Cyber Security Engineer 4

RPMGlobal

Bethesda (MD)

Hybrid

USD 140,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

RPMGlobal is seeking a highly skilled cybersecurity professional to support multiple task orders under the DOMEX Technology Platform for NMEC. The role focuses on secure DoD system design, development, and lifecycle security integration across on-prem infrastructure.

Responsibilities include RMF integration into the SDLC, vulnerability management, and compliance with DoD guidance (NIST SP 800-53, 8510.01). Strong scripting and cross-domain understanding are preferred.

Qualifications

  • Bachelor's degree with 10+ years of experience in DoD cybersecurity or related field.
  • Masters or PhD with 10+ years of experience accepted as equivalency.

Responsibilities

  • Support secure architecture, design, and implementation of DoD systems.
  • Lead RMF activities integration into SDLC with controls implementation and validation.
  • Develop and maintain SSPs, SARs, risk assessments, and POA&Ms.
  • Apply STIGs and validate compliance using SCAP, STIG Viewer, and ACAS.
  • Maintain scanning infrastructure and analyze vulnerabilities for mitigation.
  • Support system authorization, incident response, and forensics.

Skills

Security architecture
RMF integration
SDLC
Vulnerability assessment

Education

Bachelor's degree
Master's degree
PhD

Tools

OWASP
Fortify
SonarQube
Tenable
XACTA
eMASS

Job description

Position Summary

Support multiple task orders under the DOMEX Technology Platform contract supporting NMEC by designing, developing, and implementing secure systems in on-premises infrastructure and integrating security across the system lifecycle.

Essential Duties and Responsibilities
  • Support the secure architecture, design, and implementation of DoD systems in accordance with DoDI 8510.01, NIST SP 800-53, and other DoD security guidance.
  • Lead integration of RMF activities into the SDLC, including selection, implementation, and validation of security controls.
  • Develop and maintain SSPs, SARs, risk assessments, and POA&Ms.
  • Apply STIGs and validate compliance using SCAP, STIG Viewer, and ACAS.
  • Maintain scanning infrastructure and analyze vulnerabilities for mitigation or risk acceptance.
  • Support system authorization, incident response, forensics analysis, and security automation efforts.
Required Qualifications
  • Active TS/SCI with ability to obtain a CI Polygraph.
  • Bachelor's degree with a minimum of ten years of experience in the category field.
  • At least one DoD 8570.01-M IASAE Level II certification: CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, or CASP+ CE.
  • Developer experience preferred in at least one scripting or programming language.
  • Experience reviewing cybersecurity vulnerabilities for risk and relevance and building mitigation/remediation plans across systems, network, application, and database vulnerabilities.
  • Ability to architect, design, troubleshoot, maintain, and deploy vulnerability scanning solutions such as OWASP, Fortify, SonarQube, and Tenable.
  • Experience with XACTA, eMASS, or similar tools.
  • Strong understanding of Microsoft Windows and Linux/UNIX operating systems.
  • Experience with middleware/web technologies, databases, TCP/IP networking, and CI/CD platforms.
  • Familiarity with NIST 800-171, 800-172, NIST SSDF, CMMC, and CNSSI 1253.
  • Experience supporting DoD/IC systems through the RMF+ process.
Preferred Qualifications
  • Software development experience with Python, Java, or React.
  • Experience successfully achieving ATO under RMF+.
  • Experience with big data applications.
  • Experience with GitLab, Jira, and Confluence.
  • Experience in Agile environments.
  • Experience with OIDC or OAuth2.
  • Experience with Kubernetes, Rancher, Strimzi, Cloudera, Active Directory, and scripting languages such as Bash, Python, or PowerShell.
Required Education and Experience Equivalency
  • Bachelors' Degree with 10 years of experience.
  • Masters' Degree with 10 years of experience.
  • PhD with 10 years of experience.
RequiredCertifications
  • One DoD 8570.01-M IASAE Level II certification: CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, or CASP+ CE.
Required Security Clearance
  • Active TS/SCI with ability to obtain a CI Polygraph.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer 3
Cyber Security Engineer 3

RPMGlobal • Bethesda (MD)

On-site
USD 120,000 - 160,000
Cyber Security Engineer 2
Cyber Security Engineer 2

RPMGlobal • Bethesda (MD)

On-site
USD 120,000 - 160,000
Cloud Security Engineer 3
Cloud Security Engineer 3

RPMGlobal • Bethesda (MD), Northern (KY)

Hybrid
USD 140,000 - 190,000
Cloud Security Engineer 2
Cloud Security Engineer 2

RPMGlobal • Bethesda (MD), Northern (KY)

Hybrid
USD 120,000 - 180,000
Senior Cloud Cybersecurity Engineer
Senior Cloud Cybersecurity Engineer

RPMGlobal • Bethesda (MD)

On-site
USD 140,000 - 210,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

P3S CORPORATION • Dayton (OH)

On-site
USD 95,000 - 120,000
Cyber Security Engineer
Cyber Security Engineer

The Mission Essential Group, LLC • Fairfax (VA)

On-site
USD 135,000 - 155,000
Cyber Security Engineer
Cyber Security Engineer

Triglocon • Arlington (VA)

On-site
USD 110,000 - 150,000
Medical, Dental & Vision Coverage
Paid Time Off
Paid Holidays
+3
Cyber Security Engineer - TS/SCI
Cyber Security Engineer - TS/SCI

Xcelerate Solutions • Bethesda (MD)

Hybrid
USD 120,000 - 160,000
Cyber Security Specialist
Cyber Security Specialist

New Directions Technologies Inc. • Port Hueneme (CA)

On-site
USD 95,000 - 150,000