Security Engineer (Linux Systems Engineer)
Job Description
The Security Engineer / Linux Systems Engineer will support Navy Federal Credit Union’s Advanced Cyber Initiatives team by maintaining, deploying, remediating, and monitoring IT and enterprise security systems across on-prem, SaaS, and IaaS environments. This onsite role includes server troubleshooting, TLS certificate renewals, audit and hardening support, and participation in daily operations and on-call rotations.
Location and Schedule
- Location: Winchester, VA 22602 (onsite)
- Hours: Monday to Friday, with flexible scheduling within core office hours of 7:00AM to 6:00PM ET
- Additional listed locations: 820 Follin Lane, Vienna, VA 22180; 5510 Heritage Oaks Drive, Pensacola, FL 32526
- Additional listed location: 141 Security Drive, Winchester, VA 22602
Compensation
Salary: USD 99,400 to 155,850 per year
Key Responsibilities
- Support Navy Federal Credit Union in maintaining IT and enterprise-class security applications and systems
- Troubleshoot Linux and/or Windows server operating systems and the enterprise applications running on them
- Deploy, optimize, and maintain enterprise security applications across on-prem, SaaS, and IaaS models
- Remediate vulnerabilities on Windows and/or Linux systems while supporting platform stability through monitoring, maintenance, patching, and administration
- Deploy and configure SaaS enterprise applications
- Deploy AI, agentic solutions, and ML/LLM solutions to address modern security threats
- Maintain internal engineering documentation, including tool documentation, lessons learned, procedures, and status updates
- Renew and update TLS certificates on appliances and enterprise applications
- Respond to audit and enterprise hardening requests
- Update stories and subtasks currently in progress
- Provide updates during Daily Operations briefings
- Monitor the daily ticket queue for incidents and work ingestion, and assign items as required
- Complete quarterly access reviews
- Participate in on-call and after-hours rotation
- Perform other duties as assigned
Required Qualifications
- Bachelor’s Degree in Computer Science, Information Technology, Engineering, or a related discipline, or equivalent combination of education and experience
- Extensive hands-on experience automating and scripting server configurations and deployments
- Extensive hands-on experience patching and upgrading Linux and Windows operating systems, packages, and applications
- Enterprise high-security systems engineering experience or similar role, including understanding of enterprise security and hardening best practices with a focus on PCI-DSS and NCUA (ideal)
- Experience with AI, agentic solutions, and ML/LLM technology in practice and/or deployment
- Experience scripting with one or more of: Ansible, Python, Bash, PowerShell, Ruby
- Experience with and thorough understanding of SSO, SAML, and OAuth integrations for enterprise applications
- Ability to troubleshoot common Linux operating systems (CentOS, Red Hat, Ubuntu, and/or Cisco derivative OS) or the ability to troubleshoot Windows server operating systems
- Experience working in environments using infrastructure management processes such as change management, problem management, configuration management, and project management
- Hands-on experience with Agile, specifically Kanban workflow
- Experience using and integrating tools with SIEM systems
- Experience working with large enterprise processes, including siloed environments that require ticketing, coordination, detailed change management, and control processes
- Knowledge of core network, firewall, routing, switching, load balancing, and proxy principles, including troubleshooting from a server deployment and maintenance perspective
Technologies
- Linux, Windows
- Ansible, Python, Bash, PowerShell, Ruby
- SSO, SAML, OAUTH
- CentOS, Red Hat, Ubuntu, Cisco derivative OS’s
- SIEM, TLS
- AI, Agentic solutions, ML/LLM’s
- SaaS, IaaS, on prem
- Kanban
Desired Qualifications
- Experience with cybersecurity applications
- Experience with Linux-based Java/Tomcat COTS web applications in a clustered environment
- Experience with Windows .NET-based IIS COTS applications in a clustered environment
- Experience with physical or virtual appliances with limited Linux-based OS CLI interfaces
- Ability to read and understand packet captures
- Experience using and integrating with Jira/Confluence