> Markdown version of [/jobs/ext/3030589-cybersecurity-asset-engineer-clearance-required](https://www.wearedevelopers.com/jobs/ext/3030589-cybersecurity-asset-engineer-clearance-required). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Asset Engineer (Clearance Required) - **Company:** SciTec, Inc. - **Location:** Boulder, CO, United States - **Experience:** Experienced - **Salary:** $129,000.0 - $152,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, CompTIA Security+, Cyber Security, Information Systems, Data Centers, Linux, Infrastructure as a Service (IaaS), Networking Hardware, Network Security, OpenShift, Systems Architecture, Data Logging, Containerization, Kubernetes, Information Technology, Tenable Nessus, CIS Benchmarks, Scap Compliance Checker, Network Server, Devsecops, Vulnerability Analysis - **Published:** September 22, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9181947/cybersecurity-asset-engineer-clearance-required ## About the Role * Bachelor's degree in Cybersecurity, Computer Science, Engineering, or related field * Active DoD Secret clearance or higher * Security + Certification * 6+ years of professional experience in cybersecurity engineering or mission systems security * 3 plus years working information systems roles in the DOD space * Experience supporting RMF processes and ATO activities * Experience applying DISA STIGs and security baselines * Experience conducting vulnerability scanning and remediation * Strong understanding of Linux systems security * Familiarity with network security concepts and segmentation * Experience working in secure or classified environments * Ability to obtain and maintain a DoD security clearance * Strong documentation and communication skills * Proven oral and written communication skills * Strong attention to detail Candidates who have any of the following skills will be preferred: * Experience supporting classified mission systems * Experience using: DISA SCAP Compliance Checker, STIG Viewer, ACAS or similar scanning tools * Familiarity with NIST 800-53 and related controls * Experience integrating security into DevSecOps pipelines * Experience securing container platforms (Kubernetes/OpenShift) * Security+ or other relevant cybersecurity certifications * Experience supporting data center or IaaS environments *Resumes, Cover Letters, and Applications which are generated by AI will not be considered for employment. ## Description SciTec, a wholly owned subsidiary of Firefly Aerospace, is a dynamic non-traditional defense contractor that delivers advanced technologies in support of U.S. National Security and Defense. For the past forty-five plus years, we have supported Department of Defense customers by developing innovative remote sensing algorithms, tools, and techniques to deliver world-class data exploitation capabilities supporting missile defense; intelligence, surveillance, & reconnaissance; space domain awareness; and aircraft survivability missions. Important Notice: SciTec exclusively works on U.S. government contracts that require U.S. citizenship for all employees. Applicants that do not meet this requirement will not be considered. SciTec is seeking a Cybersecurity Asset Engineer to ensure the security, compliance, and operational resilience of mission-critical systems and infrastructure assets. This role focuses on securing deployed environments, including servers, platforms, network devices, and supporting systems, across their lifecycle. The Cybersecurity Asset Engineer partners with infrastructure, platform, software, and program teams to integrate cybersecurity into system architecture, deployment, sustainment, and accreditation activities. This is not a pure policy or audit role. The ideal candidate is technically hands-on and capable of working directly with engineering teams to harden systems, remediate findings, and maintain mission cyber readiness. Responsibilities * Harden and secure mission infrastructure assets, including servers, network devices, storage systems, and supporting platforms * Apply and maintain DISA STIG configurations and security baselines across deployed environments * Support RMF activities, including development and maintenance of ATO artifacts and cybersecurity documentation * Conduct vulnerability scanning, assess impact of findings, and coordinate remediation efforts * Manage patching strategies and validate corrective actions for identified vulnerabilities * Provide cybersecurity input to system architecture, enclave segmentation, and infrastructure design decisions * Ensure logging, monitoring, and access controls meet security and compliance requirements * Support audit readiness, security assessments, and continuous monitoring activities * Collaborate with infrastructure, platform, software, and program teams to integrate security into system deployments * Identify and mitigate operational cybersecurity risks across the asset lifecycle * Support incident response preparation and forensic readiness efforts * Communicate cybersecurity posture, risks, and remediation plans to technical and program leadership * Other duties as assigned ## Related Videos - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [This Is Not Your Father's .NET](https://www.wearedevelopers.com/videos/967-this-is-not-your-father-s-net) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)