hero

AEG Job Board

Discover career opportunities in the AEG Sponsor network

Senior Security Engineer

The George Washington University

The George Washington University

Software Engineering
Washington, DC, USA
USD 78,578.35-150,673.1 / year
Posted on Apr 15, 2025
I. JOB OVERVIEW
Job Description Summary:
George Washington University Information Technology (GWIT) is the chief provider of technology services and applications at The George Washington University (GW). GWIT partners with all key stakeholders across GW to equip students, faculty, and staff with the technology and tools necessary to achieve academic excellence. This Senior Security Engineer position works within GWIT as a member of the Security Operation Center (SOC).

This role’s responsibilities directly support incident response and SOC functions as well as measuring and improving the university’s overall IT Security risk posture. Our mission is to secure and protect from known, discovered and emerging threat to network traffic and sensitive, restricted, and regulated data at rest and in transit. This role serves as a subject matter expert in the areas of vulnerability assessments, forensics, threat monitoring and incident response. The role also coordinates on-call security operations center functions in a 24×7×365 operating environment.

Position Responsibilities:
  • Perform security operations and incident response activities by monitoring, assessing threats, reviewing events and alerts, prioritizing response and conducting mitigation and remediation activities.
  • Conduct independent analysis on events and alerts to determine, coordinate and implement mitigation measures.
  • Assist team in maintaining IT security tool and capability portfolio through engaged lifecycle management of hardware and software solutions, vendor management and budget planning activities (researching and drafting business cases in a zero-based budget environment) as requested.
  • Contribute to the identification, creation, and management of documentation of security processes, network security standards and procedures for both internal runbooks as well as university wide communications and awareness.
  • Assists the SOC team in cloud incident response investigations (AWS).
  • Mentor and train junior staff.
  • Participate in on-call 24/7/365 rotation.
  • Participate in firewall approval process rotation.

Performs other related duties as assigned. The omission of specific duties does not preclude the supervisor from assigning duties that are logically related to the position.
Minimum Qualifications:
Qualified candidates will hold a Bachelor’s degree in an appropriate area of specialization plus 5 years of relevant professional experience, OR, a Master’s degree or higher in a relevant area of study plus 3 years of relevant professional experience, OR a Bachelor’s degree in an appropriate area of specialization plus 3 years of relevant professional experience PLUS a relevant IT Security certification. Degree must be conferred by the start date of the position. Degree requirements may be substituted with an equivalent combination of education, training and experience.
Additional Required Licenses/Certifications/Posting Specific Minimum Qualifications:
Preferred Qualifications:
  • Demonstrated experience in cybersecurity incidents and response methodology, including in-depth knowledge of each phase of the incident response life cycle.
  • Extensive experience in a security operations center (SOC) environment, including operation and installation of security systems specifically related to intrusion detection, intrusion prevention, and forensic as well as assurance of successful deployment and functionality in collaboration with network staff and other stakeholders.
  • Familiarity with Cyber Kill Chain, ATT&CK, and other frameworks, including these, is leveraged in security operations.
  • Thorough understanding of enterprise network architectures to include routing/switching, common protocols (DHCP, DNS, HTTP, etc.), and devices (Firewalls, Proxies, Load Balancers, VPN, etc.).
  • Subject matter expertise across security operational areas, including, but not limited to:
    • Security Architecture
    • Network Defense and IPS/IDS
    • Incident Response and Forensics
    • Threat Intelligence
    • AWS, Azure
  • Ability to work closely with team members and independently to deliver expected results.
  • Experience within a university environment is desirable.
  • Strong analytical and creative problem-solving skills to resolve complex security design issues to create new security solutions based on threat analysis, metrics and trends, and uncover vulnerabilities.
  • Knowledge of a scripting language and networking fundamentals helpful.
  • Experience within a university environment is desirable.
  • Ability to work independently and as part of a team including mentoring junior staff.
  • Experience with Palo Alto, FireEye, and CISCO security and related tools highly desirable.
  • Knowledge and experience in hybrid environments involving hybrid on-premise and public/private cloud as well as numerous vendor-specific SaaS solutions.
  • Demonstrated ability to derive meaningful metrics and guidance from system data and trends that guide planning and inform reporting.

Additional Desired Licenses/Certifications:
  • Cybersecurity certifications focused on security and cloud security such as GIAC Security Operations (GSOC), Cloud Security, GIAC Certified Incident Handler Certification (GCIH), AWS Certified Security are desireable.
Hiring Range $78,578.35 - $150,673.10
GW Staff Approach to Pay

How is pay for new employees determined at GW?

Healthcare Benefits

GW offers a comprehensive benefit package that includes medical, dental, vision, life & disability insurance, time off & leave, retirement savings, tuition, well-being and various voluntary benefits. For program details and eligibility, please visit https://hr.gwu.edu/benefits-programs.

II. JOB DETAILS
Campus Location: Ashburn, Virginia
College/School/Department: GW IT
Family Information Technology
Sub-Family Systems Security
Stream Individual Contributor
Level Level 3
Full-Time/Part-Time: Full-Time
Hours Per Week: 40
Work Schedule: Monday-Friday, 9 am - 5 pm
Will this job require the employee to work on site? Yes
Employee Onsite Status Hybrid
Telework: Yes
Required Background Check: Criminal History Screening, Education/Degree/Certifications Verification, Social Security Number Trace, and Sex Offender Registry Search
Special Instructions to Applicants:
Employer will not sponsor for employment Visa status
Internal Applicants Only? No
Posting Number: S013673
Job Open Date: 04/14/2025
Job Close Date:
If temporary, grant funded, Sponsored Project funded or limited term appointment, position funded until:
Background Screening Successful Completion of a Background Screening will be required as a condition of hire.
EEO Statement:

The university is an Equal Employment Opportunity employer that does not unlawfully discriminate in any of its programs or activities on the basis of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity or expression, or on any other basis prohibited by applicable law.