Technical Consultant- Cyber Security Engineering

Environmental Systems Research Institute, Inc.
Washington, DC, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$84,240.0 - $142,480.0
Working hours
Regular working hours
Job source

Tech stack

Xacta Java (Programming Language) Microsoft Windows Agile Methodology Confluence JIRA Big Data CentOS Configuration Management Cyber Security Databases Linux
+14 more
Networking Hardware Python (Programming Language) Red Hat Enterprise Linux Security Information and Event Management Software Vulnerability Management Web Applications Esri GIS (Software) Scripting SARS Software Products DevOps Tools - Open-source ReactJS Information Technology Devsecops Vulnerability Analysis

Job description

This position plays a hands-on role securing systems that support critical Defense and Intelligence missions. This position is focused on applying risk management frameworks, engineering security controls, and maintaining system authorizations for cloud and on-prem environments.

You’ll work closely with system engineers, administrators, and program teams to ensure systems are built, assessed, and operated in compliance with DoD and NIST requirements. From managing RMF and ATO packages to driving vulnerability remediation and system hardening, this role is central to maintaining secure, mission-ready systems throughout their lifecycle.

Esri has a Relocation Assistance Program and can provide support with relocating to the Vienna, VA area for this position.

Responsibilities

  • Apply RMF processes to support system Assessment & Authorization (A&A), including control selection, implementation, assessment, and continuous monitoring
  • Develop, review, and maintain security documentation such as SSPs, POA&Ms, SARs, and ATO artifacts in tools such as XACTA or eMASS
  • Conduct vulnerability assessments and compliance scans (such as ACAS) and track remediation of findings and IAVM requirements
  • Implement and validate security controls aligned with NIST 800-53, CNSSI 1253, and related DoD guidance
  • Support system hardening, patching, and configuration management in compliance with STIGs for Linux, Windows, and network devices
  • Monitor systems for security events and supporting incident response and risk mitigation activities
  • Assess security impacts of system changes and supporting configuration control boards (CCBs)
  • Collaborate with system engineers, administrators, and DevSecOps teams to integrate security throughout the system lifecycle
  • Provide cybersecurity risk input to program leadership, Authorizing Officials (AOs), and stakeholders

Requirements

Do you have experience in Vuls?, Do you have a Bachelor’s degree?, * 5+ years of professional experience in a similar position, supporting similar responsibilities

  • Professional experience with RMF, A&A, POA&M, and ATO documentation (XACTA/eMASS)
  • Hands-on experience with vulnerability scanning and compliance tracking (ACAS, IAVM)
  • Experience securing Linux and Windows systems, STIGs, patching, and system hardening
  • Knowledge of NIST 800-series publications and incident response processes
  • DoD 8570 IAT Level II or higher certification (such as Security +, CySA +, CISSP)
  • Strong analytical, communication, and collaborative skills
  • US citizenship with Active or Current (within 2 years of active) Top Secret Security Clearance with SCI eligibility
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology or STEM related field

Recommended Qualifications

  • Scripting or development experience (Python, Java, React)
  • DevSecOps tools and pipeline experience
  • Experience with Linux (Red Hat/CentOS), databases, web apps, or big data platforms
  • Familiarity with Agile environments and tools (Jira, Confluence)
  • Experience with NIST SP 800-171 and System Security Engineering (SSE)
  • Master’s degree in Computer Science, Cybersecurity, Information Technology or STEM related field

About the company

At Esri, diversity is more than just a word on a map. When employees of different experiences, perspectives, backgrounds, and cultures come together, we are more innovative and ultimately a better place to work. We believe in having a diverse workforce that is unified under our mission of creating positive global change. We understand that diversity, equity, and inclusion is not a destination but an ongoing process. We are committed to the continuation of learning, growing, and changing our workplace so every employee can contribute to their life’s best work. Our commitment to these principles extends to the global communities we serve by creating positive change with GIS technology. For more information on Esri’s Racial Equity and Social Justice initiatives, please visit our website here.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

5:47 min

Integrating user stories and test automation via Jira tools

Christoph Ruggenthaler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all