Test Event Cyber Security Lead (Secret)

Aegis Aerospace Inc.

Colorado Springs (CO)

On-site

USD 150,000 - 170,000

Full time

10 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Aegis Aerospace is seeking a Test Event Cybersecurity Lead to support the Missile Defense Agency on the IRES contract at Schriever Space Force Base in Colorado Springs, CO. The Lead manages engineers and ISSOs handling defensive cyber operations, vulnerability management, and security-posture monitoring across mission environments.

The role ensures RMF compliance, oversees vulnerability scanning with ACAS, and coordinates patches and incident response.

Responsibilities

  • Architect and manage cybersecurity processes and oversee the development of operational monitoring dashboards.
  • Assist with complex, query-based threat hunting across centralized log repositories.
  • Develop and manage the scheduling and execution of credentialed ACAS vulnerability scans.
  • Correlate vulnerability-scan findings, track remediation timelines, and generate remediation tickets.
  • Implement, verify, and document DISA STIGs.

Job description

Test Event Cyber Security Lead (Secret)
Test Event Cybersecurity Lead

Location: Schriever Space Force Base, Colorado Springs, CO

Relocation Assistance: None available at this time

Remote/Telework: No Onsite support required

Citizenship Requirement: U.S. citizenship required

Clearance Required: Active DoD Secret security clearance

Work Schedule: Full-Time, Day Shift

Travel: Up to 10%

Position Summary

Aegis Aerospace is seeking a Test Event Cybersecurity Lead to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract at Schriever Space Force Base in Colorado Springs, Colorado. The Test Event Cybersecurity Lead manages engineers and Information System Security Officers (ISSOs) responsible for defensive cyber operations, vulnerability lifecycle management, and security-posture monitoring across mission environments. This position is responsible for the overall cybersecurity and operational health of test-event packages. The lead assigns work, establishes team goals and priorities, oversees vulnerability scanning through Assured Compliance Assessment Solution (ACAS), manages endpoint-protection activities, and ensures compliance with Department of Defense Risk Management Framework (RMF) requirements.

Primary Responsibilities
  • Architect and manage cybersecurity processes and oversee the development of operational monitoring dashboards.
  • Assist with complex, query-based threat hunting across centralized log repositories.
  • Develop and manage the scheduling and execution of credentialed ACAS vulnerability scans.
  • Correlate vulnerability-scan findings, track remediation timelines, and generate technical remediation tickets.
  • Implement, verify, and document Defense Information Systems Agency Security Technical Implementation Guides (DISA STIGs).
  • Manage system configurations and enforce Ports, Protocols, and Services Management (PPSM) baselines.
  • Support continuous monitoring and authorization packages throughout the DoD RMF lifecycle in accordance with NIST SP 800-37 and NIST SP 800-53.
  • Triage and contain operational security anomalies, conduct preliminary root-cause forensic analysis, and support defensive cybersecurity reporting.
  • Oversee engineers using Python, PowerShell, or Bash to automate administrative tasks, parse security logs, and streamline vulnerability-scan analysis.
  • Oversee engineers working with the ELK Stack—Elasticsearch, Logstash, and Kibana—or equivalent centralized log-aggregation platforms.
  • Oversee engineers supporting VMware vSphere and ESXi virtualized infrastructures and automated configuration management using Ansible.
  • Oversee firewall-rule management, network access control lists, and network-traffic analysis.
  • Respond rapidly to high-priority cybersecurity alerts outside standard operating hours while participating in an on-call rotation.
  • Coordinate directly with system administrators, ISSMs, and network engineers to validate patches and mitigate identified vulnerabilities.
  • Maintain audit readiness for Command Cyber Readiness Inspections and external cybersecurity assessments.
  • Schedule and manage a team of engineers supporting test events, including support outside core operating hours.
  • Respond to and triage Cyber Tasking Orders applicable to assigned and managed packages.
Minimum Qualifications
  • Must be a U.S. Citizen.
  • Must have an active DoD Secret security clearance or higher.
  • Six or more years of general full-time work experience. This requirement may be reduced based on the completion of advanced education.
  • Four or more years of directly related professional experience.
  • Six or more months of experience in a management or leadership role.
  • Demonstrated hands-on experience with a Security Information and Event Management platform, including managing data ingestion, developing security-monitoring dashboards, and performing query-based analysis of security events.
  • Experience with an Endpoint Detection and Response or Endpoint Protection Platform solution, such as Trellix Endpoint Security or Microsoft Defender for Endpoint.
  • Current ACAS certificate and experience performing vulnerability scans using ACAS, including Tenable SecurityCenter and Nessus.
  • Experience with both Windows and Linux operating systems.
  • Ability to participate in an on-call rotation and respond to cybersecurity incidents outside standard business hours as required.
  • Compliance with DoD 8570/8140 Information Assurance Technical Level II requirements at a minimum, such as CompTIA Security+ CE, CySA+, or GSEC.
Preferred Qualifications
  • Strong working knowledge of the DoD Risk Management Framework lifecycle.
  • Experience with the ELK Stack—Elasticsearch, Logstash, and Kibana—or similar log-aggregation and monitoring tools.
  • Experience applying and verifying DISA STIGs and familiarity with Ports, Protocols, and Services Management.
  • Proficiency with Python, PowerShell, Bash, or a similar scripting language used to automate administrative and cybersecurity tasks.
  • Experience with virtualization and automation platforms, particularly VMware vSphere, VMware ESXi, and Ansible.
  • Current DoD 8570/8140 Information Assurance Technical Level III certification.
Compensation:

Salary Range: $150,000 $170,000 annually. Final compensation is based on experience, education, location, and applicable certifications.

About Aegis Aerospace

We are a woman-owned space and technology company headquartered in Houston, TX. Our primary objective is to support the Department of Defense and NASA in achieving their missions to defend the security of our country, reach new heights, and discover the unknown. We employ some of the brightest, most experienced engineering and technology experts in the U.S.

To learn more about Aegis Aerospace, please visit our website: http://www.AegisAero.com

Equal Opportunity Employer / Protected Veteran / Disability
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DoD Test-Event Cybersecurity Lead (Secret)
DoD Test-Event Cybersecurity Lead (Secret)

Aegis Aerospace Inc. • Colorado Springs (CO)

On-site
USD 150,000 - 170,000
Operational Test & Evaluation Analyst
Operational Test & Evaluation Analyst

Aegis Aerospace Inc. • Kirtland (NM)

On-site
USD 90,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

Aether Aerospace • Albuquerque (NM)

On-site
USD 120,000 - 180,000
Software Engineer- Ground Systems
Software Engineer- Ground Systems

Aegis Aerospace Inc. • Houston (TX)

On-site
USD 85,000 - 105,000
Health insurance
Dental insurance
Vision insurance
+7
Software Engineer- Ground Systems (TS/SCI)
Software Engineer- Ground Systems (TS/SCI)

Aegis Aerospace Inc. • Houston (TX)

On-site
USD 85,000 - 105,000
Medical/Dental/Vision
401(k) Retirement
Paid time off
+4
Cyber Mission Engineer
Cyber Mission Engineer

The Aerospace Corporation • Northern (KY)

On-site
USD 129,000 - 194,000
Comprehensive health care
Relocation assistance
Professional growth programs
Senior Assistant Test Event Manager
Senior Assistant Test Event Manager

Systems Planning & Analysis • Huntsville (AL)

On-site
USD 120,000 - 150,000
Cyber Mission Engineer
Cyber Mission Engineer

The Aerospace Corporation • Aurora (CO)

On-site
USD 129,000 - 194,000
Comprehensive health care and wellness
Relocation assistance
Education assistance programs
CYBER SECURITY ENGINEER
CYBER SECURITY ENGINEER

MCSG Technologies • Colorado Springs (CO)

On-site
USD 100,000 - 120,000
Medical insurance
Dental insurance
Vision insurance
+2
Mid-Level System Test Engineer IRES - SSFB
Mid-Level System Test Engineer IRES - SSFB

Amentum • Colorado Springs (CO)

On-site
USD 120,000 - 150,000
Health insurance
401(k) matching
Educational reimbursement
+6