
Cybersecurity Engineer – Classified Infrastructure
Istari
full-time
Posted on:
Location Type: Remote
Location: United States
Visit company websiteExplore more
Salary
💰 $116,000 - $174,000 per year
Tech Stack
About the role
- Deploy and secure Istari’s platform in SIPR, JWICS, and air-gapped environments
- Implement and validate DISA STIGs
- Implement and validate NIST 800-53 / 800-171 controls
- Perform hands-on security work, including System hardening (Windows & Linux)
- Conduct Vulnerability scanning (ACAS/Nessus)
- Perform STIG validation and remediation
- Manage POA&M
- Design, configure, or support secure network architectures, including segmentation, boundary defense, and routing in classified environments
- Troubleshoot and resolve security configuration issues
- Address connectivity and compliance blockers
- Work directly with customer security teams (ISSO, ISSM, AO, SCA)
- Collaborate with program and infrastructure teams
- Provide feedback to engineering on real-world deployment constraints and security improvements
Requirements
- Active TS clearance with SCI eligibility
- Security+ (required) — CISSP, CISM, or CASP+ preferred
- 4+ years of hands-on experience in cybersecurity, system administration, or network engineering
- Direct experience with NIST 800-53 / 800-171
- Direct experience with DISA STIGs
- Experience operating in Classified environments (SIPR, JWICS, SAP)
- Strong experience securing Windows and/or Linux systems
- Hands-on System Patching, STIG implementation and validation
- Experience running scans, remediating findings, and managing POA&Ms
- Experience designing or supporting Secure network architectures in classified environments
- Knowledge of Network segmentation, boundary defense, and secure connectivity
- Familiarity with STIGs for network devices and infrastructure
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cybersecuritysystem administrationnetwork engineeringsystem hardeningvulnerability scanningSTIG validationsystem patchingnetwork segmentationboundary defensesecure connectivity
Soft Skills
collaborationtroubleshootingproblem-solvingcommunicationfeedback provision
Certifications
Security+CISSPCISMCASP+