Logo
job logo

Senior Trellix Cybersecurity Engineer/RMF ISSO - TS/SCI

ZTI Solutions LLC, Falls Church, VA, United States


About the Job

Senior Trellix Cybersecurity Engineer / RMF ISSO - TS/SCI

Clearance:

Active TS/SCI Clearance Required

Citizenship:

U.S. Citizen Required

Experience:

11-13 years of relevant experience

Education:

Bachelor's Degree in Computer Science or related field

Position Type:

Full-Time Permanent

Location:

On-Site at Suffolk Building (no remote/hybrid option)

Job Description:

ZTI is seeking a

Senior Trellix Cybersecurity Engineer with RMF ISSO expertise

to architect, implement, and manage a comprehensive Trellix security environment while supporting

RMF compliance activities

for a

high-visibility Chief Digital and Artificial Intelligence Office (CDAO) mission

focused on

AI/ML development and securing advanced data systems .

This role requires

expertise in deploying Trellix from the ground up , configuring and managing all modules, performing STIG compliance across integrated devices including Microsoft SQL, and ensuring cybersecurity compliance through direct ISSO responsibilities. The candidate will support AI/ML development environments to ensure their security posture meets DoD and CDAO mission objectives.

This is a

full-time permanent on-site role

at the Suffolk Building with an

immediate hire , offering a starting salary between

$160,000 and $190,000 , based on qualifications and experience.

Primary Responsibilities:

Architect, install, configure, and manage

Trellix ePO and associated modules

from initial deployment to operational sustainment. Integrate Trellix with

Microsoft SQL

databases, ensuring optimal performance, availability, and security compliance. Develop and implement

STIG hardening

for all systems associated with Trellix deployment, including endpoints, servers, and databases. Configure and manage endpoint security, DLP, threat prevention, and advanced Trellix modules to support CDAO AI/ML mission security requirements. Conduct vulnerability assessments and remediate findings to maintain system compliance with DoD and CDAO security standards. Develop operational documentation, SOPs, and as-built configurations for sustainment. Collaborate with security teams, system administrators, and data engineers to integrate Trellix into AI/ML workflows securely. Provide Tier III support and subject matter expertise for all Trellix-related issues and projects. Additional Duties - RMF ISSO Roles & Responsibilities:

Serve as

Information System Security Officer (ISSO)

for assigned AI/ML systems. Support development, implementation, and maintenance of RMF packages, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms). Conduct

continuous monitoring

activities, vulnerability scanning, and security control assessments. Coordinate with the Information System Security Manager (ISSM) and Authorizing Official (AO) to maintain system Authorization to Operate (ATO) status. Ensure security requirements are integrated into system designs supporting AI/ML operations. Maintain knowledge of evolving DoD, RMF, and CDAO cybersecurity policies to ensure compliance and proactive risk management. Required Qualifications:

11-13 years of cybersecurity engineering experience , with significant hands-on expertise in Trellix (McAfee) architecture and administration. Bachelor's Degree

in Computer Science, Cybersecurity, or related field. Active TS/SCI Clearance required. 8570 IAT II compliant certification

(e.g., Security+, CCNA Security, CySA+, GICSP, GSEC, SSCP). Cloud Security Certification

(e.g., AWS Certified Security - Specialty, CCSK, CCSP, Azure Security Engineer Associate). Expert-level knowledge in deploying and managing

Trellix ePO , Threat Prevention, DLP, and associated modules in DoD environments. Demonstrated experience

setting up Trellix from scratch , including policy configuration, system deployment, and integration with Microsoft SQL databases. Strong understanding of

DoD STIG compliance , vulnerability management, and security hardening for Windows and Linux systems. Experience performing RMF ISSO responsibilities within classified environments. Strong communication and collaboration skills, with experience working in cross-functional mission-focused teams. U.S. Citizenship required

due to contract requirements. Preferred Qualifications:

Trellix/McAfee Certified Product Specialist or similar vendor certifications. Familiarity with SIEM integrations involving Trellix and enterprise logging solutions. Experience with

STIG compliance automation tools

(e.g., SCAP, DISA STIG Viewer). Prior experience supporting

CDAO, AI/ML development environments , or advanced data security initiatives. Ability to develop security engineering solutions in alignment with RMF, NIST, and DoD cybersecurity frameworks. Work Environment & Additional Information:

On-Site at Suffolk Building

(no remote or hybrid options). Immediate hire

for a full-time permanent position. Competitive salary

($160,000 to $190,000 starting)

with full benefits. Opportunity to support

high-impact AI/ML development and CDAO mission security . Collaboration with a team of cybersecurity engineers, data scientists, and mission-focused professionals. Benefits:

Four Weeks of Paid Time Off All Federal Holiday Paid Vacation Four Percent Matching 401K Full health/vision/dental benefits for the employee and family paid 100% by ZTI Solutions, LLC

About the Company

ZTI Solutions, LLC was founded in 1997 in Virginia and is classified as a small business. The company is owned and operated by its founder, Rudy Zadnik, who emphasizes moral and business excellence over increasing company profits. This results in a more customer-oriented attitude towards mission accomplishment, as opposed to growing profits or sales.Our approach to consulting and engineering centers around using only highly skilled personnel who are seasoned industry veterans. All employees hold high-level industry and vendor certifications. We offer a comprehensive set of consulting and staff augmentation services, primarily focused on networking and security consulting in the classified space.