Mid-Level Cybersecurity Assessment Specialist
Listed on 2026-05-31
-
IT/Tech
Cybersecurity, Systems Engineer
Mid-Level Cybersecurity Assessment Specialist - Millennium Space Systems
Company:
Millennium Space SystemsMillennium Space Systems, a part of Boeing Defense, Space and Security (BDS), is a fast, agile small satellite company focused on national security space. Our missions have direct impact to global security, like missile warning and Earth observation.
Our team is curious, bold and innovative. We take risks, innovate and explore new techniques and technologies. We influence change because we challenge the status quo. And when we watch our satellites launch, we know each one of us made it happen.
Job
Summary
:
TheMSS Ground Systems & Operations Organization is looking for a Mid-Level Cybersecurity Assessment Specialist to join the team in Boulder, CO.
This position involves performing adversarial security testing of the enterprise’s various Information Technology (IT) environments and penetration testingutilizing
Proof of Concept (PoC) and homegrown exploitation in addition to red teaming activities.
This individual must have strong foundational knowledge and workingproficiencyin both system administration and software development disciplines.
This position's internal job is Cyber Security Assessment Spec . Our team is currently hiring for 4.
Position Responsibilities:
Conduct application and network layer penetration tests on various IT environments
Conduct red teaming activities, including physical security penetration testing
Perform independent pen testingutilizingnumerouspenetrationtesting tools andleveragingmainly manualtechniques, typically testing willnecessitatesource code analysis
Write risk prioritized finding reports, debrief system owners and consult on remediation options
Retest security vulnerabilities that have been identified as fixed to verify remediation
Contribute to pen testing, red teaming, tooling, and reportingmethodologyenhancements
Evaluate effectiveness of defensive countermeasures and consult with blue teams to help improve detection methods and capabilitiesrequiredfor situational awareness
Perform exploitation analysis and authors exploitation tools/techniques
Experience performing
ACAS andOpenRMFcompliance scans for classified networks,identifyingweaknesses and reporting results to external organizationsExperience with secure software development lifecycle and large-scale computing environments
Experience working with Information Security principles, policies, and industry best practices including the Critical Security Controls (CIS), Open Worldwide Application Security Project (OWASP), Top 10 andMitre
Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK) frameworkExperience working with Authentication and Authorization Controls
Experience working with common server applications such as Internet Information Services (IIS), Apache, Lightweight Directory Access Protocol (LDAP), Tomcat, and Secure Shell (SSH)
Experience working with common network protocols such asHyper Text Transfer Protocol/Hyper Text Transfer Protocol Secure (HTTP/HTTPS), Transmission Control Protocol/Internet Protocol (TCP/IP), and User Diagram Protocol (UDP)
Basic Qualifications (Required Skills/Experience):
This position requires an active U.S. Top Secret Security Clearance with SCI eligibility (U.S. Citizenship Required). (A U.S. Security Clearance that has been active in the past 24 months is considered active)
Bachelors degree in engineering or related technical discipline and typically 9 or more years' related work experience or an equivalent combination of technical education and experience
9 or more years' experience working in Cybersecurity enclaves
Minimum 1 year of experience working in ISSO role
Preferred Qualifications (Desired Skills/Experience):
3 years' experience as an ISSM
At least 2 years working as ISSE across multiple bases and systems for civil engineering
Expertise in Risk Management Framework (RMF)
Experience with Security Authorization (ATO) process and Program Protection Plans (PPP/PPIP)
Experience performing Criticality Analysis
Experience with programming experience in Python, PHP, Perl, Ruby, .NET, or other interpreted or compiled languages
Experience in penetrating testing and vulnerability…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).