Cybersecurity Engineer

Sonalysts, Inc.

Colorado Springs (CO)

On-site

USD 80,000 - 115,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

ESOP
401(k) Plan
Educational Reimbursement
Flexible Work Schedule
Paid Time Off

Job summary

Sonalysts, Inc. seeks an experienced Cybersecurity Engineer to design and implement security controls for classified network systems. You will apply RMF, DoD IA concepts, and NIST standards, coordinating with software teams to remediate vulnerabilities.

The role requires DoD security clearance eligibility, strong Windows/Linux hardening, and hands-on experience with eMASS, ACAS/Nessus, and security tooling. Onsite work in Colorado Springs, CO is expected.

Qualifications

  • Must have or be eligible for DoD SECRET clearance.
  • Bachelor’s degree in Computer Science, Information Technology, Information Systems, Computer Security or 4 years related experience.
  • Minimum 3 years of information assurance or cyber security development support experience.

Responsibilities

  • Design, develop and implement security controls for DoD-classified networks.
  • Integrate security configurations on Windows and Linux platforms.
  • Conduct vulnerability assessments and remediation coordination with engineering teams.
  • Participate in A&A activities to obtain/maintain Authority to Operate (ATO).
  • Provide RMF guidance in compliance with NIST SP 800-53 and DoD policies.
  • Input data into eMASS and maintain test procedures and documentation.

Skills

RMF knowledge
Information Assurance
Vulnerability assessment
Scripting (Shell/PowerShell/Python)

Education

DoD SECRET clearance eligibility
Bachelor’s degree in CS/IT/IS or 4 years related experience

Tools

eMASS
Tenable Nessus/ACAS
STIG/SCAP
Splunk/Elastic

Job description

Sonalysts, Inc. is seeking an experienced Cybersecurity Engineer with critical thinking skills capable of developing and implementing security controls for classified network systems. Candidates should have familiarity with U.S. Department of Defense (DoD) information systems and knowledge of Information Assurance concepts to include the application of Risk Management Framework (RMF) policies and procedures. Knowledge of U.S. Air Force and/or Space Force related security procedures or systems is a plus.
Submission Deadline September 6, 2026
Prompt responses are encouraged because the deadline could be accelerated or delayed if, in our judgement, either is warranted.

What you will be doing
  • Working onsite at our campus in Colorado Springs, CO
  • Design, develop, and implement security controls to preserve confidentiality, integrity and availability of information systems
  • Integrate security configuration procedures and tools on Windows and Linux platforms
  • Evaluate requirements, select/implement security controls, translate technical concepts & control requirements into guidance, create and/or review installation procedures, conduct verification and validation of test procedures and script changes, tailor and configure security controls for specific product use, tailor platform hardening, implement application software and/or Operating System vulnerability patches, draft security assessment plans, prepare test procedures, perform security tests, and perform security vulnerability assessments using Tenable Assured Compliance Assessment Solution (ACAS)
  • Identify issues and recommend solutions for remediation to the software development team
  • Identify issues, recommend, and develop solutions for enhancing current processes and procedures
  • Participate in assessment and authorization (A&A) activities with various government authorities and authorization agents to obtain and maintain official system Authorization to Operate (ATO)
  • Provide security control guidance to the customer in compliance with the NIST SP 800-53 Revision 5 Risk Management Framework (RMF) and the respective Cognizant Security Office
  • Completing security DoD and Information Assurance (IA) training as required
  • Input data into the Enterprise Mission Assurance Support Service (eMASS) system
  • Perform vulnerability scans, analyze results, construct remediation plans with system engineers, and implement remediation solutions in compliance with SLAs
  • Support day-to-day information system operations installing, configuring, & upgrading software, conduct preventative maintenance inspections, and resolving network/computer/peripheral issues on workstations, servers, and network infrastructure
  • Verify accuracy and completion of security procedures, documents, and forms
  • Assist with classified spills/incident response or other security-related incidents
What’s in it for you
  • Salary ranges between $80,000-$115,000, dependent on experience, qualifications and other relevant business criteria. There are no bonuses, commissions or other compensation unique to this job.
  • Opportunity to challenge yourself (learn and grow) intellectually as technologies advance.
  • Working on challenging and innovative projects.
  • General benefits for full-time employees are described below.
  • Flexible Work Schedule
  • Paid Time Off, including Sick or Personal Time Off account and Vacation and Holiday account
  • Educational Reimbursement Program
  • Sonalysts Employee Stock Ownership Plan (ESOP)
  • Sonalysts Retirement and Savings (401(K)) Plan
  • Our health benefits include
    • Comprehensive medical coverage offered through a High-Deductible Health Plan with a national network of providers. A Health Reimbursement Account (HRA) is offered, which is used in conjunction with the High-Deductible Health Plan.
    • Life accidental death and dismemberment insurance
    • Dental coverage
    • Short-term disability insurance
    • Long-term disability insurance
    • Medical and dependent care flexible spending accounts

Note The foregoing description of benefits at Sonalysts is a highly simplified summary of a series of lengthy, complex, legal plan documents. Moreover, the plan documents are changed from time to time, both to address changes in the law and to address changes in the policies of the company. This highly simplified summary is provided solely to comply with Colorado law regarding the posting of the general nature of job opportunities, and not to convey any rights to any person. In every case, eligibility for any benefit, and the specific application of the benefit, provided under any such plan will be determined entirely by the applicable plan document itself without any reference to the highly simplified summary provided above. No right to any benefit will accrue to anyone by virtue of the foregoing highly simplified summary description.

Required Qualifications
  • Must be a U.S. citizen, eligible for a U.S. Department of Defense (DoD) SECRET security clearance*
  • Bachelor’s degree in Computer Science, Information Technology, Information Systems, Computer Security or related technical field or 4 years of equivalent related experience
  • Minimum 3 years of experience providing information assurance or cyber security development support for system development
Desired Qualifications/Experience
  • Ability to work in a fast-paced environment and a desire to learn new systems and software/hardware tools
  • Excellent written and verbal communication skills
  • Possessing an active U.S. Department of Defense (DoD) security clearance*
  • Hold current DoD Cyber Workforce certification(s) (e.g., Security+ or equivalent certification(s)) or can obtain certification within 6 months of employment
  • Five years of experience providing information assurance or cyber security development support for system development
  • Experience with the eMASS system
  • Experience following DoD IA doctrine (RMF); and/or the National Industrial Security Program Operating Manual (NISPOM) and/or NIST SP 800 series publications.
  • Strong understanding of NIST SP 800-53 Revision 4 or 5 controls with familiarity of the development and tailoring to system policies, procedures, documentation, artifacts, and configuration management to meet security control requirements.
  • Knowledgeable in the use of scripting languages/tools to automate information system administration and security functions (Shell Script, PowerShell, Python, etc.)
  • Experience with applying security hardening techniques and procedures on information systems (access control/permissions, group policy, MFA, ACLs, etc.)
  • Experience with a variety of information system components including Windows, Linux, virtual machines, network cabling & infrastructure, firewalls, backup/recovery solutions, etc.)
  • Experience with tools and techniques in the following areas vulnerability scanning (Tenable Nessus/ACAS, Nmap, Metasploit), configuration compliance (STIG Viewer, SCAP Compliance Checker), endpoint security (Trellix, Windows Defender), audit logs and SIEM tools (Splunk, Elastic, Windows Event Collector) .
  • Obtaining a U.S. Government security clearance involves a comprehensive background check. Candidates are eligible for a clearance if they have demonstrated sound financial management (including good credit) over time, are free of criminal records, have limited foreign contacts or ties, and other factors indicative of a position of trust to protect information sensitive to the U.S. Government.

Sonalysts, Inc. is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, gender identity, age, status as a protected veteran, disability, or other basis protected by law.
Drug Testing Employer
www.sonalysts.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Systems Analyst, Sr.
Cybersecurity Systems Analyst, Sr.

TJ Consulting Group • Coronado (CA)

On-site
USD 120,000 - 170,000
PTO
Holiday Pay
401K with a 4% Match
+13
Information Systems Security Engineer
Information Systems Security Engineer

Solidus Technical Solutions, LLC • Aurora (CO)

On-site
USD 155,000 - 194,000
Equal Opportunity Employer
Generous PTO
Information Systems Security Engineer
Information Systems Security Engineer

Solidus Technical Solutions • Aurora (CO)

On-site
USD 155,000 - 194,000
Cyber Security Analyst I
Cyber Security Analyst I

Scientific Research Corporation • North Charleston (SC)

On-site
USD 90,000 - 120,000
Security Operation Center (SOC) Analyst II
Security Operation Center (SOC) Analyst II

General Dynamics Information Technology • Colorado Springs (CO)

On-site
USD 112,000 - 138,000
Medical plan options
Dental and Vision plan options
401(k) plan with company match
Computer Network Defense Analyst
Computer Network Defense Analyst

Agecareers • Columbus (OH)

On-site
USD 85,000 - 98,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+6
Information Cybersecurity Engineer Clearance Required
Information Cybersecurity Engineer Clearance Required

Nexxis Solutions • Corridor North (MD)

On-site
USD 90,000 - 250,000
Paid time off
Medical/dental/vision insurance
401k and more
Senior Associate, Info Security Systems Engineer
Senior Associate, Info Security Systems Engineer

L3Harris Technologies • Colorado Springs (CO)

On-site
USD 80,500 - 149,500
Health and disability insurance
401(k) match
Flexible spending accounts
+3
Cybersecurity Engineer
Cybersecurity Engineer

Agecareers • Columbus (OH)

On-site
USD 85,000 - 98,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+2
Cybersecurity Engineer
Cybersecurity Engineer

Age Solutions • Columbus (OH)

On-site
USD 85,000 - 120,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+7