> Markdown version of [/jobs/ext/191572-cyber-engineer](https://www.wearedevelopers.com/jobs/ext/191572-cyber-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Engineer - **Company:** Northramp LLC - **Location:** Washington, DC, United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Microsoft Azure, Bash Shell, Software as a Service, Cloud Computing, Cloud Computing Security, CompTIA Security+, Cyber Security, Linux, DevOps, Infrastructure as a Service (IaaS), Identity and Access Management, Python (Programming Language), Key Management, Platform as a Service (PAAS), Windows PowerShell, Cloud Services, Security Information and Event Management, Software Vulnerability Management, Scripting, Google Cloud, Cloud Platform System, Multi-Cloud, GWAPT, Containerization, Information Technology, Prisma Cloud Platform, Splunk, Serverless Computing, Qualys, Security Orchestration, Automation & Response, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** May 23, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=9d9d765dddbe1d27 ## About the Role Do you have experience in Windows?, Do you have a Bachelor's degree?, You have done real security engineering in federal cloud environments, you know what NIST 800-53 controls look like in practice (not just on paper), and you can move between writing a STIG remediation script and supporting an ATO review without missing a beat. You treat security as an engineering problem and you are most comfortable when you're closest to the work., * 3 to 6 years of progressive, hands-on experience in cybersecurity engineering with a focus on cloud environments. * Bachelor's degree in Cybersecurity, Computer Science, Information Assurance, or a related field. Relevant experience may substitute. * Solid understanding of NIST 800-53, FedRAMP, FISMA, and STIG frameworks and their application in cloud environments. * Hands-on experience with vulnerability management tools (Tenable.io, Qualys, Prisma Cloud, or equivalent). * Practical experience with STIG implementation and hardening automation across Linux, Windows, and cloud-native services. * Working knowledge of SIEM platforms (Splunk preferred) - log onboarding, SPL queries, alert configuration. * Familiarity with cloud-native security services across AWS (Security Hub, GuardDuty, Config), Azure (Defender for Cloud), and/or GCP (Security Command Center). * Understanding of IAM, secrets management, and encryption key management in cloud environments. * Experience supporting ATO processes: control documentation, evidence collection, and POA&M management. * Scripting proficiency in Python, Bash, or PowerShell for security automation and remediation tasks. * U.S. Citizenship and the ability to obtain and maintain a DHS suitability / Public Trust clearance., * CompTIA Security+ (required at hire), CASP+, or CISSP. * Cloud security certifications: AWS Security Specialty, Microsoft SC-200/SC-300, CCSP, or equivalent. * Certified Ethical Hacker (CEH) or GIAC certifications (GCIH, GCED, or GWAPT). * DHS, or other federal cybersecurity program experience. * Active Public Trust or higher clearance. Clearance DHS suitability and a Public Trust background investigation are required for this role. Active Public Trust or higher clearance is preferred. Selected applicants will be subject to a security investigation and may need to meet eligibility requirements for access to controlled or classified information. ## Description Northramp is seeking a Cyber Engineer to join the team supporting the client's Cloud BPA Bridge program - a mission-critical effort to consolidate, modernize, and operate client's enterprise cloud services across IaaS, PaaS, and SaaS environments under FedRAMP High authorization. You will serve as a hands-on cybersecurity practitioner embedded within the client's cloud operations and delivery teams. The role spans vulnerability management, security engineering, continuous monitoring, and compliance support across multi-cloud environments operating under FedRAMP High, FISMA High, and DHS 4300A requirements. This role is part of Northramp's integrated delivery model, where engineers and advisors work as one team to bring sound judgment, disciplined execution, and deep federal experience to high-stakes modernization programs., * Perform continuous vulnerability scanning, analysis, and remediation tracking across cloud-hosted infrastructure and applications using tools such as Tenable.io, Prisma Cloud, or equivalent. * Apply and validate STIG configurations across operating systems, cloud services, and containerized workloads; develop and maintain hardening scripts and automation. * Support the Plan of Action and Milestones (POA&M) process - tracking open findings, validating remediations, and preparing reporting for program leadership and government stakeholders. * Implement and maintain security controls aligned to NIST 800-53 Rev 5, FedRAMP High baselines, and DHS 4300A; support ATO documentation and continuous authorization activities. * Integrate security tooling into CI/CD pipelines - SAST, DAST, container image scanning, SBOM generation, and secrets detection. * Configure and maintain SIEM integrations (Splunk or equivalent), including log source onboarding, alert tuning, and incident triage support. * Support Cloud Security Posture Management (CSPM) operations - misconfiguration detection, remediation, and drift prevention across AWS, Azure, and GCP. * Conduct threat modeling and security architecture reviews for new cloud services and application deployments. * Participate in incident response activities: containment, evidence collection, root cause analysis, and after-action reporting. * Collaborate with Cloud Systems Engineers, Network Engineers, and DevOps teams to embed security into infrastructure and delivery workflows. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)