Job Description
This role is responsible for developing, implementing, and maintaining key cybersecurity technologies across both X-energy corporate and TRISO fuel facility operations, including Endpoint Detection and Response (EDR), Network Detection and Response (NDR), Security Information and Event Management (SIEM), and Security Orchestration, Automation, and Response (SOAR). The position serves as a critical bridge between corporate IT infrastructure and the TRISO fuel facility, conducting software evaluations, performing architecture reviews, and identifying and addressing cybersecurity gaps between the two environments.
In addition to tooling and operations duties, the role leads structured threat modeling and cyber evaluation activities. The analyst applies established methodologies such as STRIDE to identify, categorize, and prioritize threats across systems, data flows, and trust boundaries spanning both environments. The analyst facilitates threat modeling sessions during architecture reviews and software evaluations, translates identified threats into actionable mitigations, and reassesses threat models as architectures evolve to ensure security gaps are documented, tracked, and remediated.
Responsibilities
- Conduct proactive threat hunts, monitor endpoint and network data, and collect and analyze digital forensic artifacts including malware.
- Coordinate with the X-energy infrastructure team and technology vendors to evaluate solutions that support enterprise-wide security objectives.
- Design, implement, and maintain EDR, NDR, SIEM, and SOAR systems and configure and optimize security tools to improve detection capabilities and response times.
- Perform threat hunting activities to identify potential vulnerabilities and threats, using advanced analytical techniques to uncover hidden threats within the environment.
- Monitor endpoint and network data for anomalies and suspicious activities, analyze security alerts and incidents to determine the nature and scope of threats.
- Collect and analyze digital forensic artifacts from compromised systems, investigate malware, and conduct reverse engineering to understand threat behavior.
- Collaborate with IT and security teams to improve overall security posture and prepare detailed reports on security incidents, findings, and recommendations for management.
- Lead the execution and deployment of core security tasks with independent judgment, provide guidance to junior team members, and share knowledge related to industry best practices and standards.
- Perform other duties as assigned by the manager.
Tasks/Responsibilities
- EDR, NDR, SIEM, and SOAR Implementation: Design, implement, and maintain systems.
- Configure and optimize security tools to improve detection capabilities and response times.
- Threat Hunting: Conduct proactive threat hunting activities.
- Monitoring and Analysis: Monitor endpoint and network data for anomalies.
- Digital Forensics: Collect and analyze digital forensic artifacts and conduct reverse engineering.
- Collaboration and Reporting: Collaborate with IT and security teams and prepare detailed reports.
Minimum Qualifications
- High school diploma required.
- Basic understanding of EDR, NDR, SIEM, and SOAR technologies.
- Ability to obtain and maintain a SECRET clearance or higher (U.S. citizenship required).
- Typically ten years of experience in a cybersecurity, network security, or related role.
- Certified Information Systems Security Professional (CISSP).
- Direct knowledge and experience managing cybersecurity tools such as NDR, EDR, and SIEM.
- Experience with Splunk.
- Experience with Identity & Access Management technologies including Federation, Multi-Factor Authentication (MFA), and Public Key Infrastructure (PKI).
- Experience with cloud technologies (AWS, Azure, Docker, Kubernetes, and DevSecOps).
- Experience with integration of cybersecurity tools to support an enterprise-level cybersecurity program.
- Experience leveraging Artificial Intelligence (AI), Machine Learning (ML), and Orchestration to secure the environment.
Preferred Qualifications
- Experience working in the nuclear industry or familiarity with nuclear facility operations and regulatory requirements.
- Demonstrated networking background with hands-on experience in network architecture, protocols, and security.
- Experience conducting software evaluations and technology assessments to support organizational security objectives.
- Exposure to DevSecOps practices, tools, and methodologies.
- Experience with cloud platforms, specifically AWS and Azure.
- Hands-on experience with threat modeling methodologies (STRIDE or similar frameworks) and a repeatable cyber evaluation process.
- Experience bridging cybersecurity programs across multiple operational environments (e.g., corporate IT and OT/facility systems).
- Proven ability to coordinate with cross-functional infrastructure teams and engage with external vendors.
- Strong written and verbal communication skills with the ability to prepare technical reports and recommendations for both technical and non-technical audiences.
Location
530 Gaither Road, Rockville, MD
Work Site Expectations
Hybrid & Remote Eligible, Travel % increased if remote; Up to 10% as needed for project assignment, 25% if remote.
Hours
Standard office hours are 8:00am-5:00pm ET, Monday-Friday.
Compensation
Salary range: $180,000 - $205,000. Salary will be offered within this range based on qualifications and market data. Compensation includes base salary only; benefits and incentives are separate.
Benefits
Robust benefits package including 401(k) plan with match, medical/dental/vision insurance, life and disability insurance, paid time off, and tuition reimbursement/professional development.
Equal Opportunity Employer
X Energy, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status, and will not be discriminated against on the basis of disability.
X Energy, LLC participates in E-Verify. For more information about E-Verify and the protection of your Right to Work, visit and
#J-18808-Ljbffr