Cybersecurity Engineer (DevSecOps)

Arcfield

Home Creek (VA)

On-site

USD 120,000 - 170,000

Full time

29 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health Insurance
Life Insurance
Paid Time Off
Holiday Pay
Short Term and Long-Term Disability
Retirement and Savings
Learning and Development opportunities
Wellness programs
Other optional benefit elections

Job summary

Arcfield seeks a Security Engineer to design, implement, and maintain secure infrastructure and applications for its AI-driven Intelligent MBSE platform across enterprise, cloud, AI, and classified environments.

You will collaborate with software engineers, DevOps, IT, security, and government customers to ensure cybersecurity is integrated throughout the lifecycle while enabling rapid mission-critical delivery.

Qualifications

  • BS in cyber security, computer science, information technology, engineering, or related field.
  • 3–7 years of experience in cybersecurity, security engineering, DevSecOps, or related field.
  • Experience securing AWS, Azure, or hybrid cloud environments with emphasis on containerized architectures (Docker, Kubernetes).
  • Scripting or automation using Python, PowerShell, or Bash.
  • Understanding of AI/ML security best practices and RAG pipelines.
  • Active TS/SCI security clearance.

Responsibilities

  • Design, implement, and maintain security controls across cloud and on‑prem environments.
  • Support security accreditation and compliance activities (NIST RMF, SP 800‑53, 800‑171, CMMC, FedRAMP) for high‑side deployments.
  • Coordinate with IT, program security, engineering, and government customers to embed security requirements.
  • Conduct vulnerability assessments and remediation tracking across React frontend, Python backends, and Java plugins.
  • Implement DevSecOps practices in GitLab CI/CD with automated security scanning tools.
  • Monitor security events using Prometheus and Grafana and support incident response.
  • Configure IAM, privileged access, and least-privilege RBAC for microservices and cloud storage.
  • Develop and maintain SSPs, security procedures, and technical guidance.
  • Support ATO packages, security audits, and continuous monitoring.

Skills

Security engineering
DevSecOps
Cloud security
Kubernetes security
Vulnerability management
Python scripting
Team collaboration

Education

BS in Cybersecurity
MS in Computer Science

Tools

GitLab CI/CD
Trivy
Semgrep
OWASP tools
yGuard
Prometheus
Grafana
RabbitMQ
Cameo Systems Modeler

Job description

Responsibilities

This position is for Strategic Technology Consulting (STC), an Arcfield Company

Roles And Responsibilities

The candidate should be capable of working independently as a contributor to software development team. He or she should exhibit expertise in:

  • Design, implement, and maintain security controls across cloud (AWS/Azure), on-premises, AI, and classified environments.
  • Support security accreditation and compliance activities for systems governed by NIST SP 800-53, RMF, NIST SP 800-171, CMMC, and FedRAMP, specifically focusing on achieving ATOs for high-side classified deployments.
  • Coordinate with IT, Corporate Security, Program Security, software engineering teams, and government customers to ensure security requirements are incorporated throughout the system lifecycle.
  • Conduct vulnerability assessments, security reviews, and remediation tracking across our React frontend, Python (FastAPI) backends, and Java-based Cameo plugins.
  • Implement DevSecOps practices within GitLab CI/CD pipelines, integrating automated security scanning tools (e.g., Trivy, Semgrep, yGuard, and OWASP tools) into secure software development processes.
  • Monitor security events and system health, leveraging Prometheus and Grafana, and support incident response activities.
  • Configure and manage identity, access management (IAM), privileged access, and least-privilege controls (RBAC) for microservices and cloud storage boundaries (S3/Blob).
  • Implement security controls and guardrails for state-of-the-art AI models, Large Language Models (LLMs), and Retrieval-Augmented Generation (RAG) services to ensure data privacy, prevent prompt injection, and validate deterministic outputs.
  • Develop and maintain security documentation, System Security Plans (SSPs), security procedures, and technical guidance.
  • Support Authority to Operate (ATO) packages, security audits, and continuous monitoring activities.
  • Evaluate emerging cybersecurity technologies and recommend improvements to strengthen the organization’s security posture.
Candidate Interests

The candidate should also demonstrate a general understanding of or interest in gaining expertise in:

  • Systems Engineering processes, methods, and tools as applied to systems lifecycles
  • Digital Engineering methodologies and tooling
Position Summary

We are seeking a Security Engineer to design, implement, and maintain secure infrastructure and applications for our AI-driven Intelligent MBSE (iMBSE) platform across enterprise, cloud, AI, and classified environments. This role partners closely with software engineers, DevOps, IT, Security, and government customers to ensure cybersecurity is integrated throughout the system lifecycle while enabling rapid delivery of mission-critical systems engineering capabilities.

The ideal candidate has experience supporting Department of Defense (DoD) or Intelligence Community (IC) programs, implementing DevSecOps practices (specifically within containerized Kubernetes environments), and guiding systems through security compliance and accreditation for high-side networks.

Qualifications
  • BS 8-10, MS 6-8, PhD 3-5
  • BS in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field (or equivalent experience).
  • 3-7 years of experience in cybersecurity, security engineering, DevSecOps, or a related field.
  • Experience securing AWS, Azure, or hybrid cloud environments, with a strong emphasis on securing containerized architectures (Docker, Kubernetes).
  • Working knowledge of networking, operating systems, encryption, authentication, and secure software development principles.
  • Experience with vulnerability management and DevSecOps toolchains (GitLab CI/CD, static/dynamic analysis tools).
  • Experience with scripting or automation using Python, PowerShell, or Bash.
  • Understanding of AI/ML security best practices (e.g., OWASP Top 10 for LLMs) and securing Retrieval-Augmented Generation (RAG) pipelines.
  • Strong communication and collaboration skills with both technical teams and external customers.
  • Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
Required Technologies & Tools
  • Familiarity with Model-Based Systems Engineering (MBSE) workflows or tools (e.g., Cameo Systems Modeler, SysML v2).
  • Experience securing message brokering and orchestration services (e.g., RabbitMQ).
Equal Pay Act

This is the projected compensation range for this position. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, Arcfield's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long-Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.

  • Health Insurance
  • Life Insurance
  • Paid Time Off
  • Holiday Pay
  • Short Term and Long-Term Disability
  • Retirement and Savings
  • Learning and Development opportunities
  • wellness programs
  • other optional benefit elections
EEO Statement

We are an equal opportunity employer and federal government contractor. We do not discriminate against any employee or applicant for employment as protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Simile • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies
Cyber Technical Engineer
Cyber Technical Engineer

Technomics, Inc. • Arlington (VA)

On-site
USD 80,000 - 100,000
Devsecops Engineer
Devsecops Engineer

TEKsystems • Reston (VA)

On-site
USD 117,000 - 145,000
Medical, dental & vision
401(k) plan
Life Insurance
+2
Staff+ Security Engineer, Developer Tools
Staff+ Security Engineer, Developer Tools

United States Digital Space LLC • San Mateo (CA)

On-site
USD 200,000 - 300,000
Healthcare coverage
Mental health support
Parental leave
+3
Principal Information Security Engineer
Principal Information Security Engineer

Clarity Innovations • Fort Meade (MD)

On-site
USD 117,000 - 292,000
Staff Software Engineer - Federal
Staff Software Engineer - Federal

United States Digital Space LLC • Washington

On-site
USD 161,000 - 221,000
Lead Security Engineer
Lead Security Engineer

Dev Technology • Suitland (MD)

On-site
USD 120,000 - 190,000
Generous time-off policy
Flexible work schedules
401K matching
+1
Cloud Security Engineer
Cloud Security Engineer

Booz Allen Hamilton • Alexandria (VA)

On-site
USD 99,000 - 225,000
Health, life, and disability insurance
Retirement plans
Paid leave
Senior Security Engineer, Platforms & AI
Senior Security Engineer, Platforms & AI

Triwill Group • United States

On-site
USD 140,000 - 200,000
Remote-first
Competitive salary
Unlimited PTO
+2
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000