Cybersecurity Engineer

APPLIED SCIENCE INNOVATIONS, INC.
United States
5 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$125,000.0 - $140,000.0
Working hours
Regular working hours
Job source

Tech stack

Automation of Tests Cloud Computing Security Cyber Security Information Systems Databases System Configuration Interoperability Network Security Performance Tuning Zero Trust Network Access Requirements Traceability Security Software
+9 more
Security Information and Event Management Systems Integration Software Vulnerability Management Policy as Code Cloud Platform System Delivery Pipeline Information Technology Devsecops Security Orchestration, Automation & Response

Job description

Applied Science & Innovation, Inc. (ASI) supports the Department of Veterans Affairs (VA) with high-quality, effective, and efficient Information Technology (IT) services that advance VA’s mission. VA depends on secure Information Management and Information Technology (IM/IT) systems to deliver services to Veterans and protect mission information and technology assets.

The Cybersecurity Engineer designs, integrates, configures, tests, and sustains enterprise security technologies that protect VA systems and data. The role supports security architecture, secure baseline configuration, tool rationalization, technical risk analysis, automated control validation, and continuous improvement. The engineer works across on-premises, cloud, hybrid, medical device, Internet of Things, and operational technology environments as assigned., * Engineer, integrate, configure, test, optimize, and maintain enterprise cybersecurity tools in accordance with VA architecture, security policy, and operational requirements.

  • Analyze technical and mission requirements and recommend security capabilities, configurations, integration patterns, and implementation approaches.
  • Develop and maintain secure configuration baselines for operating systems, databases, cloud-native platforms, applications, medical devices, Internet of Things, and other assigned technologies.
  • Assess compliance with approved baselines, identify deviations, document technical risk, and recommend actionable remediation.
  • Integrate security gates, automated tests, hardened configuration, and deployment controls into approved development and delivery pipelines.
  • Conduct engineering design security evaluations, threat analyses, specialized security posture reviews, and security control effectiveness assessments.
  • Validate deployed controls through technical testing, automated control simulations, breach and attack simulation, purple-team exercises, or other approved methods.
  • Analyze cybersecurity tool coverage, configuration, interoperability, overlap, lifecycle status, operational value, and capability gaps to support keep, merge, upgrade, replace, or retire decisions.
  • Support tool onboarding, upgrades, configuration changes, integration troubleshooting, performance tuning, and lifecycle maintenance.
  • Develop requirements traceability from applicable security controls and architecture requirements through implementation, test evidence, and authorization activities.
  • Produce engineering plans, technical findings, configuration and assessment reports, remediation recommendations, implementation evidence, and operational runbooks.
  • Coordinate with architects, system owners, developers, infrastructure teams, security operations, risk personnel, and Government stakeholders.
  • Perform other responsibilities as assigned.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Information Assurance, Engineering, or a related field. Additional relevant experience may be substituted for a degree consistent with contract requirements.
  • Certification meeting Information Assurance Technical Level III, Information Assurance Management Level III, or Information Assurance System Architects and Engineers Level III requirements, as applicable to the assigned duties.
  • Minimum of 7 years of cybersecurity engineering or information security experience, including at least 5 years supporting large enterprise or Government environments comparable in size and complexity to VA. An advanced degree in a related field may substitute for up to 2 years of required experience.
  • Demonstrated experience engineering, integrating, configuring, testing, and sustaining enterprise cybersecurity technologies.
  • Experience with secure configuration baselines, security architecture, system hardening, vulnerability management, technical risk analysis, and control validation.
  • Working knowledge of National Institute of Standards and Technology security guidance, the Risk Management Framework, Federal Information Security Modernization Act requirements, Zero Trust principles, and applicable federal cybersecurity mandates.
  • Experience documenting technical designs, test cases, assessment results, remediation actions, requirements traceability, and operational procedures.
  • Ability to analyze complex systems, isolate technical causes, communicate risk clearly, and coordinate remediation across multiple engineering teams.
  • Must be authorized to work for any employer in the United States.
  • Must be able to obtain and maintain the required security clearance or suitability determination.

Preferred Qualifications

  • Experience with DevSecOps pipelines, infrastructure or policy as code, SOAR, security information and event management, endpoint security, network security, cloud security, or automated security control testing.
  • Experience supporting medical devices, Internet of Things, operational technology, post-quantum cryptography planning, or cryptographic asset inventories.
  • Previous VA experience.
  • Current Public Trust or ability to obtain a Public Trust determination quickly., * Do you currently have a minimum of 7 years experience with at least 4 years in automation?, * Bachelor’s (Preferred)

Benefits & conditions

  • Medical insurance
  • Vision insurance
  • Dental insurance
  • 401(k)
  • Paid time off

Pay: $125,000.00 - $140,000.00 per year, * 401(k)

  • Dental insurance
  • Health insurance
  • Life insurance
  • Paid time off
  • Vision insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

Videos

See all

Related articles

See all