Security Engineer (Linux Systems Engineer)
Ai Security
Cybersecurity Tools
Data Security
Desktop Support
DevOps
Embedded System
End User Support
Endpoint Security
Facilities Management
Identity and Access Management
Incident Response
Information Security
Information Technology (IT)
InfoSec
Linux
Operating System
Operating Systems
Product Security
Risk Management
Security
Security Automation
Security Compliance
Security Operations
Security Testing
Software Development
Software Engineering
Systems
Systems Engineering
Technical Support
Unix Operating System
Vulnerability Management
Windows Systems
Job Description
Join Navy Federal Credit Union’s Advanced Cyber Initiatives team and support the deployment, maintenance, troubleshooting, and hardening of enterprise security applications and systems with a strong focus on Linux systems engineering. This onsite role partners closely with the Platform Engineering manager and collaborates with Information Security teams to keep cybersecurity solutions running reliably across on prem, SaaS, and IaaS environments.
Salary: USD 99,400 - 155,850 per year. Location: onsite in Vienna, VA (additional locations listed include Pensacola, FL and Winchester, VA). Hours: Monday through Friday, with flexible scheduling within core office hours of 7:00AM-6:00PM ET.
What You’ll Do
- Support maintenance of IT and enterprise class security applications and systems for NFCU
- Troubleshoot Linux and/or Windows server operating systems and the enterprise applications running on them
- Deploy, optimize, and maintain enterprise security applications across on prem, SaaS, and IaaS
- Remediate vulnerabilities on Windows and/or Linux systems while maintaining stability through monitoring, patching, and administration
- Deploy and configure SaaS enterprise applications
- Deploy AI, agentic solutions, and ML/LLM technologies to address modern security threats
- Maintain internal engineering documentation, including tool documentation, lessons learned, procedures, and status updates
- Renew and update TLS certificates on appliances and enterprise applications
- Respond to audit and enterprise hardening requests
- Update stories and subtasks in progress, and provide updates during Daily Operations briefings
- Monitor the daily ticket queue for incidents and work ingestion, then assign as required
- Perform quarterly access reviews
- Support on-call and after-hours rotation
- Perform other duties as assigned
Required Qualifications
- Bachelor’s Degree in Computer Science, Information Technology, Engineering, or a related discipline (or equivalent combination of education and experience)
- Extensive hands-on experience automating or scripting server configurations and deployments
- Extensive hands-on experience patching and upgrading Linux and Windows operating systems, packages, and applications
- Experience in enterprise high security systems engineering (PCI-DSS/NCUA best practices ideal)
- Experience with AI, agentic solutions, and ML/LLM solutions in practice and/or deployment
- Scripting experience in at least one: Ansible, Python, Bash, PowerShell, Ruby, etc.
- Experience and thorough understanding of SSO/SAML/OAUTH integration for enterprise applications
- Strong troubleshooting ability for Linux distributions (CentOS, Red Hat, Ubuntu, and/or Cisco derivative OS) OR strong troubleshooting ability for Windows server OS
- Experience in environments with infrastructure management processes (change management, problem management, configuration management, and project management)
- Hands-on experience with Agile, specifically Kanban
- Experience using/integrating tools with SIEM systems
- Ability to work in environments requiring detailed ticketing, coordination, siloed workflows, and change control
- Knowledge of core networking concepts (firewall, routing, switching, load balancing, proxy principles) and troubleshooting from a server deployment/maintenance perspective
Technology & Tools
- Linux, Windows
- TLS certificates, TLS
- AI, agentic solutions, ML/LLM’s
- Ansible, Python, Bash, PowerShell, Ruby
- SSO, SAML, OAUTH
- SIEM
- CentOS, Red Hat, Ubuntu, Cisco derivative OS’s
- PCI-DSS, NCUA
- Agile, Kanban, Jira, Confluence
- SaaS, IaaS, on prem
- Java, Tomcat, COTS, .net, IIS
- Packet capture
Additional Information
- Navy Federal Credit Union currently does not provide sponsorship for this role. Applicants must be authorized to work in the United States without the need for current or future sponsorship.
- Advanced Cyber Initiatives is seeking a driven professional to help advance the program’s strategic vision.
- The role works closely with the Platform Engineering manager and collaborates with Information Security teams for deployment and maintenance of cybersecurity enterprise applications.