Cybersecurity Engineer – DevOps

🔥 0 minutes ago

🇺🇸 United States – Remote

💵 $112k - $178k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

⛑ DevOps & Site Reliability Engineer (SRE)

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Sphera

Sphera

1001 - 5000 employees

Founded 1989

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

Sphera is a leading provider of enterprise sustainability management software, data, and consulting services. It offers solutions that enable organizations in sectors like Chemicals, Oil & Gas, Industrials, and Financial Services to manage their sustainability goals effectively. Sphera's offerings include the SpheraCloud platform, which focuses on Environment, Health, Safety & Sustainability (EHS&S) management, operational compliance, and risk management. The company's software and consulting services are designed to help organizations improve their safety, mitigate risks, reduce costs, and build resilience. By providing an integrated 360-degree view of sustainability and performance management, Sphera assists companies in meeting regulatory reporting requirements and achieving their sustainability objectives.

📋 Description

• Lead cybersecurity for software deployed in secure federal and DoD environments • Execute RMF activities, including system categorization, security control selection, implementation, assessment, and ATO documentation • Implement, configure, and validate STIGs using DISA-approved or equivalent government security tooling • Mitigate OWASP Top 10 and application-layer vulnerabilities • Monitor security controls, scan vulnerabilities, and audit systems; produce reports and coordinate remediation • Manage POA&Ms and coordinate with government security stakeholders, ISSMs, and internal teams • Support FedRAMP and FISMA compliance aligned with NIST SP 800-53 Rev. 5 • Integrate security tooling and automated checks into CI/CD pipelines to advance DevSecOps maturity • Conduct threat modeling, security design reviews, and application-level security assessments • Maintain System Security Plans, security architectures, and ATO documentation packages • Lead incident response activities for security events and coordinate with customer cybersecurity personnel • Monitor SIEM alerts, analyze logs, and investigate anomalous activity • Evaluate the security posture of third-party integrations, vendor tools, and emerging technologies • Embed security requirements into sprint planning, feature development, and release processes • Track federal, DoD, DISA, and agency-specific security policy updates and communicate their impact to engineering

🎯 Requirements

• U.S. citizen required • Active DoD security clearance or ability to obtain and maintain one due to secure federal enclave access • Minimum 3-5 years of hands-on cybersecurity experience in federal, DoD or similarly regulated secure environments • Strong working knowledge of secure federal or DoD environments, including segmented networks, access control, approved software baselines, and applicable security requirements • Experience supporting or leading RMF processes, including ATO package preparation and submission for federal or DoD systems • Proficiency in applying STIGs using DISA-approved tools (SCC, STIG Viewer, Nessus/ACAS) or comparable vulnerability and compliance platforms • Solid understanding of FedRAMP Moderate and FISMA compliance, with ability to map security controls to NIST SP 800-53 Rev. 5 • Experience with vulnerability management tools such as Tenable.sc, Nessus, and ACAS in federal or DoD environments • Familiarity with enterprise security tools including SIEM, IDS/IPS, and network security controls • DevSecOps experience integrating SAST, DAST, and SCA scanning into CI/CD pipelines using Azure DevOps, Jenkins, or equivalent tools • Familiarity with PKI, CAC/PIV authentication, and certificate management in federal or DoD environments • DoD 8570/8140 compliant certification at IAT Level II or higher, such as CompTIA Security+, CISSP, CEH, or CAP • Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field, or equivalent practical experience • Experience working in segmented networks with an understanding of federal, DoD, or similarly regulated infrastructure and security requirements • Proven time management, organizational and follow-up skills to meet deadlines • Ability to work effectively, independently, and in a dynamic team environment • Excellent interpersonal skills • Willingness to learn new technologies and processes as needed

🏖️ Benefits

• Medical, Dental, and Vision Insurance • Health Savings Account • Flexible Spending Account • 401(k) Retirement Plan with Company Match • Life and Disability Insurance • Critical Illness Insurance • Accident Insurance • Hospital Indemnity Insurance • Paid Time Off and Holidays • Flexible Working Schedule • Eligible for Variable Compensation Plan

Apply Now

Similar Jobs

🔥 1 hour ago

Arista Networks

1001 - 5000

🏢 Enterprise

📡 Telecommunications

FedRAMP SRE operating Arista Networks’ Kubernetes-native CloudVision networking SaaS. Ensuring reliable, secure, scalable production systems and leading infrastructure projects.

🔥 2 hours ago

Gainwell Technologies

10,000+ employees

💼 Consulting

📦 Logistics

⚕️ Healthcare Insurance

DevOps Engineer automating configuration, releases, and cloud infrastructure for Gainwell Technologies’ healthcare platforms. Building scripts, CI processes, and infrastructure as code for SaaS and PaaS products.

🔥 2 hours ago

Gainwell Technologies

10,000+ employees

💼 Consulting

📦 Logistics

⚕️ Healthcare Insurance

DevOps Engineer automating infrastructure, configuration management, and software releases. Supporting Gainwell’s cloud-based healthcare technology platforms and development teams.

🔥 4 hours ago

Coalfire

1001 - 5000

💼 Consulting

🏥 Healthcare

📦 Logistics

Senior Site Reliability Engineer operating FedRAMP-compliant cloud environments for Coalfire, a cybersecurity consulting firm. Owning observability, automation, incident response, recovery, and compliance operations.

🔥 4 hours ago

OnePay

501 - 1000

💳 Fintech

🏦 Banking

₿ Crypto

SRE Lead building reliable infrastructure for OnePay’s consumer fintech platform. Leading senior engineers while coding, automating operations, and improving incident response.