Twenty logo
TwentyPosted 1 month ago

IT Security Engineer

$116,000–$195,000 year

On-siteArlington, Virginia, United States

Full TimeBachelors DegreeStartup

Job Summary

Design, implement, and maintain enterprise network security architecture including firewalls, intrusion detection systems, VPNs, and DMZs. Develop and enforce security policies, standards, and procedures while conducting vulnerability scans and penetration testing to remediate gaps. Monitor systems 24/7 using SIEM tools to investigate incidents, manage access controls and IAM solutions, and enforce data loss prevention and encryption protocols. Perform security hardening, patch management, and root cause analysis on incidents, ensuring compliance with CMMC, SOC 2, GDPR, and PCI-DSS. This role supports Twenty Technologies' mission to industrialize offensive cyber operations for the U.S. and allies, requiring 5+ years of experience and potential government clearance eligibility.

Required Qualifications

  • Bachelor's degree in Computer Science, Information Security, or related field (or equivalent professional experience)
  • 5+ years of professional IT security experience
  • demonstrated expertise in at least two of the following domains: network security, systems security, or cybersecurity
  • Strong knowledge of TCP/IP, DNS, DHCP, and network protocols
  • experience with firewalls, proxies, and network segmentation
  • Hands-on experience with security tools such as Splunk, ELK Stack, Snort, Suricata, or similar SIEM and IDS/IPS platforms
  • Proficiency in systems security, including endpoint protection and vulnerability management
  • Experience with cloud security (AWS, Azure, or GCP) and containerized environments (Docker, Kubernetes)
  • Understanding of common attack vectors and security frameworks (NIST, CIS Controls, OWASP Top 10)
  • Excellent problem-solving skills with the ability to work independently and as part of a team
  • Strong communication skills to explain complex security concepts to non-technical stakeholders

Desired Qualifications

  • Security certifications such as CISSP, CISM, CEH, CCNA Security, Security+, or similar
  • Experience with security automation and Infrastructure as Code (Terraform, Ansible)
  • Knowledge of application security testing (SAST/DAST) and secure development practices
  • Experience with incident response and forensics investigations
  • Familiarity with compliance frameworks and audit processes

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce