
Cyber Security Engineer
Posted Jul 15

Posted Jul 15
This is a fully remote position, open to applicants in United States.
• Provide support for cybersecurity engineering in the pilot, which includes cloud security, RMF/ATO assistance, compliance documentation, and ongoing monitoring.
• Safeguard AWS-based environments through identity and access management, encryption, logging, monitoring, network security, vulnerability management, and configuration hardening.
• Set up, monitor, and assist with AWS security services such as AWS Network Firewall, Security Hub, GuardDuty, CloudWatch, CloudTrail, Inspector, and related features.
• Aid in security planning for an AWS Commercial Cloud environment, taking into account potential migration to AWS GovCloud or another VA-approved hosting solution.
• Contribute to ATO planning, control implementation, evidence gathering, compliance reporting, and approval processes.
• Operate within eMASS, ServiceNow GRC, or similar risk management platforms to support ATO artifacts, information assurance tasks, POA&M tracking, and security documentation.
• Create and uphold SSPs, POA&Ms, SOPs, risk assessments, control narratives, security diagrams, and remediation strategies.
• Assist with vulnerability assessments, DISA STIG hardening, configuration compliance evaluations, remediation tracking, and audit readiness efforts.
• Incorporate security requirements into architecture, sprint planning, CI/CD processes, testing, and deployment readiness.
• Support security evaluations for VIA platform capabilities, which include data handling, access control, auditability, secure integration, and AI-enabled modernization workflows.
• Collaborate with both technical and non-technical stakeholders to convert security requirements into actionable engineering, documentation, and compliance measures.
• Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related discipline.
• Over 5 years of experience in cybersecurity engineering within federal, cloud, healthcare, or other regulated environments.
• Proficient in securing AWS cloud environments, including IAM, encryption, logging, monitoring, network security, and vulnerability management.
• Practical experience with AWS security services such as Security Hub, GuardDuty, CloudWatch, CloudTrail, Inspector, AWS Network Firewall, or similar tools.
• Background in supporting RMF, ATO, continuous monitoring, risk management, and federal compliance efforts.
• Familiarity with eMASS, ServiceNow GRC, or other risk management and authorization systems.
• Experience in developing or assisting with SSPs, POA&Ms, SOPs, control narratives, risk assessments, evidence packages, and remediation plans.
• Understanding of NIST RMF, NIST SP 800-53 controls, FISMA, FedRAMP, Zero Trust, and federal cybersecurity regulations.
• Knowledge of DISA STIGs, secure configuration baselines, system hardening, and vulnerability remediation procedures.
• Acquainted with DevSecOps, secure SDLC practices, automated security scanning, CI/CD security, and environment hardening.
• Strong communication, documentation, analytical, and problem-solving abilities.
• Comprehensive benefits that will provide options to meet employee and family needs.
Lime
Threatscape
GFT Technologies
BeyondTrust
Get handpicked remote jobs straight to your inbox weekly.