
Senior Trellix Cybersecurity Engineer / RMF ISSO – TS/SCI
Clearance: Active TS/SCI Clearance Required
Citizenship: U.S. Citizen Required
Experience: 11-13 years of relevant experience
Education: Bachelor's Degree in Computer Science or related field
Position Type: Full-Time Permanent
Location: On-Site at Suffolk Building (no remote/hybrid option)
Job Description
ZTI is seeking a Senior Trellix Cybersecurity Engineer with RMF ISSO expertise to architect, implement, and manage a comprehensive Trellix security environment while supporting RMF compliance activities for a high‑visibility Chief Digital and Artificial Intelligence Office (CDAO) mission focused on AI/ML development and securing advanced data systems .
This role requires expertise in deploying Trellix from the ground up , configuring and managing all modules, performing STIG compliance across integrated devices including Microsoft SQL, and ensuring cybersecurity compliance through direct ISSO responsibilities. The candidate will support AI/ML development environments to ensure their security posture meets DoD and CDAO mission objectives.
This is a full‑time permanent on‑site role at the Suffolk Building with an immediate hire , offering a starting salary between $160,000 and $190,000 , based on qualifications and experience.
Primary Responsibilities
- Architect, install, configure, and manage Trellix ePO and associated modules from initial deployment to operational sustainment.
- Integrate Trellix with Microsoft SQL databases, ensuring optimal performance, availability, and security compliance.
- Develop and implement STIG hardening for all systems associated with Trellix deployment, including endpoints, servers, and databases.
- Configure and manage endpoint security, DLP, threat prevention, and advanced Trellix modules to support CDAO AI/ML mission security requirements.
- Conduct vulnerability assessments and remediate findings to maintain system compliance with DoD and CDAO security standards.
- Develop operational documentation, SOPs, and as‑built configurations for sustainment.
- Collaborate with security teams, system administrators, and data engineers to integrate Trellix into AI/ML workflows securely.
- Provide Tier III support and subject matter expertise for all Trellix‑related issues and projects.
Additional Duties – RMF ISSO Roles & Responsibilities
- Serve as Information System Security Officer (ISSO) for assigned AI/ML systems.
- Support development, implementation, and maintenance of RMF packages, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms).
- Conduct continuous monitoring activities, vulnerability scanning, and security control assessments.
- Coordinate with the Information System Security Manager (ISSM) and Authorizing Official (AO) to maintain system Authorization to Operate (ATO) status.
- Ensure security requirements are integrated into system designs supporting AI/ML operations.
- Maintain knowledge of evolving DoD, RMF, and CDAO cybersecurity policies to ensure compliance and proactive risk management.
Required Qualifications
- 11-13 years of cybersecurity engineering experience , with significant hands‑on expertise in Trellix (McAfee) architecture and administration.
- Bachelor’s Degree in Computer Science, Cybersecurity, or related field.
- Active TS/SCI Clearance required.
- 8570 IAT II compliant certification (e.g., Security+, CCNA Security, CySA+, GICSP, GSEC, SSCP).
- Cloud Security Certification (e.g., AWS Certified Security – Specialty, CCSK, CCSP, Azure Security Engineer Associate).li>
- Expert‑level knowledge in deploying and managing Trellix ePO , Threat Prevention, DLP, and associated modules in DoD environments.
- Demonstrated experience setting up Trellix from scratch , including policy configuration, system deployment, and integration with Microsoft SQL databases.
- Strong understanding of DoD STIG compliance , vulnerability management, and security hardening for Windows and Linux systems.
- Experience performing RMF ISSO responsibilities within classified environments.
- Strong communication and collaboration skills, with experience working in cross‑functional mission‑focused teams.
- U.S. Citizenship required due to contract requirements.
Preferred Qualifications
- Trellix/McAfee Certified Product Specialist or similar vendor certifications.
- Familiarity with SIEM integrations involving Trellix and enterprise logging solutions.
- Experience with STIG compliance automation tools (e.g., SCAP, DISA STIG Viewer).
- Prior experience supporting CDAO, AI/ML development environments , or advanced data security initiatives.
- Ability to develop security engineering solutions in alignment with RMF, NIST, and DoD cybersecurity frameworks.
Work Environment & Additional Information
- On‑Site at Suffolk Building (no remote or hybrid options).
- Immediate hire for a full‑time permanent position.
- Competitive salary ($160,000 to $190,000 starting) with full benefits.
- Opportunity to support high‑impact AI/ML development and CDAO mission security .
- Collaboration with a team of cybersecurity engineers, data scientists, and mission‑focused professionals.
Benefits
- Four Weeks of Paid Time Off
- All Federal Holiday Paid Vacation
- Four Percent Matching 401K
- Full health/vision/dental benefits for the employee and family paid 100% by ZTI Solutions, LLC