Cybersecurity Assessment Engineer

🕒 July 17

⛰️ Colorado, District of Columbia, +5 more states – Remote

infoinfo

💵 $125k - $140k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 22%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Second Front Systems

Second Front Systems

51 - 200 employees

☁️ SaaS

🎖️ Defense

🏛️ Government

SaaS • Defense • Government

Second Front Systems is a public-benefit, venture-backed company that provides mission-critical software solutions primarily to democracies around the world. Their product suite, which includes the 2F Suite, 2F Workshop, 2F Game Warden, and 2F Frontier, simplifies and accelerates the software development and delivery process. The company is trusted by leading software providers and government agencies for its secure DevSecOps solutions, enabling secure software deployment on classified and unclassified networks. Their offerings include tools for secure development, software accreditation, government cloud hosting, and edge deployment, particularly focused on supporting government and defense sectors. Second Front Systems collaborates with partners to make emerging technologies more accessible, accelerating the accreditation and compliance processes and offering solutions that can operate in remote or disconnected environments, such as drones and vehicles.

📋 Description

• Review web application artifacts of customer developed applications and provide customer feedback • Primary face of the cybersecurity team to software development and mission success teams • Assist with incident response plans to respond to application outages or downtime • Technical Security Validation: Conduct comprehensive assessments of cloud infrastructure, applications, and containerized environments to verify compliance with DISA STIGs, SRGs, and CIS Benchmarks. • Authorization Lifecycle Management: Author, review, and maintain high-quality security artifacts, including System Security Plans (SSP), Security Assessment Plans (SAP), and Security Assessment Reports (SAR). • Continuous Monitoring (ConMon): Monitor and report on the ongoing effectiveness of security controls, ensuring the platform maintains a robust and authorized security posture. • Vulnerability & Risk Analysis: Utilize automated scanning suites (e.g., Anchore, Trivy, Tenable) to identify vulnerabilities, distinguish true positives, and provide actionable remediation guidance to dev teams. • Supply Chain Security: Implement and manage technical workflows for SBOMs (Software Bill of Materials) to support modern, continuous authorization standards. • Cross-Functional Collaboration: Partner with DevOps and Software Engineering teams to translate complex NIST 800-53 controls into implementable technical requirements.

🎯 Requirements

• Experience solving complex and sometimes ill-defined problems • Intermediate knowledge of DevSecOps tools and software development • Ability to create and implement incident response plans • Background in cybersecurity and understanding of vulnerability risk analysis • Hands-on experience assessing or securing services within AWS, Azure, or GCP, particularly within PaaS or Kubernetes-based environments. • Proficient knowledge of NIST SP 800-37 (RMF) and NIST SP 800-53 rev 5 security controls • Deep understanding of the FedRAMP authorization process and Department of Defense (DoD) security standards. • 3-5 years of relevant experience • Ability to attain DOD 8570 Baseline Certification for IAT II within 6 months of hire date (preferably CYSA+)

🏖️ Benefits

• Competitive Salary • 100% Healthcare, vision and dental coverage • 401(k) + 3% company contribution • Wellness perks (Fitness classes, mental health resources) • Equity incentive plan • Tech + office supplies stipend • Annual professional development stipend • Flexible paid time off + federal holidays off • Parental leave • Work from anywhere • Referral Bonus

Apply Now

Similar Jobs

🕒 July 17

KBR, Inc.

10,000+ employees

💼 Consulting

🎖️ Defense

📦 Logistics

Associate Security Engineer providing hands-on support for identity security services in a global cybersecurity organization. Collaborating with teams on identity management and security technologies.

🇺🇸 United States – Remote

⏰ Full Time

🟢 Junior

🟡 Mid-level

👮‍♂️ Cybersecurity / Security Engineer

🕒 July 17

Incredible Health

51 - 200

🏥 Healthcare

💼 Consulting

⚕️ Healthcare Insurance

IT/Security Engineer managing compliance and security practices for Incredible Health, a healthcare career marketplace. Driving audits, managing security tests, and ensuring vendor compliance.

AWS

Cloud

Heroku

🕒 July 17

North

1001 - 5000

💼 Consulting

🏥 Healthcare

📦 Logistics

Corporate Counsel managing in-house legal responsibilities for product, privacy, cybersecurity, and AI at North. Supporting legal team on compliance while working with various business functions.

🕒 July 16

CACI International Inc

10,000+ employees

🎖️ Defense

🏛️ Government

🔒 Cybersecurity

Cloud Security Specialist defending multi-level security ecosystem on Google Cloud Platform. Ensuring security posture, threat detection, and incident response for SOCEUR operations.

🇺🇸 United States – Remote

💵 $105.1k - $231.1k / year

🔥 Funding within the last year

💰 $500M Post-IPO Debt on 2026-02

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🕒 July 16

CACI International Inc

10,000+ employees

🎖️ Defense

🏛️ Government

🔒 Cybersecurity

Cyber Security Architect leading cloud security efforts at CACI. Focused on designing secure architectures and mentorship in GCP environments.

🇺🇸 United States – Remote

💵 $105.1k - $231.1k / year

🔥 Funding within the last year

💰 $500M Post-IPO Debt on 2026-02

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer