×
Register Here to Apply for Jobs or Post Jobs. X

Cyber Security Engineer III

Job in Denver, Denver County, Colorado, 80285, USA
Listing for: Cherokee Federal
Full Time position
Listed on 2026-09-12
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, Systems Engineer
Salary/Wage Range or Industry Benchmark: 100000 - 150000 USD Yearly USD 100000.00 150000.00 YEAR
Job Description & How to Apply Below

Cyber Security Engineer III

The Cyber Security Engineer III supports Reclamation IT systems and performs security and privacy tasks aligned toNIST SP 800-37 Rev. 2 (RMF) and task order requirements. Work is executed during the period of performance and is reviewedweeklyfor completeness of tasks and objectives. The ISSO receives direct or indirect technical direction from theCOR and/or TSAL. The ISSO produces and maintains government-required cybersecurity and privacy documentation, keeps system records current in the Bison GRC tool(and other designated repositories), and communicates clearly in English using Reclamation-approved terms and formats.

All deliverables are Government property and are stored electronically on designated network drives.

Compensation & Benefits:

Estimated Starting Salary Range for Cyber Security Engineer III: TBD

Pay commensurate with experience.

  • Full time benefits include Medical, Dental, Vision, 401K and other possible benefits as provided.
  • Benefits are subject to change with or without notice.
Cyber Security Engineer III

Responsibilities Include:
  • Maintain the operational cybersecurity posture for assigned IT systems and advise system owners and the Enterprise ISSM on risk, changes, and security status.
  • Execute RMF/ATO (A&A) activities for assigned systems, including required documentation, assessments, and ongoing compliance tasks.
  • Develop, update, and maintain the System Security and Privacy Plan (SSPP) and all supporting artifacts, to include (as applicable): configuration management, contingency planning and after-action reporting, continuous monitoring, incident response plans/contact lists and after-action reporting, interconnection security agreements, POA&Ms, privacy artifacts (PTA/PIA), risk assessments, control baselines and inheritance, security/business impact analyses, control implementation statements, technical/system narratives, inventories, network/system boundary diagrams, supply chain risk management documentation, and SaaS attestations/workbooks.
  • Perform continuous monitoring of security controls, including tracking Reclamation-defined metrics, reviewing audit logs, identifying/responding to vulnerabilities, and addressing Organizational Assessment (OA) metrics.
  • Conduct technical vulnerability assessments; prioritize, track, and validate remediation activities with technical teams.
  • Manage thePOA&Mlifecycle: create POA&Ms for newly identified weaknesses, coordinate milestones/dates with technical staff, and update POA&Ms in Bison GRC(at least monthly for audit-related POA&Ms and quarterly for all others). Collect evidence and completeWCVFswhen closing POA&Ms or pursuing risk acceptance.
  • Support and participate in incident response activities for assigned systems.
  • Participate in contingency, recovery, and incident response training and tests; produce/maintain related evidence and after-action documentation.
  • Perform cybersecurity impact analysis for system changes and support change controlby reviewing change requests, identifying security impacts, approving/denying as required, ensuring procedures are followed, and updating hardware/software inventories.
  • Conduct cybersecurity impact reviews fornew software requests.
  • Execute annual assurance/assessment tasks: update FISMA/RMF documentation on required schedules, perform Internal Control Reviews (ICRs), and ensure control tailoring remains aligned with the applicable baseline.
  • Participate in security assessments and audits; provide required access, documentation, and system information to assessors/auditors.
  • Develop and maintain system standard operating procedures (SOPs) aligned to security control requirements.
  • Provide Quarterly Cybersecurity Briefings to System Owners for assigned systems.
  • Support federal staff…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary