Cyber Security Engineer

Innova Solutions
Aurora, CO, United States
12 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Systems Engineering CentOS Configuration Management Cyber Security System Configuration Linux Network Security Network Monitoring Software Engineering Software Vulnerability Management Wide Area Networks Information Technology
+2 more
Plan of Action and Milestones Vulnerability Analysis

Job description

We are seeking an experienced Cybersecurity Engineer to support the security, accreditation, risk management, and compliance efforts for mission-critical systems supporting Intelligence Community (IC) and DoD programs. The selected candidate will play a key role in securing complex embedded systems, enterprise environments, and networked solutions while ensuring compliance with government cybersecurity standards and requirements., * Develop and implement Security Authorization requirements and accreditation documentation.

  • Conduct vulnerability assessments and implement threat mitigation strategies for systems, applications, and embedded products.
  • Configure, harden, and maintain COTS/GOTS systems in accordance with DISA Security Technical Implementation Guides (STIGs).
  • Perform security risk analyses through review of CVEs, IAVAs, plugins, and security advisories.
  • Support Continuous Monitoring (ConMon) activities and network security monitoring initiatives.
  • Develop and implement remediation plans for identified vulnerabilities and security findings.
  • Participate in system and software development lifecycle activities, including architecture, requirements, design, integration, testing, and deployment.
  • Implement and maintain compliance with Risk Management Framework (RMF) and other Assessment & Authorization (A&A) processes.
  • Conduct software due diligence reviews of COTS, GOTS, and proprietary solutions.
  • Coordinate with ISSO/ISSM personnel to manage POA&M activities, vulnerability tracking, and closure documentation.
  • Support Configuration Control Board (CCB) activities and security reviews.
  • Onboard systems and assets into centrally managed enterprise security solutions.
  • Collaborate with internal and external customers during technical reviews and cybersecurity assessments.
  • Support security engineering efforts across multi-level security (MLS) environments.

Requirements

The ideal candidate will possess strong cybersecurity engineering expertise, experience with security assessments, vulnerability management, RMF compliance, system hardening, and security architecture. This position requires collaboration with engineers, program leadership, ISSOs, ISSMs, and government customers., * Bachelor’s degree in engineering, Information Technology, Information Systems Security, Cybersecurity, Computer Science, or a related STEM discipline.

  • An additional 10 years of directly related experience may be considered in lieu of a degree., * Minimum of 10 years of experience in Cybersecurity, Systems Engineering, Software Engineering, or a related technical field.
  • Minimum of 5 years of experience in a security position supporting the U.S. Government, Government Contractor, or Intelligence Community (IC).
  • Experience developing Security Authorization requirements and supporting accreditation efforts.
  • Experience performing vulnerability assessments and implementing threat mitigation measures.
  • Experience configuring, securing, and hardening systems using DISA STIGs.
  • Experience implementing security controls and compliance requirements within RMF and A&A frameworks.
  • Experience participating in technical reviews with government and commercial customers.
  • Experience managing POA&M activities, remediation plans, and vulnerability resolution efforts.
  • Experience with Continuous Monitoring and Network Monitoring solutions.
  • Experience supporting product development activities including architecture, requirements, design, integration, and testing.
  • Experience in Security Systems Engineering involving Linux and CentOS operating systems and application solutions operating in stand-alone and LAN/WAN environments., * DoD 8570.01 IAT Level II Certification or higher.

o Examples include:

  • Security+
  • CySA+
  • CASP+
  • CISSP
  • Equivalent DoD-approved certifications, * CISSP (ISC²) certification.
  • Experience with DISA Security Technical Implementation Guides (STIGs).
  • Experience securing embedded systems and mission-critical products.
  • Experience reviewing CVEs, IAVAs, and vulnerability intelligence sources.
  • Experience onboarding systems to enterprise security management platforms.
  • Experience supporting multi-level security (MLS) environments.
  • Strong knowledge of Linux, CentOS, and network security architectures.
  • Experience supporting Intelligence Community (IC) programs.
  • Self-motivated professional capable of working independently and managing multiple priorities.
  • Strong written and verbal communication skills., * Security Engineering and Architecture
  • Risk Assessment and Vulnerability Management
  • RMF and A&A Compliance
  • STIG Implementation and System Hardening
  • Embedded Systems Security
  • Linux/CentOS Administration
  • Network Security and Monitoring
  • Security Authorization & Accreditation
  • Threat Analysis and Mitigation
  • POA&M Management
  • Enterprise Security Solutions
  • Configuration Management and Change Control
  • Multi-Level Security (MLS) Solutions

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all