Salary
💰 $110,000 - $125,000 per year
About the role
- Sigma Defense is seeking a Mid-Level Cybersecurity Engineer to interface between DevSecOps Engineers and the client cybersecurity team
- Support DevSecOps and Software Engineers in developing secure platforms and effectively communicating the risk posture of the platform
- Establish communication mechanisms and regularly meet virtually with customer points of contact
- Work with the customer's cybersecurity team to resolve comments and submit cybersecurity Change Requests using customer procedures and templates
- Provide evidentiary artifacts of scanning/reporting/remediation for container images and contribute to container governance policy development (configuration management and vulnerability management)
- Evaluate risk for applications based on the customer's network security plan
- Evaluate compliance with the Application Security and Development STIG for software assets and environments including Classified/Unclassified Applications, Container Orchestration Platform, Gitlab, Jira, Confluence, SonarQube, and Artifactory
Requirements
- 2-5 years of relevant experience
- Knowledge of DoD Cybersecurity Risk Management Framework and Requirements
- Experience developing and implementing security into infrastructure, platforms, or software
- Experience applying CNSSI 1253 and NIST SP 800 series standards
- Experience with DISA Security Technical Implementation Guides (STIG)
- Understanding of Cybersecurity threats and countermeasures
- Experience with web-based Assessment and Authorization platforms (eMASS, Xacta, Archer)
- Experience using Visio and StigViewer
- Ability to work independently within a cross-functional team
- Must be a U.S. Citizen
- Candidate must possess or have the ability to obtain an active Top Secret security clearance or higher (clearance will be sponsored for the right candidate)
- Bachelor’s degree in Cybersecurity or related field of study