> Markdown version of [/jobs/ext/3000238-senior-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/3000238-senior-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity Engineer - **Company:** Blue Origin - **Location:** Denver, CO, United States (Remote available) - **Experience:** Expert - **Salary:** $133,500.0 - $186,899.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Microsoft Azure, Bash Shell, Biometrics, Cloud Computing, Configuration Management, Cyber Security, Linux, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Network Security, Log Analysis, Network Segmentation, Public Key Infrastructure, Windows PowerShell, Ansible, SAP (Applications), Security Content Automation Protocol, Security Information and Event Management, Software Vulnerability Management, Data Logging, Scripting, Information Technology, Cybercrime, Patch Management, Puppet, Terraform, Plan of Action and Milestones, Vulnerability Analysis - **Published:** September 19, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9178949/senior-cybersecurity-engineer ## About the Role * Bachelor's degree in a technical discipline (Computer Science, Cybersecurity, Computer/Electrical Engineering, or similar), or equivalent experience * 6+ years of hands-on cybersecurity engineering experience * Direct experience implementing and sustaining security controls on classified systems in DoD or IC environments * Working experience with RMF control implementation, SSP and artifact development, POA&M remediation, and continuous monitoring * Hands-on depth in at least three of: Linux and Windows hardening (STIG/SCAP), network security and segmentation, IAM and PKI, government cloud (AWS GovCloud / Azure Government), SIEM and log analysis, vulnerability management tooling * Scripting proficiency (Python, PowerShell, Bash) for automation of security operations and compliance tasks * Active U.S. Government Top Secret clearance with SCI eligibility and eligibility for SAP access determination * DoD 8140 IAT/IAM Level II certification (Security+ CE or equivalent) at hire, * Prior ISSO or ISSE role on SAP/SAR programs * Working knowledge of JSIG, ICD 503/705, and NIST SP 800-53 / 800-171 * Experience standing up and accrediting new classified enclaves, labs, or facilities * Infrastructure-as-code and configuration management (Terraform, Ansible, Puppet) * Cross-domain solution implementation or accreditation support * Detection engineering, threat hunting, or incident response experience * Active TS/SCI with polygraph, SAP Eligible ## Description * Engineer and harden. Implement security architecture across classified enclaves, mission ground systems, and lab environments - network segmentation, identity and access management, endpoint hardening, logging and audit, and encryption at rest and in transit. * Drive accreditation. Author and maintain SSPs, security control implementation statements, risk assessments, and POA&Ms. Take systems through RMF to ATO and ATC, then keep them compliant through continuous monitoring. * Defend the environment. Perform vulnerability scanning and remediation, patch management, log review and audit reduction, and triage of security events alongside the enterprise SOC. * Respond to incidents. Participate in the on-call rotation. Investigate, contain, and document incidents, and drive corrective actions to closure with system owners. * Automate the toil. Build the scripting and tooling that make compliance evidence, STIG application, and reporting repeatable rather than manual. * Support the mission directly. Work shoulder-to-shoulder with program engineers and system administrators to deliver secure systems on mission schedule - finding the compliant path to yes . * Raise the bar. Mentor junior engineers and analysts, and contribute to team standards, baselines, and accreditation playbooks., Applicants for employment at Blue Origin must be a U.S. citizen or national, U.S. permanent resident (i.e. current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum. Background Check * Required for all positions: Blue's Standard Background Check * Required for Certain Job Profiles: Defense Biometric Identification System (DBIDS) background check if at any time the role requires one to be on a military installation * Required for Certain Job Profiles: Drivers who operate Commercial Motor Vehicles with a Gross Vehicle Weight (GVW), Gross Vehicle Weight Rating (GVWR) or combination of power unit and trailer that meets or exceeds 10,001 lbs. and/or transports placardable amounts of hazardous materials by ground in any vehicle on a public road while in commerce, may be subject to additional Federal Motor Carrier Safety Regulations including: Driver Qualification Files, Medical Certification (obtained before onboarding), Road Test, Hours of Service, Drug and Alcohol Testing, vehicle inspection requirements, CDL requirements (if applicable) and hazardous materials transportation/shipping training. * Required for certain Job Profiles: Ability to obtain and maintain Merchant Mariner Credential, which includes pre-employment and random drug testing as well as DOT physical ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Automate everything via NodeJS and Puppeteer](https://www.wearedevelopers.com/videos/322-automate-everything-via-nodejs-and-puppeteer) - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Eclipse Che for Infrastructure Automation](https://www.wearedevelopers.com/videos/1611-eclipse-che-for-infrastructure-automation) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)