> Markdown version of [/jobs/ext/1229043-junior-offensive-cyber-engineer](https://www.wearedevelopers.com/jobs/ext/1229043-junior-offensive-cyber-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Junior Offensive Cyber Engineer - **Company:** Mantech International Corporation - **Location:** Stafford, VA, United States - **Experience:** Starter - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cloud Computing, Software Documentation, Cyber Security, Federal Information Processing Standards (FIPS), Red Team (Cyber Security), Microsoft SharePoint, Data Streaming, Information Technology - **Published:** July 10, 2026 - **Apply:** https://www.juju.com/job/00000000gf95wr ## About the Role + Bachelor's degree and at least 2 years of related cybersecurity experience (additional 2 years of experience can be substituted in lieu of degree): + Must be compliant with DoD 8140 at an intermediate or advanced level. Thus, will need a CASP+CE, Security+, CISSP, or CISM certification. + Experience and expert knowledge on NIST guidelines, FISMA, Cybersecurity principles and methodologies, Executive Orders (EO's), Office of Management and Budget (OMB) Memorandums, Federal, DoD and CISA Technical Reference Architectures, Maturity Models, Risk Management Framework (RMF), Cybersecurity Framework (CSF), technical knowledge of IT systems Preferred Qualifications: + USMC or Navy Validator certified + OSCP / OSEP / CPTS Certifications + Experience with cloud-based environments and technologies. + An analytical mind with excellent problem-solving ability. + Good communication skills and have good interpersonal, organizational, and analytical skills. **Clearance Requirements:** Must Have an Active Secret with the ability to obtain Top Secret/SCI ## Description **MANTECH** seeks a **Junior** **Offensive** **Cyber** **Engineer** to perform analysis of cybersecurity packages using the Risk Management Framework (RMF) process to achieve an Authority to Operate (ATO) while supporting the Marine Corps Systems Command (MCSC) in Quantico, VA. This position is offensive in nature and works closely with government officials and senior engineers. Responsibilities include, but are not limited to: + The position requires someone with Offensive Cyber experience (penetration testing/red team/exploitation) and willing to do hands-on work. + Ensure system documentation reflects current system security configurations to include hardware and software components, data flow, interconnections, and ports, protocols, and services, etc. + Perform Compliance reviews and analyses to verify compliance with federal requirements (e.g., EO, OMB Memos, A-130, NIST SP 800-37, 800-53, FIPS199, and FIPS-200, etc.) + Perform analyses of security implementations for assigned systems pertaining to people, processes, and technologies, identify gaps and recommend solutions. + Perform analyses of security implementations for assigned systems pertaining to people, processes, and technologies, identify gaps and recommend solutions + Assist in the preparation and review of documentation to include System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), Authorization Recommendations (ARs), Cybersecurity Strategies (CSSs), and other A&A artifacts. + Research major obstacles related to the ever-changing FISMA requirements, which customers will need to overcome and provide recommendations. + Provide updates and input to the GRC SharePoint sites to include document uploads, page updates, access requests, permissions, etc. on an ongoing basis. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Python-Based Data Streaming Pipelines Within Minutes](https://www.wearedevelopers.com/videos/1233-python-based-data-streaming-pipelines-within-minutes) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)