Cybersecurity Engineer - Remote
Summary
Cybersecurity Engineer automating compliance verification and evidence collection, maintaining security controls and accreditation documentation for the company's technology products, with focus on NIST, FedRAMP, and DoD frameworks.
Cybersecurity Engineer - Remote
Expected Pay Rate: $ 130,000- $140,000 annually
A veteran owned full-service national security operation, Deployed Global Solutions, LLC (DGS) delivers low visibility, intelligent, agile, resilient, and secure turnkey mission solutions that are tailored to meet the global needs of our customers. At DGS, we are one team, working together to develop mission solutions – anywhere, anytime.
The Cybersecurity Engineer strengthens the security posture and compliance of the company’s technology products by implementing, monitoring, and improving security controls that align with regulatory requirements, industry standards, and customer expectations. The Cybersecurity Engineer automates compliance verification and evidence collection for the company’s products, authors security documentation required for accreditation of the company’s products and serves as the technical subject matter expert during regulatory and customer assessments of the company’s products. The Cybersecurity Engineer executes continuous monitoring and improvement of the security controls of the company technology products to maintain required certifications, authorizations, and compliance commitments.
Duties and Responsibilities / Essential Functions
- Develop and maintain processes and tools that automate security and compliance checks the company’s technology products and related systems and development environments.
- Partner with software engineering teams to implement and maintain security measures such as data protection, activity monitoring, audit logging, and multi-factor authentication.
- Ensure company technology products are securely configured and follow established security standards and best practices.
- Review vulnerability and security assessment results, prioritize risks, and coordinate remediation efforts to address identified security weaknesses in company products.
- Develop and maintain security and accreditation documentation for the company’s products, including system security plans, control summaries, remediation plans, and system diagrams.
- Document how each technical control of the company’s products is implemented in code, configuration, and architecture.
- Ensure company product security documentation remains current and up to date.
- Serve as a technical subject matter expert during external assessments of the company’s technology products by explaining system architecture, security controls, and compliance practices to assessors and authorizing officials.
- Support new company products through the assessment and authorization process and help maintain authorization through ongoing monitoring and compliance activities.
- Develop processes and tools to efficiently collect, organize, and maintain evidence demonstrating the company’s technology products’ compliance with security requirements.
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Skills and Specifications
- Scripting or programming proficiency in Python, Go, PowerShell, or Bash, with a record of automating security tasks.
- Experience with cloud provider security configurations (AWS, Azure, or GCP) and with building security gates into CI/CD pipelines (GitHub Actions, GitLab CI, or Jenkins).
- Working knowledge of mapping technical controls to NIST SP 800-53, DoD RMF, CMMC, FedRAMP, SOC 2 Type II, or ISO 27001.
- Hands-on experience with vulnerability scanners (Nessus, ACAS, or Trivy), identity and access management platforms (Active Directory, Entra ID, or Okta), and configuration management tooling.
- Ability to translate regulatory requirements into engineering tasks, and technical implementations into assessment evidence.
- Direct experience achieving or sustaining a DoD ATO, CMMC certification, or FedRAMP authorization.
- Experience with DISA STIG implementation and SCAP-based compliance scanning on Linux and Windows.
- Experience migrating an organization to automated GRC tooling (for example RegScale, Drata, or Vanta).
- Familiarity with cryptographic module validation (FIPS 140-3, CMVP/CAVP) and secure communications architectures.
- Strong verbal and written communication skills.
- Ability to work independently and as part of a collaborative team.
- Proficiency in Microsoft Office 365.
Supervisory Responsibility
This position does not require the supervision of direct reports.
Work Environment
This position operates in a professional office using standard office equipment.
Physical Demands
While performing the duties of this job, the employee is required to work for prolonged periods of time sitting at a desk and working on a computer. Lifting of up to 25 lbs. may occur.
Position Type / Expected Hours of Work
This is a full-time, salaried, exempt position. Standard days and hours are 40 hours per week, weekends and extended hours as needed. Ability to work flexible hours including nights, holidays, and weekends will be required based on business needs.
Travel
Regular travel within the Continental United States (CONUS) is required; infrequent travel Outside the Continental United States (OCONUS) is possible.
Required Education and Experience
Bachelor’s degree or equivalent professional experience in Cybersecurity, Computer Science, or a related field.
- 5+ years in software or systems engineering, softeware development / IT operations (DevOps), and cybersecurity compliance.
Work Authorization / Security Clearance
- Must have and maintain a Secret federal government security clearance with the ability to obtain a Top Secret clearance and SCI access.
- Must be authorized to work in the US.
- Must be able to travel within the Continental United States (CONUS) and Outside the Continental United States (OCONUS).
- Must successfully pass pre-employment (post offer) background check.
- Must successfully pass pre-employment (post offer) drug test and motor vehicle record review.
- Must possess a valid driver's license compliant with REAL ID requirements.
AAP / EEO Statement
Deployed Global Solutions, LLC is an Equal Opportunity and Affirmative Action Employer and prohibits discrimination and harassment of any type on the basis of actual or perceived race, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding and medical conditions related to pregnancy, childbirth or breastfeeding), gender, gender identity, and gender expression, religious creed, disability (mental and physical) including HIV and AIDS, medical condition (cancer and genetic characteristics ), genetic information, age, marital status, civil union status, sexual orientation, military and veteran status, denial of family and medical care leave, arrest record and/or any other characteristic(s) protected by federal, state or local law.
This policy applies to all terms of employment including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, training, compensation, benefits, employee activities, and general treatment during employment.
This job description is not intended to be a comprehensive list of the duties and responsibilities of the position. The duties and responsibilities of this job may change without notice.