Cybersecurity Engineer - Clearance Required
Listed on 2026-07-13
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Overview
We’re looking for a Cybersecurity Engineer to support the secure deployment and continuous authorization of Iron Sled, an enterprise Platform as a Service built for federal missions. You’ll join a small, high-visibility team and own the security work that lets Iron Sled reach production, maintaining the ATO posture, driving vulnerability management, and partnering with cyber stakeholders to keep the platform compliant as it evolves.
This is hands‑on cyber engineering, not paper compliance. You’ll work alongside platform engineers, ISSOs, and the security team to harden deployments, validate controls, and resolve findings against real systems. If you want to do federal cybersecurity in an environment that ships fast and treats security as part of the product, keep reading.
Iron Sled is LMI’s Dev Sec Ops platform that serves as the central hub for all software development projects. Iron Sled allows internal and external users to set up development environments with just a few clicks.
ResponsibilitiesWhat You’ll Do
- Lead Risk Management Framework (RMF) activities for the LIGER deployment, including system categorization, control selection and tailoring, implementation, assessment, and continuous monitoring.
- Own and maintain authorization artifacts:
System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), Plan of Action and Milestones (POA&M), and supporting documentation aligned to DHS requirements. - Coordinate directly with ISSOs, Authorizing Officials, and cyber working groups to advance ATO and continuous authorization activities.
- Interpret NIST 800‑53 controls in the context of the LIGER platform and translate them into actionable engineering requirements.
- Run and review vulnerability scans across CI/CD pipelines and runtime environments, triage findings, and drive remediation through the engineering team.
- Validate secure configurations and hardening baselines (e.g., CIS Benchmarks, DISA STIGs) on containers, hosts, and cloud resources.
- Partner with platform engineers on cloud and container security in AWS Gov Cloud, including IAM, network controls, secrets management, logging, and runtime protection.
- Develop and maintain security policies, procedures, and standard operating procedures (SOPs) specific to LIGER on customer infrastructure.
- Track audit findings, remediation actions, and POA&M items to closure.
- Support FedRAMP‑aligned control implementation and inheritance where applicable.
- Advise senior LIGER leadership on system risk levels, control effectiveness, and emerging compliance considerations for AI/LLM systems in federal environments.
What We’re Looking For
- Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or a related field.
- 5+ years of experience designing, implementing, and monitoring cybersecurity solutions in federal environments.
- 5+ years of hands‑on RMF experience, including ATO development and continuous monitoring against NIST 800‑53.
- CISSP, CISM, or equivalent senior‑level cybersecurity certification.
- Experience securing LLM, GenAI, or agentic AI systems, including data handling, prompt and tool‑call risk, and model output controls.
- Strong working knowledge of cloud security, particularly AWS, with experience in Gov Cloud or similar high‑compliance environments.
- Experience with vulnerability management workflows: scanning, triage, remediation tracking, and reporting.
- Experience hardening systems against secure baselines such as CIS Benchmarks or DISA STIGs.
- Familiarity with secure software development practices: secrets management, access control, auditability, and CI/CD pipeline security.
- Strong written communication skills, including the ability to produce ATO artifacts that hold up to assessor and AO review.
- Ability to translate compliance requirements into specific engineering work and partner closely with developers.
What Will Set You Apart
- Direct experience supporting ATO or continuous authorization for systems hosted at DHS, or another DHS component.
- Familiarity with DHS 4300A and cybersecurity policies and processes.
- FedRAMP readiness or assessment experience (Moderate or High).
- Hands‑on container and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).