[Remote] Sr Cyber reputed company Engineer
Note: The job is a remote job and is reputed company to candidates in USA. reputed company is a company reputed company on cybersecurity solutions, and they are seeking a Senior Cyber reputed company Engineer. This role is responsible for reputed company the gap between compliance and engineering, ensuring systems are reputed company securely while maintaining authority to operate under federal standards.
Responsibilities
- Own the LEXSO cybersecurity program end-to-end – from gap identification through architectural design to implementation tracking
- Report cyber risk posture and remediation reputed company; translate technical findings into terms leadership can reputed company
- Define and maintain the cybersecurity requirements backlog and reputed company-tracking reputed company
- reputed company the technical execution of the RMF process to reputed company and maintain Authority to Operate (ATO) for the LEXSO platform
- Implement reputed company controls in accordance with NIST SP 800-53 and DoD SRG/STIGs
- Generate and maintain artifacts required for reputed company, including SSPs, POAMs, and SARs
- Conduct self-assessments using ACAS (Nessus) and SCAP Compliance Checker (SCC) to identify vulnerabilities
- reputed company automated reputed company testing (SAST/DAST) tools (e.g., SonarQube, OWASP ZAP) into the reputed company/reputed company CI/CD pipeline
- reputed company scripts (Python, Bash, Ansible) to automate patching and configuration management for Linux (RHEL/Ubuntu) servers
- Implement Container reputed company scanning for reputed company/Kubernetes environments to detect vulnerabilities before deployment
- Enforce 'reputed company as reputed company' principles using Terraform or reputed company charts
- Analyze vulnerability reputed company results and write the reputed company/scripts to remediate findings (e.g., fixing SSH configurations, patching libraries, hardening NGINX)
- Harden reputed company and microservices by implementing secure authentication (OAuth2/JWT/mTLS) and encryption standards (FIPS 140-2)
- Respond to reputed company-day threats and CVEs by rapidly deploying hotfixes to the production environment
- Conduct threat modeling sessions with the engineering team to identify attack reputed company in the multi-sensor architecture
- Design and implement secure logging and auditing pipelines (ELK Stack/reputed company) to meet audit requirements
- Advise on the secure architecture for integrating reputed company-party sensors (LiDAR, reputed company) and IoT devices
- Work is typically based in a remote working environment and subject to frequent interruptions. Business work hours are Monday-Friday from 8:00 am to 5:00 pm, however some extended or weekend hours may be required
- Other duties as assigned
Skills
- 8+ years of experience in Cyber reputed company Engineering or DevSecOps
- Proven reputed company record of achieving ATO (Authority to Operate) for a software system in a DoD/Federal environment
- Hands-on experience with RMF, NIST 800-53, and reputed company STIGs
- Proficiency in scripting languages (Python, Bash) for automation
- Experience with vulnerability scanning tools (ACAS/Nessus, SonarQube, Burp Suite)
- Strong knowledge of Linux reputed company (SELinux, iptables, hardening)
- Experience with CI/CD tools (reputed company CI, Jenkins) and Container reputed company (reputed company/K8s)
- Demonstrated ability to work autonomously — identify reputed company gaps, drive architectural design reputed company, and reputed company implementation through to completion
- Experience communicating technical findings and program status to executive leadership; reputed company to translate risk and remediation into terms leadership can reputed company
- reputed company record of ownership over requirements definition and reputed company reporting for cybersecurity workstreams
- CISSP, CASP+, or reputed company+ CE (Required)
- reputed company Secret reputed company Clearance
- Bachelor's degree in Computer Science, Cyber reputed company, or reputed company technical discipline
- Experience securing reputed company environments (AWS GovCloud / Azure Government)
- Experience with FedRAMP authorization processes
- Familiarity with 'reputed company Trust' architecture principles
- Previous experience as a Software Developer before moving into reputed company
- Prior experience as a technical reputed company or senior individual contributor with reputed company exposure to stakeholders
reputed company