National Laboratory of the Rockies Logo

National Laboratory of the Rockies

Cybersecurity Engineer

Posted 3 Days Ago
Remote
Hiring Remotely in USA
84K-181K Annually
Expert/Leader
Remote
Hiring Remotely in USA
84K-181K Annually
Expert/Leader
Manages and tunes cybersecurity tools, including Splunk, SIEM, SOAR, firewalls, endpoint security, vulnerability detection, and cloud monitoring platforms. Designs and deploys secure on-premises and cloud environments, develops automation and integrations, leads security testing and infrastructure projects, and maintains technical documentation and procedures. The role also guides security policy decisions, supports cybersecurity operations, and leads initiatives improving automation, visibility, incident response, and security awareness.
The summary above was generated by AI
Posting TitleCybersecurity Engineer

.

LocationRemote

.

Position TypeRegular

.

Hours Per Week40

.

Working at NLR

Join the National Laboratory of the Rockies (NLR), where world-class scientists, engineers, and experts are accelerating energy innovation through breakthrough research and systems integration. From our mission to our collaborative culture, NLR stands out in the research community for its commitment to an affordable and secure energy future. Spanning foundational science to applied systems engineering and analysis, we focus on solving complex challenges to deliver advanced, secure, reliable, and cost-effective energy solutions. Our work helps strengthen U.S. industries, support job creation, and promote national economic growth.

At NLR, you'll find a mission-driven environment supported by state-of-the-art facilities, multidisciplinary research teams, and strong collaborations with industry, academia, and other national laboratories. We offer robust professional development opportunities, and a competitive benefits package designed to support your career and well-being.

Job Description
  • Manages, troubleshoots, and tunes cybersecurity tools and sensors, such as log aggregation (SIEM), automation/orchestration (SOAR), analysis, enrichment, alerting, and forensic data retention systems.

  • Selects, tests, deploys, and tunes new on-premises and cloud-based technical environments that support infrastructure visibility, analysis, automation, and secure data retention. 

  • Guides policy decisions and/or manages security policies and related configurations for distributed security tools such as firewalls, endpoint detection and response suites, vulnerability detection tools, and cloud-based monitoring, protection, and incident response tools. 

  • Develops content that enables cybersecurity personnel to take maximum advantage of existing tool capabilities, including workflows, integrations, and automated tasks. 

  • Leads, designs, and performs infrastructure, application, and network tests and exercises to determine the efficacy of security defense strategies and tools. 

  • Leads Information Technology Services project teams to integrate distributed network and endpoint security products with cybersecurity enrichment and analysis platforms and system management tools. 

  • Creates and maintains architectural documentation and operational procedures that describe the scope, purpose, configuration, use, and maintenance of the cybersecurity operations tools and environments.

  • Leads projects (as assigned or independently) that improve the effectiveness and efficiency of NLR’s cybersecurity program, including but not limited to workflow improvements, automation expansion, management tool enhancements, program or NLR strategic initiatives, and user awareness training.

.

Basic QualificationsRelevant Bachelor's Degree and 9 or more years of experience or equivalent relevant education/experience. Or, relevant Master's Degree and 7 or more years of experience or equivalent relevant education/experience. Or, relevant PhD and 4 or more years of experience or equivalent relevant education/experience. Applies extensive IS expertise in specific field and has full knowledge of related disciplines. Evaluates new hardware, software, systems tools and applications and makes procurement recommendations. Excellent leadership and project management skills. Skilled in analytical techniques, practices and problem solving. Extensive programming and architecture abilities with various computer software programs and information systems.

* Must meet educational requirements prior to employment start date.

Additional Required Qualifications

Training specific experience or training/certifications with Splunk administration is required.

DOE L/Q

Clearance: Must be able to obtain and maintain a DOE L/Q Security Clearance.

Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age; U.S. citizenship is required except in very limited circumstances. See DOE O 472.2A for additional information.

Preferred Qualifications
  • Experience includes at least seven years in an Information Technology role working specifically in security engineering, or a role that includes significant time performing security engineering (tool selection, installation, and maintenance)
  • One or more professional security and/or systems engineering certifications, such as GIAC (SANS) certifications, Security+, CISSP, or training evidencing effort to attain future certification
  • Technical background in multiple disciplines, including experience with: Windows and Linux server and workstation system administration; TCP/IP networking concepts, Bash command-line expertise, network protocols and architecture; security measures/defense-in-depth
  • Experience managing, and troubleshooting both network- and host-based security tools and significant infrastructure (ex. SIEM, IDS, IPS, full packet capture) in a production (live) environment
  • Subject matter expertise in cybersecurity engineering; understands how to select and tune tools to provide analysts with best value visibility and response
  • Experience dealing with common cyber security concepts and threats and describing them to others
  • Intermediate scripting/programming ability with various languages, preferably Python, in support of security orchestration and automation
  • Technology-specific experience or training/certifications with Splunk SIEM and Cortex XSOAR (formerly Demisto) is a plus
  • Understanding of cloud security architecture, event collection and aggregation a plus

.

Job Application Submission Window

The anticipated closing window for application submission is up to 30 days and may be extended as needed.

Annual Salary Range (based on full-time 40 hours per week)Job Profile: IT Professional IV / Annual Salary Range: $100,400 - $180,700

Job Profile: IT Professional III / Annual Salary Range: $83,600 - $150,500

NLR takes into consideration a candidate’s education, training, and experience, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the Colorado Equal Pay for Equal Work Act, a potential new employee’s salary history will not be used in compensation decisions.

Benefits SummaryBenefits include medical, dental, and vision insurance; short*- and long-term disability insurance; pension benefits*; 403(b) Employee Savings Plan with employer match*; life and accidental death and dismemberment (AD&D) insurance; personal time off (PTO) and sick leave; paid holidays; and tuition reimbursement*. NLR employees may be eligible for, but are not guaranteed, performance-, merit-, and achievement- based awards that include a monetary component. Some positions may be eligible for relocation expense reimbursement. Limited-term positions are not eligible for long-term disability or tuition reimbursement.

* Based on eligibility rules

Badging RequirementNLR is subject to Department of Energy (DOE) access restrictions. All employees must also be able to obtain and maintain a federal Personal Identity Verification (PIV) card as required by Homeland Security Presidential Directive 12 (HSPD-12), which includes a favorable background investigation.

Drug Free Workplace

NLR is committed to maintaining a drug-free workplace in accordance with the federal Drug-Free Workplace Act and complies with federal laws prohibiting the possession and use of illegal drugs. Under federal law, marijuana remains an illegal drug.

If you are offered employment at NLR, you must pass a pre-employment drug test prior to commencing employment. Unless prohibited by state or local law, the pre-employment drug test will include marijuana. If you test positive on the pre-employment drug test, your offer of employment may be withdrawn.

Submission Guidelines

Please note that in order to be considered an applicant for any position at NLR you must submit an application form for each position for which you believe you are qualified. Applications are not kept on file for future positions. Please include a cover letter and resume with each position application.

.

Equal Opportunity Employer

All qualified applicants will receive consideration for employment without regard basis of age (40 and over), color, disability, gender identity, genetic information, marital status, domestic partner status, military or veteran status, national origin/ancestry, race, religion, creed, sex (including pregnancy, childbirth, breastfeeding), sexual orientation, and any other applicable status protected by federal, state, or local laws.


Reasonable Accommodations


E-Verify www.dhs.gov/E-Verify For information about right to work, click here for English or here for Spanish.

E-Verify is a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce.


Similar Jobs

22 Hours Ago
In-Office or Remote
90K-110K Annually
Mid level
90K-110K Annually
Mid level
Software
Executes security engineering and operations across endpoints, identity, cloud platforms, and enterprise systems. Responsibilities include endpoint hardening, IAM administration, alert and log analysis, vulnerability management, access reviews, security technology deployments, compliance evidence collection, scripting, troubleshooting, documentation, and process improvement. The role partners with IT, Engineering, DevOps, IAM, and platform teams to maintain technical safeguards, resolve issues, and improve security workflows.
Top Skills: Active DirectoryAntivirusAWSAzureBashConditional AccessDisk EncryptionEdrGCPGoogle WorkspaceLinuxmacOSMdmMfaMicrosoft 365PowershellPythonSalesforceSIEMSsoWindows
2 Days Ago
In-Office or Remote
Senior level
Senior level
Cloud • Payments • Software
Lead end-to-end cybersecurity incident response, including detection, triage, investigation, containment, eradication, and recovery. Perform host and network forensics, malware and email analysis, threat hunting, and root cause analysis. Build detections, indicators, automated response workflows, and playbooks using MITRE ATT&CK. Coordinate with engineering, IT, security teams, and leadership, analyze threat intelligence, recommend mitigations, and provide on-call incident coverage.
Top Skills: Active DirectoryAdvanced Threat ProtectionApi SecurityCyber Kill ChainEdrHTTPIdentity ManagementIso 27001ItilJupyter NotebooksKqlMicrosoft SentinelMitre Att&CkPci DssPowershellPythonSIEMSmtpSoarWindows
4 Days Ago
Remote
US
60K-80K Annually
Entry level
60K-80K Annually
Entry level
Professional Services • Consulting • Cybersecurity
Implements, configures, and maintains cybersecurity, networking, and cloud technologies for clients. Assesses environments against security frameworks, administers networks, monitors events, investigates suspicious activity, develops SIEM detections, troubleshoots technical issues, documents procedures, and supports client projects. The role collaborates with SOC and other teams while delivering secure solutions and client-facing managed security services.
Top Skills: Amazon Web ServicesAzureAzure SentinelBashCis ControlsCiscoCjisCmmcEdr/MdrElasticFirewallsFortinetGoogle Cloud PlatformGoogle WorkspaceHipaaIds/IpsIso 27001LogrhythmMfaMicrosoft 365Microsoft Entra IdNist Csf 2.0Palo AltoPci DssPowershellPythonSevcoSIEMSophosSplunkSsoStellar CyberTenable

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account