Senior Cybersecurity Engineer

Pemcco, Inc.
Washington, DC, United States
25 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$133,037.0 - $219,523.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems Computer Engineering Desktop Computing Information Systems Security Architecture Professional Systems Development Life Cycle Security Software Security Information and Event Management Software Vulnerability Management SARS Software Products Information Technology

Job description

As a Senior Cybersecurity Engineer, you will serve as a senior cybersecurity professional responsible for protecting mission-critical systems and supporting organizational security objectives. You will lead cybersecurity engineering initiatives, assess security risks, develop mitigation strategies, support compliance efforts, and work closely with stakeholders to ensure cybersecurity requirements are integrated throughout the system lifecycle.

This position offers the opportunity to work on complex security challenges while helping organizations maintain resilient, compliant, and secure environments.

What You’ll Do

  • Design, implement, and maintain cybersecurity solutions for information systems, networks, and applications
  • Lead cybersecurity engineering efforts supporting system development, modernization, and sustainment activities
  • Conduct cybersecurity risk assessments, vulnerability analyses, and security control evaluations
  • Develop and implement mitigation strategies for identified vulnerabilities and security findings
  • Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities
  • Review system architectures, designs, and configurations to ensure compliance with cybersecurity requirements
  • Develop and maintain cybersecurity documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action & Milestones (POA&Ms)
  • Support continuous monitoring activities and evaluate the effectiveness of implemented security controls
  • Investigate cybersecurity incidents, analyze impacts, and support remediation efforts
  • Coordinate with engineers, system administrators, developers, and government stakeholders to integrate cybersecurity requirements throughout the system lifecycle
  • Evaluate emerging threats, technologies, and security best practices and recommend improvements
  • Prepare technical reports, briefings, and recommendations for leadership and customer representatives
  • Provide technical guidance and mentorship to junior cybersecurity personnel, * Advanced cybersecurity training or specialized coursework in security engineering, risk management, or cybersecurity operations
  • Experience supporting Department of Defense or Federal Government programs
  • Experience leading RMF and A&A efforts
  • Experience supporting security control assessments and continuous monitoring activities
  • Experience in cybersecurity architecture, vulnerability management, or incident response
  • Experience mentoring cybersecurity professionals and supporting team development

Why Join PEMCCO?

  • Support critical government and customer missions through advanced cybersecurity efforts
  • Lead initiatives that help protect systems, networks, applications, and sensitive information
  • Work alongside experienced cybersecurity, engineering, and IT professionals
  • Gain exposure to complex security environments and emerging cybersecurity technologies
  • Contribute to security modernization, risk management, and compliance programs
  • Expand your expertise across multiple cybersecurity disciplines
  • Build a rewarding career in a collaborative and mission-focused environment

Work Environment

  • Professional office and technical work environments
  • Work may be performed at company facilities, customer locations, or designated project sites as needed
  • Regular use of computers, cybersecurity tools, and communication systems
  • Frequent collaboration with cybersecurity professionals, engineers, administrators, customers, and stakeholders

Requirements

PEMCCO is seeking a Senior Cybersecurity Engineer to design, implement, assess, and maintain cybersecurity capabilities that protect government information systems, networks, applications, and data. This role is ideal for a seasoned cybersecurity professional who enjoys security engineering, risk management, compliance, vulnerability management, and strengthening organizational security posture.

This opportunity is a strong fit for candidates with experience in cybersecurity engineering, information assurance, information security, system security, risk management, RMF, A&A, security architecture, vulnerability management, or incident response., * Master’s degree in Cybersecurity, Computer Engineering, Electrical Engineering, Computer Science, Mathematics, or a related field

  • Ten (10) years of experience in cybersecurity, information assurance, information security, cybersecurity engineering, system security, or a related field
  • Advanced knowledge of cybersecurity principles, technologies, and best practices
  • Knowledge of Risk Management Framework (RMF), NIST standards, and DoD cybersecurity requirements
  • Knowledge of security architecture, security engineering, and system security concepts
  • Ability to assess cybersecurity risks and develop effective mitigation strategies
  • Ability to interpret and apply cybersecurity policies, regulations, and standards
  • Strong analytical, organizational, and problem-solving skills
  • Experience investigating security events and identifying root causes
  • Strong written and verbal communication skills
  • Ability to communicate effectively with both technical and non-technical audiences
  • Ability to lead technical efforts and mentor team members
  • Ability to prepare and review technical documentation, reports, and security artifacts
  • Ability to obtain and maintain a government security clearance if required
  • Must meet applicable DoD 8140 workforce qualification requirements if required by contract, If you’re an experienced cybersecurity professional looking to lead security initiatives, solve complex security challenges, and help protect mission-critical systems, we encourage you to apply.

Benefits & conditions

Pulled from the full job description

  • Health insurance
  • Paid time off
  • Vision insurance
  • Dental insurance
  • Employee assistance program
  • Paid holidays

Full job description

Pay: $63.96-$105.54 hourly, depending on experience

Benefits: Medical, Dental, Vision, Paid Time Off, Paid Holidays, Employee Assistance Program, and other company-sponsored benefits Security Clearance: Ability to obtain and maintain a government security clearance if required

Are you a cybersecurity professional who enjoys protecting critical systems, leading security initiatives, and solving complex security challenges in mission-driven environments?, * Medical Insurance

  • Dental Insurance
  • Vision Insurance
  • Paid Time Off
  • Paid Holidays
  • Employee Assistance Program
  • Additional company-sponsored benefits

About the company

PEMCCO supports complex technical and operational programs by providing skilled professionals who help customers achieve mission success. We offer opportunities to work on impactful projects, collaborate with experienced teams, and contribute to innovative solutions that support critical government operations.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · World Congress 2025

6:31 min

MS-DOS era and the rise of desktop computing standardization

Joel Spolsky · World Congress 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:55 min

Establishing blameless dialogue surrounding critical software security vulnerabilities

Chris Heilmann +2 · LIVE

Videos

See all

Related articles

See all