Principal Cybersecurity Engineer - US Federal
Indexed description
About The Team
At Workday, we help the world’s largest organizations adapt to what’s next by bringing finance, HR, and planning into a single enterprise cloud. We work hard, and we’re serious about what we do. But we like to have fun, too. We put people first, celebrate diversity, drive innovation, and do good in the communities where we live and work.
Workday's Cyber Defense team helps protect an ever-growing technology, global footprint. We are responsible for monitoring, detecting, and responding to threats to the company and keeping the trust of our customers. Functions like Security Response, Threat Intelligence, Detection Engineering, Secure Code Development and many others make up the fabric of who we are and what we do daily around the world. The National Security Group leads all cyber defense, personnel security, and security compliance functions for Defense and Intelligence Community Workday customer environments.
About The Role
This role will support one or more direct or indirect contracts with the U.S. Federal Government which, due to federal government security requirements, mandates that all Workday personnel working on the contracts be United States citizens (naturalized or native).
Workday is expanding into the US Government air-gapped classified cloud environment. We are looking for a Cybersecurity Engineer to help build out the team, technology, and processes to support cybersecurity in this new environment. You will be our Cyber Defense presence in the air-gapped network and will be part of a team responsible for all cybersecurity functions such as vulnerability management, incident response, threat hunting, and threat detection. You will work closely with the customers and with our Cyber Defense teams to ensure consistency across environments and develop best practices in this exciting environment.
About You
This role may require a security clearance at the TS/SCI w/CI Poly level. Applicants must have the ability to obtain and maintain a U.S. government issued security clearance. An active TS/SCI w/CI Poly is preferred.
May be required to be on site at client locations in the DC, MD, and VA (DMV) area.
Basic Qualifications
- 10+ years of experience in technical security consultancy, security operations, response, vulnerability management, threat detection, or threat hunting.
- 2+ years of hands-on technical leadership experience.
- Experience deploying, monitoring, and managing systems in the AWS or Microsoft Top Secret clouds.
- Bachelor’s degree in a relevant discipline such as Computer Science, Cybersecurity, Information Security, or a related discipline; a Master's degree preferred or equivalent practical experience.
- Strong understanding of platform, application, and cloud security fundamentals.
- Familiarity with containerized applications and their security considerations
- Demonstrated knowledge of adversary TTPs (Tactics, Techniques and Procedures).
- Deep understanding of network and application security threats, attack techniques, and mitigation options.
- Experience managing vulnerability scans and effectively prioritizing actions for system owners.
- Experience building and maintaining investigation and/or response tools.
- Experience with SIEM and SOAR security technologies and solutions.
- Experience with hunting techniques.
- Able to work independently and coordinate activities across multiple teams.
- Ability to drive multiple projects and priorities while managing operational responsibilities.
- Excellent written and verbal communication skills, building positive relationships with partner organizations.
- Preferred DoD 8570/8140 compliant with at least IAT Level II certification, including a current Computing Environment (CE) credential and one approved specialty certification (e.g., CompTIA CySA+, GICSP, CASP+)
Primary Location: USA.VA.Reston
Primary Location Base Pay Range: $184,800 USD - $277,200 USD
Additional US Location(s) Base Pay Range: $167,200 USD - $300,000 USD
Our Approach to Flexible Work
With Flex Work, we’re combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. We know that flexibility can take shape in many ways, so rather than a number of required days in-office each week, we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers, prospects, and partners (depending on role). This means you'll have the freedom to create a flexible schedule that caters to your business, team, and personal needs, while being intentional to make the most of time spent together. Those in our remote "home office" roles also have the opportunity to come together in our offices for important moments that matter.
Pursuant to applicable Fair Chance law, Workday will consider for employment qualified applicants with arrest and conviction records.
Workday is an Equal Opportunity Employer including individuals with disabilities and protected veterans.
Workday is committed to providing reasonable accommodations for qualified individuals during our application process, in order to perform one or more essential functions of their job, as well as regarding the use of AI tools for employment decision-making to any degree. Please see below for more details including how to request an accommodation as a qualified veteran, due to a disability or for religious reasons, or as otherwise provided under applicable law.
Workday prohibits taking adverse action against any candidate or employee for reporting a possible violation of this policy, requesting one or more work accommodations, exercising a privacy right, or cooperating in an investigation in accordance with applicable law. Any employee who retaliates against a candidate or employee for doing so may be subject to disciplinary action, up to and including termination of employment, to the fullest extent allowable under applicable law.
If you require a reasonable accommodation, you may email [email protected], as far in advance as possible.
Are you being referred to one of our roles? If so, ask your connection at Workday about our Employee Referral process!
At Workday, we value our candidates’ privacy and data security. Workday will never ask candidates to apply to jobs through websites that are not Workday Careers.
Please be aware of sites that may ask for you to input your data in connection with a job posting that appears to be from Workday but is not.
In addition, Workday will never ask candidates to pay a recruiting fee, or pay for consulting or coaching services, in order to apply for a job at Workday.
,
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search