Cyber Security Engineer III

Blue Origin LLC

Denver, Northern (CO, KY)

Hybrid

USD 111,000 - 155,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical, dental, vision insurance
401(k) with company match
Stock options
Paid time off & holidays
Education support program

Job summary

Blue Origin LLC in Denver/Greater Seattle area seeks a Cyber Security Engineer III to design, harden, and defend classified enclaves and mission systems. You will drive RMF accreditation, author security artifacts, and implement controls across DoD/IC environments.

You will automate security tasks with scripting, mentor junior staff, and partner with program engineers to deliver secure systems on schedule. Travel up to 10–15% may be required.

Qualifications

  • 4+ years of hands-on cybersecurity engineering experience.
  • Direct experience implementing security controls on classified systems in DoD/IC environments.
  • RMF control implementation, SSP/artifact development, POA&M remediation, and continuous monitoring.

Responsibilities

  • Engineer and harden security across classified enclaves, mission ground systems, and labs (network segmentation, IAM, PKI, endpoint hardening).
  • Drive RMF accreditation: create SSPs, control mappings, risk assessments, and POA&Ms; prepare for ATO/ATC and maintain continuous authorization.
  • Defend the environment: vulnerability management, patching, log review, and incident triage with SOC.
  • Respond to incidents: participate in on-call rotations, contain and document incidents, and drive corrective actions.
  • Automate repeatable tasks: develop scripts and tooling for evidence collection, STIG application, and reporting.
  • Collaborate with program engineers and system admins to deliver secure systems on mission timelines and raise security standards.

Skills

Linux/Windows hardening
IAM & PKI
Government cloud (AWS GovCloud/Azure)
SIEM & log analysis
Vulnerability management tooling
Scripting (Python/PowerShell/Bash)

Education

Bachelor's degree in a technical discipline

Tools

Terraform
Ansible
Puppet
AWS GovCloud / Azure Government

Job description

## Cyber Security Engineer IIIApply: Denver, CO: Greater Seattle Area: Full time: Posted 3 Days Ago: R71998Application close date:Applications will be accepted on an ongoing basis until the requisition is closed.At Blue Origin, we envision millions of people living and working in space for the benefit of Earth. We’re working to develop reusable, safe, and low-cost space vehicles and systems within a culture of safety, collaboration, and inclusion. Join our team of problem solvers as we add new chapters to the history of spaceflight! The role is part of the In-Space Systems business unit, which is focused on addressing two of the most compelling challenges in spaceflight today: space infrastructure and increasing mobility on-orbit.Blue National Security builds and operates space systems for the Intelligence Community and Department of Defense. The classified enclaves, mission ground systems, and labs behind those missions have to be secure, accredited, and available every time.We're looking for a **Cybersecurity Engineer III** to do that work hands-on. You'll engineer and harden the systems our programs depend on, drive them through accreditation, and stand watch over them once they're operational.This is a builder's role on a team that is still writing its own playbooks. You'll have real ownership over specific systems and enclaves, and direct influence over the standards the rest of the team adopts.**What You'll Do*** **Engineer and harden.** Implement security architecture across classified enclaves, mission ground systems, and lab environments network segmentation, identity and access management, endpoint hardening, logging and audit, and encryption at rest and in transit.* **Drive accreditation.** Author and maintain SSPs, security control implementation statements, risk assessments, and POA&Ms. Take systems through RMF to ATO and ATC, then keep them compliant through continuous monitoring.* **Defend the environment.** Perform vulnerability scanning and remediation, patch management, log review and audit reduction, and triage of security events alongside the enterprise SOC.* **Respond to incidents.** Participate in the on-call rotation. Investigate, contain, and document incidents, and drive corrective actions to closure with system owners.* **Automate the toil.** Build the scripting and tooling that make compliance evidence, STIG application, and reporting repeatable rather than manual.* **Support the mission directly.** Work shoulder-to-shoulder with program engineers and system administrators to deliver secure systems on mission schedule — finding the compliant path to *yes*.* **Raise the bar.** Mentor junior engineers and analysts, and contribute to team standards, baselines, and accreditation playbooks.**Minimum Qualifications*** Bachelor's degree in a technical discipline (Computer Science, Cybersecurity, Computer/Electrical Engineering, or similar), or equivalent experience* 4+ years of hands-on cybersecurity engineering experience* Direct experience implementing and sustaining security controls on classified systems in DoD or IC environments* Working experience with RMF control implementation, SSP and artifact development, POA&M remediation, and continuous monitoring* Hands-on depth in at least three of: Linux and Windows hardening (STIG/SCAP), network security and segmentation, IAM and PKI, government cloud (AWS GovCloud / Azure Government), SIEM and log analysis, vulnerability management tooling* Scripting proficiency (Python, PowerShell, Bash) for automation of security operations and compliance tasks* Active U.S. Government Top Secret clearance with SCI eligibility and eligibility for SAP access determination* DoD 8140 IAT/IAM Level II certification (Security+ CE or equivalent) at hire**Preferred Qualifications*** Prior ISSO or ISSE role on SAP/SAR programs* Working knowledge of JSIG, ICD 503/705, and NIST SP 800-53 / 800-171* Experience standing up and accrediting new classified enclaves, labs, or facilities* Infrastructure-as-code and configuration management (Terraform, Ansible, Puppet)* Cross-domain solution implementation or accreditation support* Detection engineering, threat hunting, or incident response experience* Active TS/SCI with polygraph, SAP Eligible**Why This Role**Most senior cyber engineering jobs in this space are compliance jobs wearing an engineering title. This one isn't. The baselines, the automation, the detection coverage, and the accreditation playbooks are all still being built and the person in this seat gets to build them. You'll see your work go operational on real national security missions, fast.**Logistics*** Primarily onsite in classified spaces; limited telework by nature of the work* Travel up to 10–15% to other Blue Origin sites and customer facilities* Participation in an on-call rotation; occasional extended hours to support mission-critical events and incident response* Must be able to obtain and maintain access to classified facilities; periodic polygraph may be required### Base Pay Range for:CO applicants is $110,938.00 - $155,312.85WA applicants is $121,023.00 - $169,432.20**Other site ranges may differ** **Culture Statement**Don’t meet all desired requirements? Studies have shown that some people are less likely to apply to jobs unless they meet every single desired qualification. At Blue Origin, we are dedicated to building an authentic workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every desired qualification in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles. **Export Control Regulations**Applicants for employment at Blue Origin must be a U.S. citizen or national, U.S. permanent resident (i.e. current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum. **Background Check*** Required for all positions: Blue’s Standard Background Check* Required for Certain Job Profiles: Defense Biometric Identification System (DBIDS) background check if at any time the role requires one to be on a military installation* Required for Certain Job Profiles: Drivers who operate Commercial Motor Vehicles with a Gross Vehicle Weight (GVW), Gross Vehicle Weight Rating (GVWR) or combination of power unit and trailer that meets or exceeds 10,001 lbs. and/or transports placardable amounts of hazardous materials by ground in any vehicle on a public road while in commerce, may be subject to additional Federal Motor Carrier Safety Regulations including: Driver Qualification Files, Medical Certification (obtained before onboarding), Road Test, Hours of Service, Drug and Alcohol Testing, vehicle inspection requirements, CDL requirements (if applicable) and hazardous materials transportation/shipping training.* Required for certain Job Profiles: Ability to obtain and maintain Merchant Mariner Credential, which includes pre-employment and random drug testing as well as DOT physical **Benefits*** Benefits include: Medical, dental, vision, basic and supplemental life insurance, paid parental leave, short and long-term disability, 401(k) with a company match of up to 5%, and an Education Support Program.* Stock Options for all regular employees (working at least 20 hours/week)* Paid Time Off: Up to four (4) weeks per year based on weekly scheduled hours, and up to 14 company-paid holidays.* Dependent on role type and job level, employees may be eligible for benefits and bonuses based on the company's intent to reward individual contributions and enable them to share in the company's results, or other factors at the company's sole discretion. Bonus amounts and eligibility are not guaranteed and subject to change and cancellation. Please check with your recruiter for more details. **Equal Employment Opportunity**Blue Origin is proud to be an Equal Opportunity/Affirmative Action Employer and is committed to attracting, retaining, and developing a highly qualified and dedicated work force. Blue Origin hires and promotes people on the basis of their qualifications, performance, and abilities. We support the establishment and maintenance of a workplace that fosters trust, equality, and teamwork. We provide all qualified applicants for employment and employees with equal opportunities for hire, promotion, and other terms and conditions of employment, regardless of their race, color, religion, sex, sexual orientation, gender identity, national origin/ethnicity, age, physical or mental disability, genetic factors, military/veteran status, or any other status or characteristic protected by federal, state, and/or local law. Blue Origin will consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state, and local laws, including the Washington Fair Chance Act, the California Fair Chance Act, the Los Angeles Fair Chance in Hiring Ordinance, and other applicable laws. For more information on “Know Your Rights,” please see here. **Affirmative Action and Disability Accommodation**Applicants wishing to receive information on Blue Origin’s Affirmative Action Plans, or applicants requiring a reasonable accommodation in order to participate in the application and/or interview process, please contact us at EEOCompliance@blueorigin.com. Please note this is a publicly managed inbox. Please do not include any personal medical information in your request.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Blue Origin LLC • Denver (CO)

On-site
USD 134,000 - 187,000
Medical insurance
Dental insurance
Vision insurance
+5
Cyber Defense Analyst II
Cyber Defense Analyst II

Blue Origin LLC • Denver (CO)

On-site
USD 91,000 - 127,000
Medical insurance
Dental insurance
Vision insurance
+6
Cyber Defense Analyst
Cyber Defense Analyst

Blue Origin LLC • Denver (CO)

On-site
USD 75,000 - 104,000
Medical insurance
Dental insurance
Vision insurance
+5
Cyber Security Engineer III
Cyber Security Engineer III

Blue Origin • Seattle (WA)

On-site
USD 111,000 - 169,000
Medical, dental, vision
401(k) with company match
Education Support Program
Endpoint Experience Administrator III
Endpoint Experience Administrator III

Blue Origin LLC • Seattle (WA), Northern (KY)

On-site
USD 112,000 - 157,000
Medical, dental, vision
401(k) with match
Paid time off
+1
Mission Systems Engineer
Mission Systems Engineer

Blue Origin LLC • California (MO)

Hybrid
USD 157,000 - 220,000
Medical insurance
401(k) with company match
Parental leave
+1
Sr. Manager, National Security Sales
Sr. Manager, National Security Sales

Blue Origin LLC • Arlington (VA)

On-site
USD 133,000 - 204,000
Medical insurance
401(k) match
Paid parental leave
+1
Security Officer I - Early Career
Security Officer I - Early Career

Blue Origin LLC • Seattle (WA)

On-site
Medical Insurance
401(k) with company match
Paid Time Off
Ground System Site Reliability Engineer II
Ground System Site Reliability Engineer II

Blue Origin LLC • Seattle (WA)

On-site
USD 134,000 - 189,000
Medical, dental, and vision insurance
401(k) with company match
Paid parental leave
+1
Senior Software Development Engineer
Senior Software Development Engineer

Blue Origin LLC • Seattle (WA)

On-site
USD 198,000 - 277,000
Medical insurance
Dental insurance
Vision insurance
+3