← Back to search results

Junior Security Engineer

Base-2 Solutions is seeking a Junior Security Engineer to support day-to-day security activities across enterprise and isolated environments. This on-site position in Bethesda, MD will provide hands-on support for security operations, vulnerability management, RMF/ATO activities, system hardening, and continuous monitoring. The role offers opportunities to develop across multiple areas of cybersecurity and take on increased technical responsibility as knowledge and experience grow.

  • Perform day-to-day security activities under the direction of senior security personnel and escalate risks, technical issues, and blockers as appropriate.
  • Support vulnerability management activities from identification through closure, including analysis, remediation, validation, and documentation.
  • Perform vulnerability scanning and analyze findings using ACAS, Tenable/Nessus, or equivalent technologies.
  • Work with Windows, Linux, network, desktop support, and other engineering teams to assist with vulnerability remediation and security-related technical issues.
  • Implement and validate DISA STIGs and approved security configuration baselines across infrastructure systems.
  • Perform recurring security activities, including audit log reviews, account reviews, vulnerability reviews, security control validation, and continuous monitoring.
  • Support RMF/ATO activities, including security documentation, control evidence, Body of Evidence (BoE), POA&Ms, and compliance with NIST SP 800-53, ICD 503, and applicable security directives.
  • Assist with reviewing system and configuration changes for potential security impact and document findings for review by senior security personnel and the ISSM.
  • Support security activities for isolated or restricted environments, including vulnerability scanning, logging, patching, hardening, and security monitoring.
  • Review security logs and events using Splunk or equivalent SIEM/log-management technologies and escalate identified issues as appropriate.
  • Assist with maintaining security procedures, documentation, compliance evidence, and vulnerability remediation records.
  • Track assigned security findings, remediation activities, and action items through completion and provide status updates as required.
  • Participate in security reviews, engineering meetings, and Technical Exchange Meetings (TEMs) as required.
  • Research security vulnerabilities, technical requirements, and remediation approaches and provide findings and recommendations to senior security personnel.
  • Develop technical knowledge across the environment and take on increased responsibility for security activities as experience and proficiency grow.
  • Relevant experience meeting an applicable education/experience pathway in the equivalency section.
  • Experience with application performance and latency problems related to security requirements from front, middle, and back end.
  • Working experience with Windows Server 2016/2019, Active Directory, IIS, DNS, DHCP, Exchange, and DFS.
  • Experience implementing security controls on common network services such as file, email, and Active Directory across multiple geographically dispersed sites.
  • Experience with networking technologies and security assessment, including STIGs.
  • Experience implementing and supporting enterprise system security and malware monitoring and prevention tools such as Splunk, McAfee HBSS, and ACAS.
  • Solid network and systems troubleshooting experience with TCP/IP, Internet security, and encryption, including data at rest and data in transit.
  • Ability to produce clear and concise documents and diagrams capturing networking and operational procedures and LAN/WAN topology using MS Visio, MS Project, MS Excel, and MS Word.
  • US Citizenship is required due to the nature of the government contracts supported.
  • CISSP certification.
  • CASP certification.
  • Bachelor's degree with at least 2 years of relevant experience.
  • Additional years of relevant experience in lieu of a degree.
  • Candidate must, at a minimum, meet DoD 8570.11- IAT Level II certification requirements, currently Security+ CE, CCNA-Security, GSEC, or SSCP along with an appropriate computing environment (CE) certification.
  • Active Top Secret/SCI