> Markdown version of [/jobs/ext/1410589-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/1410589-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - **Company:** Booz Allen Hamilton Inc. - **Location:** Colorado Springs, CO, United States - **Experience:** Experienced - **Salary:** $86,800.0 - $198,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Computing Security, Cyber Security, Linux, Python (Programming Language), Log Analysis, Windows PowerShell, Security Content Automation Protocol, Security Software, Security Information and Event Management, Cloud Platform System, Software Security, HybridCloud, Cyber Warfare, Plan of Action and Milestones, Vulnerability Analysis - **Published:** July 23, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9049115/cybersecurity-engineer ## About the Role * 3+ years of experience in cybersecurity engineering, defensive cyber operations, or system security * Experience implementing and maintaining security controls for on-premises and cloud environments and conducting vulnerability assessments, STIG compliance, system hardening, and continuous monitoring * Experience supporting RMF lifecycle activities, including IATT, ATO sustainment, and POA&M development * Knowledge of cloud security concepts, architectures, and best practices across AWS, Azure, or DoD cloud platforms * Knowledge of Windows or Linux system hardening and Vulnerability scanners, SIEM platforms, endpoint protection, and log analysis tools * Ability to analyze logs, triage cyber events, and support defensive cyber operations * Ability to operate with minimal direction and mentor junior team members * Top Secret clearance * Bachelor's degree * Security+ Certification * Experience working with eMASS, Xacta, STIG Viewer, SCAP, or ATO packages * Experience supporting RMF assessments for cloud environments * Experience automating security tasks using Python, PowerShell, or Bash * Knowledge of boundary defense, enclave security, hybrid cloud architecture, and defense network environments * Knowledge of application security and secure-by-design development practices * Ability to guide development teams in secure-by-design practices * Ability to automate security workflows across on-premises and cloud environments * CySA+, CASP+, CISSP, GSEC, CCSP, AWS Security Specialty, or Azure Security Engineer Associate Certification ## Description As a cyber mission specialist, you apply technical expertise, mission-focused security engineering, and innovative thinking to strengthen secure systems supporting defense operations. You enhance protections for complex environments across on-premises and cloud platforms, apply secure-by-design practices, evaluate risks, and support continuous cybersecurity readiness. In this role, you understand cyberspace capabilities, identify weaknesses, and assess mitigations for enterprise and cloud technologies. You leverage cybersecurity tools and monitoring platforms to evaluate findings, aggregate risk insights, and inform leadership on system posture and defensive priorities. You use research, engineering, and analytic skills to assess evolving techniques affecting mission-critical systems. You support accreditation activities, strengthen command-and-control capabilities, and collaborate with operators, system owners, and development teams to secure essential systems. If you thrive in high-impact environments and enjoy working closely with mission stakeholders to secure systems that matter, this opportunity lets you make a tangible difference. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)