Cybersecurity Engineer (DevSecOps)

Arcfield

Virginia (MN)

Hybrid

USD 101,000 - 199,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Arcfield seeks a Security Engineer to design, implement, and maintain secure infrastructure and applications for an AI-driven MBSE platform across enterprise, cloud, AI, and classified environments.

You will collaborate with software engineers, DevOps, IT, Security, and government customers to integrate cybersecurity into the full system lifecycle and enable rapid mission-critical delivery.

Qualifications

  • Experience securing AWS, Azure, or hybrid cloud environments with containerized architectures (Docker, Kubernetes).
  • Experience with vulnerability management and DevSecOps toolchains (GitLab CI/CD, static/dynamic analysis).
  • Active TS/SCI security clearance and strong communication skills.

Responsibilities

  • Design, implement, and maintain security controls across cloud, on-premises, AI, and classified environments.
  • Support security accreditation and compliance activities (NIST SP 800-53, RMF, NIST SP 800-171, CMMC, FedRAMP) aiming for ATOs for high-side deployments.
  • Coordinate with IT, security, engineering, and government customers to embed security throughout the lifecycle.
  • Conduct vulnerability assessments, security reviews, and remediation tracking across front-end and back-end systems.
  • Implement DevSecOps practices in GitLab CI/CD pipelines with automated security scanning tools.
  • Monitor security events and system health using Prometheus and Grafana; support incident response.
  • Configure and manage IAM and least-privilege controls for microservices and cloud boundaries.
  • Implement security guardrails for AI models, LLMs, and RAG pipelines to protect data and outputs.
  • Develop security documentation (SSPs, procedures) and assist with ATO packages and audits.
  • Evaluate emerging cybersecurity technologies to strengthen security posture.

Skills

DevSecOps
Kubernetes
Cloud security
Vulnerability mgmt
Python scripting
TS/SCI clearance
AI security

Education

BS in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field (or equivalent experience).
BS 8-10, MS 6-8, PhD 3-5

Tools

GitLab CI/CD
Trivy
Semgrep
OWASP tools
RabbitMQ
Docker
Kubernetes

Job description

Responsibilities

This position is for Strategic Technology Consulting (STC), an Arcfield Company

Roles and Responsibilities:
  • Design, implement, and maintain security controls across cloud (AWS/Azure), on-premises, AI, and classified environments.
  • Support security accreditation and compliance activities for systems governed by NIST SP 800-53, RMF, NIST SP 800-171, CMMC, and FedRAMP, specifically focusing on achieving ATOs for high-side classified deployments.
  • Coordinate with IT, Corporate Security, Program Security, software engineering teams, and government customers to ensure security requirements are incorporated throughout the system lifecycle.
  • Conduct vulnerability assessments, security reviews, and remediation tracking across our React frontend, Python (FastAPI) backends, and Java-based Cameo plugins.
  • Implement DevSecOps practices within GitLab CI/CD pipelines, integrating automated security scanning tools (e.g., Trivy, Semgrep, yGuard, and OWASP tools) into secure software development processes.
  • Monitor security events and system health, leveraging Prometheus and Grafana, and support incident response activities.
  • Configure and manage identity, access management (IAM), privileged access, and least-privilege controls (RBAC) for microservices and cloud storage boundaries (S3/Blob).
  • Implement security controls and guardrails for state-of-the-art AI models, Large Language Models (LLMs), and Retrieval-Augmented Generation (RAG) services to ensure data privacy, prevent prompt injection, and validate deterministic outputs.
  • Develop and maintain security documentation, System Security Plans (SSPs), security procedures, and technical guidance.
  • Support Authority to Operate (ATO) packages, security audits, and continuous monitoring activities.
  • Evaluate emerging cybersecurity technologies and recommend improvements to strengthen the organization’s security posture.
The candidate should also demonstrate a general understanding of or interest in gaining expertise in:
  • Systems Engineering processes, methods, and tools as applied to systems lifecycles
  • Digital Engineering methodologies and tooling
Position Summary:

We are seeking a Security Engineer to design, implement, and maintain secure infrastructure and applications for our AI-driven Intelligent MBSE (iMBSE) platform across enterprise, cloud, AI, and classified environments. This role partners closely with software engineers, DevOps, IT, Security, and government customers to ensure cybersecurity is integrated throughout the system lifecycle while enabling rapid delivery of mission-critical systems engineering capabilities.

The ideal candidate has experience supporting Department of Defense (DoD) or Intelligence Community (IC) programs, implementing DevSecOps practices (specifically within containerized Kubernetes environments), and guiding systems through security compliance and accreditation for high-side networks.

Qualifications
  • BS 8-10, MS 6-8, PhD 3-5
  • BS in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field (or equivalent experience).
  • 3–7 years of experience in cybersecurity, security engineering, DevSecOps, or a related field.
  • Experience securing AWS, Azure, or hybrid cloud environments, with a strong emphasis on securing containerized architectures (Docker, Kubernetes).
  • Working knowledge of networking, operating systems, encryption, authentication, and secure software development principles.
  • Experience with vulnerability management and DevSecOps toolchains (GitLab CI/CD, static/dynamic analysis tools).
  • Experience with scripting or automation using Python, PowerShell, or Bash.
  • Understanding of AI/ML security best practices (e.g., OWASP Top 10 for LLMs) and securing Retrieval-Augmented Generation (RAG) pipelines.
  • Strong communication and collaboration skills with both technical teams and external customers.
  • Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
Required Technologies & Tools:
  • Familiarity with Model-Based Systems Engineering (MBSE) workflows or tools (e.g., Cameo Systems Modeler, SysML v2).
  • Experience securing message brokering and orchestration services (e.g., RabbitMQ).
Equal Pay Act

This is the projected compensation range for this position. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, Arcfield invests in its employees beyond just compensation. Arcfield ’s benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long-Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.Min: $101,156.77Max: $199,035.68

EEO Statement

We are an equal opportunity employer and federal government contractor. We do not discriminate against any employee or applicant for employment as protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer (DevSecOps)
Cybersecurity Engineer (DevSecOps)

Arcfield • Home Creek (VA)

On-site
USD 120,000 - 170,000
Health Insurance
Life Insurance
Paid Time Off
+6
Cyber Data Scientist
Cyber Data Scientist

Arcfield • Chantilly (VA)

On-site
USD 137,000 - 238,000
Cyber Systems Engineer
Cyber Systems Engineer

Arcfield • Virginia (MN)

Hybrid
USD 88,000 - 176,000
Health Insurance
Paid Time Off
Holiday Pay
+4
Cybersecurity Engineer III (Cleared)
Cybersecurity Engineer III (Cleared)

Talanto • Colorado

On-site
USD 144,000 - 216,000
Flexible schedule
Premium Insurance
401k match
+6
Cybersecurity Systems Engineer
Cybersecurity Systems Engineer

Arcfield • Chantilly (VA)

Hybrid
USD 134,000 - 233,000
Cyber Data Scientist
Cyber Data Scientist

Arcfield • Virginia (MN)

On-site
USD 137,000 - 238,000
Health Insurance
Life Insurance
Paid Time Off
+5
Cyber Systems Engineer
Cyber Systems Engineer

Arcfield • Home Creek (VA)

On-site
USD 89,000 - 176,000
Health Insurance
Paid Time Off
Holiday Pay
+4
Cloud Security Engineer
Cloud Security Engineer

Booz Allen Hamilton • Alexandria (VA)

On-site
USD 99,000 - 225,000
Health, life, and disability insurance
Retirement plans
Paid leave
Cyber Systems Engineer IV - ISSE
Cyber Systems Engineer IV - ISSE

Arcfield • Virginia (MN)

On-site
USD 116,000 - 201,000
Health Insurance
Paid Time Off
Retirement Plan
+1
Software Engineer III
Software Engineer III

Arcfield • City of Rome (NY)

On-site
USD 92,978 - 161,672
Health Insurance
Life Insurance
Paid Time Off
+2