Cybersecurity Engineer (DevSecOps)

STC, an Arcfield Company

Home Creek (VA)

On-site

USD 101,000 - 199,000

Full time

16 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

STC, an Arcfield Company, seeks a Security Engineer to design, implement, and maintain secure infrastructure for AI-driven iMBSE platforms across enterprise, cloud, AI, and classified environments. You will partner with software engineers, DevOps, IT, Security, and government customers to integrate cybersecurity throughout the lifecycle, enabling rapid mission-critical delivery.

The ideal candidate has DoD/IC program experience, DevSecOps in containerized Kubernetes environments, and guidance

Qualifications

  • BS 8-10, MS 6-8, PhD 3-5
  • BS in Cybersecurity, CS, IT, Engineering or related field
  • 3–7 years in cybersecurity or security engineering
  • Experience securing AWS/Azure/hybrid clouds
  • Secure containerized architectures (Docker, Kubernetes)
  • Knowledge of networking, OS, encryption, auth, secure SDLC
  • Experience with vulnerability management and DevSecOps toolchains
  • Automation scripting (Python, PowerShell, Bash)
  • AI/ML security best practices and RAG pipelines
  • Strong communication and collaboration
  • Active TS/SCI clearance

Responsibilities

  • Design, implement, and maintain security controls across cloud, on-prem, AI, and classified environments.
  • Support security accreditation for systems governed by NIST RMF, NIST 800-53, 800-171, CMMC, FedRAMP, ATOs.
  • Coordinate with IT, security, software teams, and government customers for security lifecycle.
  • Conduct vulnerability assessments, security reviews, and remediation tracking.
  • Implement DevSecOps in GitLab CI/CD with automated scanning tools.
  • Monitor security events with Prometheus and Grafana; assist incident response.
  • Configure IAM, privileged access, and least-privilege controls for microservices and storage.
  • Develop security docs, SSPs, procedures, and guidance.
  • Support ATO packages, security audits, and continuous monitoring.
  • Evaluate new cybersecurity technologies and improvements.

Skills

Security engineering
DevSecOps
Vulnerability assessment
IAM / RBAC
Python scripting
Cloud security (AWS/Azure)
Compliance & accreditation
Threat modeling
Communication

Education

Bachelor's degree in Cybersecurity / CS / IT / Engineering

Tools

GitLab CI/CD
Trivy
Semgrep
yGuard
OWASP tools
Prometheus
Grafana
Cameo Systems Modeler
SysML
RabbitMQ

Job description

Responsibilities

This position is for Strategic Technology Consulting (STC), an Arcfield Company

Responsibilities

This position is for Strategic Technology Consulting (STC), an Arcfield Company

Roles And Responsibilities

The candidate should be capable of working independently as a contributor to software development team. He or she should exhibit expertise in:

  • Design, implement, and maintain security controls across cloud (AWS/Azure), on-premises, AI, and classified environments.
  • Support security accreditation and compliance activities for systems governed by NIST SP 800-53, RMF, NIST SP 800-171, CMMC, and FedRAMP, specifically focusing on achieving ATOs for high-side classified deployments.
  • Coordinate with IT, Corporate Security, Program Security, software engineering teams, and government customers to ensure security requirements are incorporated throughout the system lifecycle.
  • Conduct vulnerability assessments, security reviews, and remediation tracking across our React frontend, Python (FastAPI) backends, and Java‑based Cameo plugins.
  • Implement DevSecOps practices within GitLab CI/CD pipelines, integrating automated security scanning tools (e.g., Trivy, Semgrep, yGuard, and OWASP tools) into secure software development processes.
  • Monitor security events and system health, leveraging Prometheus and Grafana, and support incident response activities.
  • Configure and manage identity, access management (IAM), privileged access, and least‑privilege controls (RBAC) for microservices and cloud storage boundaries (S3/Blob).
  • Implement security controls and guardrails for state‑of‑the‑art AI models, Large Language Models (LLMs), and Retrieval‑Augmented Generation (RAG) services to ensure data privacy, prevent prompt injection, and validate deterministic outputs.
  • Develop and maintain security documentation, System Security Plans (SSPs), security procedures, and technical guidance.
  • Support Authority to Operate (ATO) packages, security audits, and continuous monitoring activities.
  • Evaluate emerging cybersecurity technologies and recommend improvements to strengthen the organization’s security posture.
The candidate should also demonstrate a general understanding of or interest in gaining expertise in:
  • Systems Engineering processes, methods, and tools as applied to systems lifecycles
  • Digital Engineering methodologies and tooling
Position Summary

We are seeking a Security Engineer to design, implement, and maintain secure infrastructure and applications for our AI-driven Intelligent MBSE (iMBSE) platform across enterprise, cloud, AI, and classified environments. This role partners closely with software engineers, DevOps, IT, Security, and government customers to ensure cybersecurity is integrated throughout the system lifecycle while enabling rapid delivery of mission‑critical systems engineering capabilities.

The ideal candidate has experience supporting Department of Defense (DoD) or Intelligence Community (IC) programs, implementing DevSecOps practices (specifically within containerized Kubernetes environments), and guiding systems through security compliance and accreditation for high-side networks.

Qualifications
  • BS 8-10, MS 6-8, PhD 3-5
  • BS in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field (or equivalent experience).
  • 3–7 years of experience in cybersecurity, security engineering, DevSecOps, or a related field.
  • Experience securing AWS, Azure, or hybrid cloud environments, with a strong emphasis on securing containerized architectures (Docker, Kubernetes).
  • Working knowledge of networking, operating systems, encryption, authentication, and secure software development principles.
  • Experience with vulnerability management and DevSecOps toolchains (GitLab CI/CD, static/dynamic analysis tools).
  • Experience with scripting or automation using Python, PowerShell, or Bash.
  • Understanding of AI/ML security best practices (e.g., OWASP Top 10 for LLMs) and securing Retrieval‑Augmented Generation (RAG) pipelines.
  • Strong communication and collaboration skills with both technical teams and external customers.
  • Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
Required Technologies & Tools
  • Familiarity with Model-Based Systems Engineering (MBSE) workflows or tools (e.g., Cameo Systems Modeler, SysML v2).
  • Experience securing message brokering and orchestration services (e.g., RabbitMQ).
Equal Pay Act

This is the projected compensation range for this position. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, Arcfield invests in its employees beyond just compensation. Arcfield ’s benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long-Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections. Min: $101,156.77 Max: $199,035.68

EEO Statement

We are an equal opportunity employer and federal government contractor. We do not discriminate against any employee or applicant for employment as protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer (DevSecOps)
Cybersecurity Engineer (DevSecOps)

Arcfield • Home Creek (VA)

On-site
USD 120,000 - 170,000
Health Insurance
Life Insurance
Paid Time Off
+6
Cybersecurity Systems Engineer
Cybersecurity Systems Engineer

Arcfield • Chantilly (VA)

On-site
USD 134,000 - 233,000
Software Engineer III
Software Engineer III

Arcfield • City of Rome (NY)

On-site
USD 92,978 - 161,672
Health Insurance
Life Insurance
Paid Time Off
+2
Cyber Systems Engineer
Cyber Systems Engineer

Arcfield • Home Creek (VA)

On-site
USD 89,000 - 176,000
Health Insurance
Paid Time Off
Holiday Pay
+4
Cyber Systems Engineer IV - ISSE
Cyber Systems Engineer IV - ISSE

Arcfield • Virginia (IL)

On-site
USD 116,000 - 201,000
Health Insurance
Paid Time Off
Retirement Plan
+1
Cloud Security Engineer
Cloud Security Engineer

Booz Allen Hamilton • Alexandria (VA)

On-site
USD 99,000 - 225,000
Health, life, and disability insurance
Retirement plans
Paid leave
Technical Consultant- Cyber Security Engineering
Technical Consultant- Cyber Security Engineering

NextGenEnergyJobs • Vienna (VA), Northern (KY)

Hybrid
USD 110,000 - 160,000
Systems Engineer
Systems Engineer

Arcfield • Chantilly (VA)

On-site
USD 110,000 - 180,000
Health Insurance
Paid Time Off
Learning and Development opportunities
System Engineer- Cyber Security Engineering Focus
System Engineer- Cyber Security Engineering Focus

NextGenEnergyJobs • Vienna (VA), Northern (KY)

Hybrid
USD 120,000 - 170,000
Health benefits
401(k) plan
Profit sharing
+1
Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Simile • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies