Cybersecurity Engineer

Jobtailor

San Diego (CA)

On-site

USD 120,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor seeks a Senior Cybersecurity Engineer for a Navy program office to drive cyber requirements through the system lifecycle. You will assess architectures, perform ACAS/Nessus scans, and work with developers to remediate vulnerabilities while developing SAPs and POA&Ms.

Required are an Active Secret clearance, DoD 8140.03 IAT II certification, and 8+ years in cybersecurity, with DoD policy experience and Jira usage. This role is on-site in San Diego, CA.

Qualifications

  • Requires DoD 8140.03 IAT II certification.
  • Bachelor’s degree in a relevant discipline with 8+ years in cybersecurity or equivalent.
  • Active Secret clearance required.

Responsibilities

  • Serve as Senior Cybersecurity Engineer for a Navy program office across the SDLC.
  • Review architectures for cybersecurity vulnerabilities and compliance.
  • Plan and execute ACAS/Nessus scans and STIG evaluations; remediate vulnerabilities.
  • Develop Security POA&Ms and support RMF for ATO/IATT.
  • Prepare SAPs and assess results for client security reports.
  • Collaborate with engineers to implement mitigations and ensure secure POA&M integration.

Skills

RMF expertise
Vulnerability assessment
Nessus
ACAS
Security auditing
DoW policies
Clear communication

Education

Bachelor’s degree

Tools

EMASS
Jira
ACAS
STIGs
SCAP

Job description

Responsibilities
  • Serve as a Senior Cybersecurity Engineer for a Navy program office to support implementation and integration of cyber requirements throughout all stages of the system development lifecycle including requirements gathering, system engineering, deployment and sustainment.
  • Review system architecture to identify cybersecurity vulnerabilities and compliance issues.
  • Plan and execute cybersecurity scans, including running Assured Compliance Assessment Solution (ACAS)/Tenable scans, DISA Security Technical Implementation Guides (STIGs), evaluating STIG, DISA Security Content Automation Protocol (SCAP) and evaluating the system against vendor security best practices.
  • Work with the system developers to remediate and mitigate vulnerabilities on the system.
  • Develop system architecture diagrams and data flow diagrams as required.
  • Develop a Security Plan of Action and Milestones (POA&Ms) to include mitigation statements.
  • Support the Cybersecurity Analyst for the Risk Management Framework (RMF) process to achieve Authority to Operate (ATO) and Interim Authority to Test (IATT).
  • Plan and execute system scans to meet client requirements; analyze results, develop reports to determine the system’s vulnerabilities and risk posture, and provide recommendations for remediation to achieve the desired security and risk posture.
  • Identify cybersecurity vulnerabilities and compliance issues.
  • Work with engineers to remediate existing vulnerabilities or to develop mitigations that minimize impact, likelihood, or risks and work with the program to incorporate findings into the system POA&M.
  • Provide Cybersecurity Assessment and Authorization (A&A) support and serve as a cybersecurity expert for the program throughout all stages of acquisition, system engineering, and maintenance.
  • Successfully execute the RMF assessment process, develop Security Assessment Plans (SAPs), conduct assessments, and compile assessment results for client security assessment reports.
Requirements
  • Active Secret clearance required.
  • DoD 8140.03 IAT II certification required.
  • Bachelor’s degree in a relevant discipline from an accredited college/university and eight years plus experience in the cybersecurity field or an equivalent combination of work experience and education.
  • Experience developing Security Assessment Plans (SAPs).
  • Experience conducting Nessus and ACAS scans.
  • Experience building an ACAS scanner preferred.
  • Experience conducting DISA STIG and SRG on multiple technologies.
  • Experience with evaluating STIG preferred.
  • Experience with SCAP preferred.
  • Experience with implementing security lockdowns for Windows or Red Hat Linux (RHEL) operating systems, network technologies, including firewalls, routers, and switches.
  • Good knowledge of Department of War (DoW) cybersecurity policies and procedures.
  • Experience using eMasster and eMASS preferred.
  • Experience using Jira to create, manage and update work items, including user stories, epics, tasks, and bug reports preferred.
  • Strong written and verbal communication skills to advise various levels of technology stakeholders, program initiatives, and accrediting authorities on security requirements and cybersecurity trends and solutions, including risk assessments and mitigations.
  • Ability to work independently and be a self‑starter.
Core Competencies

Demonstrates expertise in Cybersecurity Engineering, including the execution of Risk Management Framework (RMF) processes, development of Security Assessment Plans (SAPs), and conducting vulnerability assessments using tools like ACAS and Nessus. Proficient in implementing security measures for various operating systems and network technologies while ensuring compliance with Department of War cybersecurity policies.

Tools & Technologies
  • EMASS
  • Jira
  • Assured Compliance Assessment Solution (ACAS)
  • DISA Security Technical Implementation Guides (STIGs)
  • Security Content Automation Protocol (SCAP)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Technomics, Inc. • Arlington (VA)

On-site
USD 100,000 - 130,000
Senior Cybersecurity Analyst/Engineer
Senior Cybersecurity Analyst/Engineer

Technomics, Inc. • Arlington (VA)

On-site
USD 100,000 - 130,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

DCS Corp • Dam Neck Corner (VA)

On-site
USD 110,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

Triglocon • Arlington (VA)

On-site
Medical, Dental & Vision Coverage
Paid Time Off
Paid Holidays
+3
Risk Management Support Lead
Risk Management Support Lead

Jobtailor • Illinois

On-site
USD 120,000 - 180,000
Cybersecurity Analyst/Engineer
Cybersecurity Analyst/Engineer

Technomics, Inc. • Arlington (VA)

On-site
USD 85,000 - 110,000
Advisory Information Security Manager – ISSM
Advisory Information Security Manager – ISSM

Jobtailor • Huntsville (AL)

On-site
USD 110,000 - 170,000
Cybersecurity Engineer
Cybersecurity Engineer

Koitecc Solutions • California (MO)

On-site
USD 110,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

Systems Planning & Analysis • Huntsville (AL)

On-site
USD 80,000 - 110,000
Competitive compensation
Industry-leading 401k contribution
Senior DevSecOps Cybersecurity Engineer
Senior DevSecOps Cybersecurity Engineer

Jobtailor • California (MO)

On-site
USD 120,000 - 180,000