Security Services via the Zscaler Fedramp Cloud
  • Perform traffic analysis via Wireshark and Tcpdump file.
  • Perform network and security traffic analysis via Splunk Wireshark and Tcpdump file.
  • Maintain the Cyber Security Operations Security Tool Suite Systems (Splunk, Redseal, Gateways, Proxy , Log Servers, etc.)
  • Develop high level and detailed network diagrams on Visio.
  • Perform application/Content ID and URL filtering on next generation Palo Alto firewalls as per the department policy.
  • Log analysis with Python Programming and Linux GREP commands.
We are GDIT. The people supporting some of the most complex government, defense, and intelligence projects across the country. We deliver. Bringing the expertise needed to understand and advance critical missions. We transform. Shifting the ways clients invest in, integrate, and innovate technology solutions. We ensure today is safe and tomorrow is smarter. We are there. On the ground, beside our clients, in the lab, and everywhere in between. Offering the technology transformations, strategy, and mission services needed to get the job done.

GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.