Cybersecurity Engineer

GBTI Solutions Inc

Arlington (VA)

On-site

USD 120,000 - 180,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

GBTI Solutions Inc. is seeking a Cybersecurity Expert to serve as the lead technical authority for information systems security engineering, automation, and architecture in Arlington, VA.

You will design, implement, and operationalize automated GRC frameworks and CaC/PaC/IaC solutions aligned with Zero Trust and DoD RMF. The role requires deep experience in translating complex regulatory requirements into automated code and integrating AWS security services for continuous monitoring.

Qualifications

  • Active SECRET clearance required.
  • Bachelor’s degree in IT/CS/Engineering or related field.
  • Certifications listed in the qualifications (AWS/ISC) are preferred.

Responsibilities

  • Serve as lead technical resource for automated GRC framework design and implementation.
  • Design and implement a four-layer automation architecture (IaC, config mgmt, PaC/CaC, orchestration).
  • Translate RMF, NIST SP 800-53, DISA STIGs into automated, operational code.
  • Integrate AWS security services for continuous monitoring and automated evidence collection.
  • Support real-time Compliance Scoring Dashboards and RESTful APIs.
  • Provide guidance to ISSMs, ISSOs, and stakeholders on security posture.

Skills

Active SECRET clearance
Security automation
Cloud engineering
Infrastructure as Code
GRC automation
RMF/NIST knowledge

Education

Bachelor’s degree in IT/CS/Engineering

Tools

AWS Certified DevOps Engineer – Professional
AWS Certified Solutions Architect – Professional
AWS Certified Security – Specialty
ISC² CISSP (ISSEP/ISSAP)

Job description

Position Summary The Cybersecurity Expert serves as the lead technical authority for information systems security engineering, automation, and architecture. This individual designs, implements, and operationalizes automated GRC frameworks, Compliance-as-Code (CaC), Policy-as-Code (PaC), and Infrastructure-as-Code (IaC) solutions aligned with Zero Trust and DoD Cybersecurity Risk Management Construct.

Key Responsibilities

Serve as lead technical resource for designing, developing, implementing, and operationalizing the automated GRC framework.

Design and implement a four-layer automation architecture:

Infrastructure Provisioning Layer (secure IaC templates)

Configuration Management Layer

Compliance Validation Layer (PaC / CaC)

Orchestration and Workflow Layer

Translate complex regulatory requirements (RMF, NIST SP 800-53, DISA STIGs) and architectural diagrams into functional, automated, and operational code.

Integrate and configure AWS-native security services (Audit Manager, Security Hub, Config, CloudTrail, CloudWatch) for continuous monitoring and automated evidence collection.

Support development of real-time Compliance Scoring Dashboards and RESTful APIs.

Participate in solution analysis and architectural reviews to ensure compliance with DoD regulations, Zero Trust principles, and DSCA policies.

Provide technical guidance to ISSMs, ISSOs, and other stakeholders on the security posture and operational function of automated systems.

Required Qualifications

Active SECRET clearance.

Bachelor’s degree from an accredited institution in Information Technology, Computer Science, Engineering, or related technical discipline.

Must possess one of the following certifications:

AWS Certified DevOps Engineer – Professional or AWS Certified Solutions Architect – Professional

AWS Certified Security – Specialty

ISC² CISSP (preferably with ISSEP or ISSAP concentration)

Twelve (12) years of demonstrated experience in systems engineering and cybersecurity, with at least seven (7) years focused on security automation, cloud engineering, and architecture.

Five (5) years of experience serving as a lead technical authority on enterprise-level projects responsible for designing and implementing security solutions (not just assessing them).

Five (5) years of experience translating complex regulatory requirements (RMF, NIST, DISA STIGs) and architectural diagrams into functional, automated, and operational code.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States

On-site
USD 120,000 - 150,000
Security Operations Engineer – Senior
Security Operations Engineer – Senior

C3EL • Washington

On-site
USD 100,000 - 130,000
Lead Cybersecurity Integrated Architect
Lead Cybersecurity Integrated Architect

Cox Enterprises • Hapeville (GA)

On-site
USD 100,000 - 130,000
Lead Cybersecurity Integrated Architect
Lead Cybersecurity Integrated Architect

Cox Enterprises • Peachtree Corners (GA)

On-site
USD 100,000 - 130,000
Cloud Security Engineer
Cloud Security Engineer

Booz Allen Hamilton • Alexandria (VA)

On-site
USD 99,000 - 225,000
Health, life, and disability insurance
Retirement plans
Paid leave
Security Software Engineer
Security Software Engineer

Eccalon, LLC • Hanover (MD)

On-site
USD 110,000 - 140,000
Subject Matter Expert
Subject Matter Expert

Node.Digital LLC • Washington, Northern (KY)

On-site
USD 150,000 - 190,000
Medical
Dental
Vision
+6
Security Software Engineer On-site
Security Software Engineer On-site

Eccalon, LLC • Detroit (MI)

On-site
USD 110,000 - 170,000