General Dynamics Information Technology · 23 hours ago
Cybersecurity Systems Administrator
General Dynamics Information Technology is a global technology and professional services company that delivers consulting and mission services across the U.S. government. The Cybersecurity Systems Administrator will play a crucial role in providing technical support for Cyber Operations Security Operations Center (CSOC) and maintaining essential cybersecurity systems to safeguard the organization's digital assets against evolving threats.
Artificial Intelligence (AI)Cloud ComputingConsultingCyber SecurityInformation Technology
Responsibilities
Collaborate with cybersecurity stakeholders to define and implement effective configurations for SIEM, EDR, and network access control solutions
Customize and optimize alert rules, correlation searches, and detection mechanisms within SIEM to align with security requirements and organizational objectives
Deploy new SIEM instances including clustered deployments and apps
Fine-tune EDR policies, rulesets, and scanning parameters to enhance endpoint visibility and threat detection capabilities
Configure network access control policies for the comply-2-connect solution to enforce security posture and mitigate risks associated with unauthorized devices
Ability to support Linux environment, editing and maintaining Splunk configuration files and apps
Work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards
Integrate cyber tools with variety of legacy data sources
Conduct routine maintenance tasks, such as software updates, patches, and performance tuning, to ensure the reliability and efficiency of cybersecurity systems
Provide timely support and troubleshooting assistance to address issues and incidents related to SIEM, EDR, C2C, and SOAR platforms, collaborating with vendors or higher-level support as necessary
Perform regular system audits and health checks to identify vulnerabilities, misconfigurations, or performance issues, implementing corrective actions as needed
Provide occasional presentations of tool capabilities to leadership
Develop and enforce configuration standards, security policies, and operational procedures for cybersecurity systems, ensuring compliance with regulatory requirements and industry best practices
Monitor compliance with security policies and regulations through audits, assessments, and reporting activities, taking corrective actions to address any deviations or gaps
Collaborate with compliance and audit teams to streamline regulatory compliance efforts and demonstrate adherence to security standards
Integrate cybersecurity systems with other security controls, data sources, and IT infrastructure components to create a cohesive security ecosystem
Develop and maintain automation scripts, playbooks, and workflows within the SOAR platform to automate routine tasks, orchestrate incident response processes, and enhance operational efficiency
Explore opportunities for innovation and continuous improvement by leveraging automation, orchestration, and integration with emerging technologies and industry trends
Provide training sessions and document processes to empower internal teams with the knowledge and skills required to effectively utilize cybersecurity systems
Share expertise, best practices, and lessons learned with colleagues through formal and informal channels, fostering a culture of collaboration and knowledge sharing within the cybersecurity team
Qualification
Required
Top Secret/SCI clearance required
US citizenship required
Bachelor's degree in Information Systems, Computer Science, Computer Engineering, or another related field
Relevant certifications (e.g., Security+, CISSP, GIAC, Splunk Core Certified Power User)
3+ years of related experience in cybersecurity administration, with a focus on configuring and managing SIEM, EDR, network access control, and SOAR platforms
Proficiency in Linux environments, including system administration tasks and shell scripting for automation and customization
Solid understanding of cybersecurity principles, threat landscapes, and best practices for configuring and tuning security tools
Strong analytical skills and attention to detail, with the ability to troubleshoot complex technical issues and optimize system performance
Excellent communication and collaboration skills, with the ability to interact effectively with technical and non-technical stakeholders
Demonstrates ability to work independently, prioritize tasks, and meet deadlines in a dynamic and fast-paced environment
Preferred
Prior CENTCOM/COCOM experience
Previous SOC experience is a plus
Previous cyber system administration is a plus
Linux experience
Benefits
Comprehensive benefits and wellness packages
401K with company match
Variety of medical plan options, some with Health Savings Accounts
Dental plan options
Vision plan
Full flex work weeks where possible
A variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave
Short and long-term disability benefits
Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance
Company
General Dynamics Information Technology
General Dynamics Information Technology is an IT consulting company that specializes in cyber security, AI, and quantum computing. It is a sub-organization of General Dynamics.
Funding
Current Stage
Late StageRecent News
2026-01-03
2025-12-16
Business Wire
2025-11-20
Company data provided by crunchbase