Cybersecurity Engineer

DecisionPoint Corporation
United States
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Cyber Security Zero Trust Network Access Infrastructure as Code (IaC) SC Clearance Devsecops

Job description

  • Implement and manage security for the ARTRANS DevSecOps pipelines and AWS GovCloud accounts.
  • Remediate security finding within AWS GovCloud.
  • Implement security controls for the DevSecOps pipeline.
  • Develop solutions for RMF Risk Assessments (RA’s) and Plans of Action and Milestones (POAMS)
  • Embed security controls in Infrastructure as Code (IaC) and Configuration as Code (CaC)
  • Evaluate, document, and report identified risks.
  • Recommend a course of action for risk mitigation.
  • Assess and recommend tools and platform features that support compliance with Zero Trust and RMF security requirements.

Requirements

  • Active Secret clearance required.
  • Associate degree with 6 years of related experience, or 10 years of continuous related work experience.
  • Strong understanding of AWS GovCloud and experience applying NIST SP 800-53 Rev. 5 and RMF requirements.
  • DoD 8140 Information Assurance Technician (IAT) Level II certification, such as Security+ CE.

About the company

DecisionPoint is looking for a Cybersecurity Engineer to join the Cloud Services (CS) team. The CS team maintains the ARTRANS AWS cloud environments and DevSecOps platform.

In this role, you will implement and manage security controls in accordance with Risk Management Framework (RMF) and NIST SP 800-53 standards. Integrate RMF requirements and associated security controls into the DevSecOps pipeline to support continuous security and compliance for all Programs of Record (PORs) that use the pipeline.

This position is 100% remote work and requires an active Secret clearance.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all