Remote Cybersecurity Engineer: DevSecOps & Vulnerability Ops

OneZero Solutions

Washington (District of Columbia)

Remote

USD 120,000 - 160,000

Full time

11 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

OneZero Solutions LLC– a security-focused employer – seeks a Cyber Security Engineer to operate Tenable and Wiz, deploy agents, schedule scans, and coordinate with development teams to implement static analysis, dependency, container image, and IaC security checks in CI/CD/CM pipelines, with results captured as authorization evidence.

The role emphasizes risk mitigation, on-call support, hardening-build verification, and RMF Step 4 artifact generation, requiring experience with vulnerability

Qualifications

  • Five (5)+ years of cybersecurity or systems engineering experience, including two (2)+ years operating Tenable, Wiz, or a comparable enterprise vulnerability management platform.
  • Hands-on experience with CI/CD tooling (GitLab CI, Jenkins, Azure DevOps, or GitHub Actions) and at least one SAST/SCA or container scanning tool (e.g., SonarQube, Fortify, Snyk, Trivy, Anchore, Prisma).
  • Active, final SECRET security clearance; U.S. citizenship.
  • DoD 8140/8570 IAT Level II baseline certification (e.g., Security+ CE, CySA+, GSEC) or ability to obtain within 6 months.
  • Working knowledge of NIST SP 800-53 Rev. 5 vulnerability and configuration management controls (RA-5, SI-2, CM-6, SA-11).

Responsibilities

  • Operate Tenable and Wiz day to day: scan execution and scheduling, Nessus Agent deployment and health, asset onboarding, grouping and tagging per CA configuration standards, and quality review of results.
  • Distribute vulnerability and compliance scan results to ISSOs within 5 business days of scan completion; produce remediation tracking reports and metrics; support iPost application groupings.
  • Participate in the on-call rotation and support platform backups, patching, and troubleshooting under direction of the Cyber Security Engineer III.
  • Triage vulnerability, KEV, CVE, and STIG scan results; assist ISSOs in prioritizing critical and high findings to Department and BOD timelines.
  • Ensure applicable pipeline security controls (SAST, dependency scanning, container image scanning, and infrastructure-as-code checks) are implemented in DevSecOps CI/CD/CM pipelines; document the controls for the SSP and capture scan reports in the Evidence Index (RMF Step 3).
  • Analyze code and pipeline findings for security weaknesses and verify that mitigation strategies are validated and sustained across the system lifecycle.
  • Perform risk identification and IT governance assessments throughout the CI/CD/CM pipeline; brief ISSOs on pipeline risks.
  • Support hardened-build verification for development and production systems and ad-hoc scanning requests.
  • Support agent, data ingest and sharing, and pipeline integration efforts.
  • Maintain scanning SOPs and runbooks; provide Tenable/Wiz evidence for control demonstrations during RMF Step 4.

Skills

Tenable/Wiz experience
CI/CD tooling
Scripting (Python/PowerShell/Bash)
REST API proficiency
Secret clearance
DoD 8140/8570 IAT II
NIST SP 800-53 controls

Education

Bachelor's degree or equivalent experience

Tools

GitLab CI
Jenkins
Azure DevOps
GitHub Actions

Job description

OneZero Solutions LLC– a security-focused employer – seeks a Cyber Security Engineer to operate Tenable and Wiz, deploy agents, schedule scans, and coordinate with development teams to implement static analysis, dependency, container image, and IaC security checks in CI/CD/CM pipelines, with results captured as authorization evidence.

The role emphasizes risk mitigation, on-call support, hardening-build verification, and RMF Step 4 artifact generation, requiring experience with vulnerability

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Remote Cyber Security Engineer - Vulnerability & DevSecOps
Remote Cyber Security Engineer - Vulnerability & DevSecOps

OneZero Solutions • Washington

Remote
USD 120,000 - 180,000
Health insurance
Dental
Vision
+6
Cyber Security Engineer (Vulnerability Management & DevSecOps) DoS CSS
Cyber Security Engineer (Vulnerability Management & DevSecOps) DoS CSS

OneZero Solutions • Washington

Remote
USD 120,000 - 180,000
Health insurance
Dental
Vision
+6
Cyber Security Engineer DoS CSS
Cyber Security Engineer DoS CSS

OneZero Solutions • Washington

Remote
USD 120,000 - 160,000
Remote Cyber Security Engineer — Tenable Lead
Remote Cyber Security Engineer — Tenable Lead

onezerollc • Washington

Remote
USD 130,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+3
Senior Tenable Security Engineer - Remote/On-Call
Senior Tenable Security Engineer - Remote/On-Call

OneZero Solutions • Washington

Remote
USD 120,000 - 150,000
Health, dental, vision, and life
401(k) with company matching
Paid time off and holidays
+2
Cyber Security Engineer – III DoS CSS
Cyber Security Engineer – III DoS CSS

OneZero Solutions • Washington

Remote
USD 120,000 - 150,000
Health, dental, vision, and life
401(k) with company matching
Paid time off and holidays
+2
Cyber Security Engineer – III DoS CSS
Cyber Security Engineer – III DoS CSS

onezerollc • Washington

Remote
USD 130,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+3
Remote Lead Security Engineer, Vulnerability & Config Mgmt
Remote Lead Security Engineer, Vulnerability & Config Mgmt

U.S. Financial Technology • United States

Remote
USD 157,000 - 181,000
Cyber Security Engineer – Senior / Cloud DoS CSS
Cyber Security Engineer – Senior / Cloud DoS CSS

onezerollc • Washington

Remote
USD 140,000 - 190,000
Health insurance
Dental insurance
Vision insurance
+5
Senior Cloud Security Engineer - Remote (NCR)
Senior Cloud Security Engineer - Remote (NCR)

onezerollc • Washington

Remote
USD 140,000 - 190,000
Health insurance
Dental insurance
Vision insurance
+5