> Markdown version of [/jobs/ext/2924051-product-security-engineering-2](https://www.wearedevelopers.com/jobs/ext/2924051-product-security-engineering-2). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Product Security Engineering 2 - **Company:** Indotronix International Corporation - **Location:** Colorado Springs, CO, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Cyber Security, System Configuration, JSON, Scrum Methodology, Software Vulnerability Management, Software Security, SC Clearance, Patch Management, Vulnerability Analysis - **Published:** September 15, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9161874/product-security-engineering-2 ## About the Role vulnerability management. - Manage Information Assurance Vulnerability Management (IAVM) tickets, Cyber Tasking Orders (CTO), and Common Vulnerabilities and Exposures (CVE) remediation. - Integrate vendor-issued patches and verify DISA STIG configurations. - Review and execute test plans, provide actionable feedback, and ensure compliance with cyber requirements. - Configure and operate cyber audit tools, conduct vulnerability assessments, and perform system configuration activities. - Participate in Agile/Scrum development lifecycle activities, including requirements gathering, sprint planning, daily stand-ups, and reviews. - Communicate technical issues and reports clearly to government stakeholders, program managers, and cross-functional teams. [Required Skills and Experience] - Active Secret DoD security clearance. - DoD 8140 IAT-Level II certification (e.g., Security+ or higher). - 3+ years' relevant cybersecurity experience with an Associate Degree or higher. - Strong background in patch management, GPO management, vulnerability remediation, and defense-in-depth strategies. - Proficiency with Information Assurance (IA) technologies, NIST standards, DoDI 8500.2, and RMF security controls. - Hands-on experience in Agile/Scrum environments, including requirement identification and test plan execution. - Technical writing and verbal communication skills for presenting to leadership and stakeholders. - Leadership and interpersonal skills, with experience supporting complex organizational relationships. [Preferred Skills] - Advanced application of cybersecurity principles to solve complex technical problems. - Experience representing organizations in technical solution discussions with internal and external customers. - Ability to work independently, managing deliverables with minimal supervision. [Benefits] - Opportunity to work on high-impact defense programs in a secure, collaborative environment. - Professional development through hands-on experience with advanced cybersecurity technologies. - Competitive compensation and comprehensive benefits package. - Career growth potential within a leading defense technology organization. [How to Apply] Ready to advance your cybersecurity career? Submit your application and resume through our Indotronix careers portal. Candidates must have an active Secret clearance and required certifications at start. JSON ## Description Product Security Engineering 2 - Onsite, Colorado Springs, CO [About the Role] Join Indotronix as a Product Security Engineering 2, contributing to cutting-edge cybersecurity on the C2BMC platform in Colorado Springs. Collaborate with top-tier cyber engineering teams and play a critical role in ensuring the security and resilience of mission-critical defense systems. This first-shift, onsite position offers direct impact, continuous learning, and the chance to work with advanced security frameworks in a supportive, high-performance environment. [Responsibilities] - Embed and validate cybersecurity solutions on the C2BMC platform, ensuring robust security controls. - Serve as the primary liaison with the Cyber Test Facility, coordinating test events and validating test plans. - Brief program leadership on test plan analysis, and support teams in identifying specific cyber requirements for execution. - Facilitate timely delivery of cyber capabilities and solutions, with a focus on ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Introducing JSON Structure](https://www.wearedevelopers.com/videos/100219-introducing-json-structure) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)