Senior Engineer
Listed on 2026-09-30
-
IT/Tech
Cybersecurity, Cloud Computing: Infrastructure & Operations, Systems Engineer, Network Security
This is a U.S. based position. All of the programs we support require U.S. citizenship to be eligible for employment. All work must be conducted within the continental U.S.
Who we are:
Raft () is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a leader in autonomous data fusion and Agentic AI, with a purposeful focus on Distributed Data Systems, Platforms at Scale, and Complex Application Development. With headquarters in McLean, VA, our range of clients includes innovative federal and public agencies leveraging design thinking, cutting-edge tech stack, and cloud-native ecosystem.
We build digital solutions that impact the lives of millions of Americans.
About the role:
Raft is seeking a Senior Cybersecurity Engineer to support the program’s core support team. This role will help secure, operate, and continuously improve the program environment as it provides secure access to protected DoD resources across cloud environments and multiple security classifications.
You will work alongside Product, Dev Sec Ops , Site Reliability, and Software Engineering personnel to support team operations and develop security capabilities specific to the cloud platform environment.
What You’ll Do
- Maintain and improve the cybersecurity posture of the cloud platform stack across classified and unclassified environments.
- Support Authority to Operate (ATO) and continuous Authority to Operate (cATO) requirements and ensure platform changes remain aligned with the applicable DoD Reference Design and approved security baseline.
- Identify, analyze, prioritize, and remediate vulnerabilities across cloud infrastructure, Kubernetes environments, containers, applications, and supporting technologies.
- Integrate security controls and automated security testing into Dev Sec Ops and Git Ops workflows.
- Support continuous monitoring and integration with applicable DoD Cyber Service Providers.
- Develop and maintain security automation using Infrastructure as Code and Configuration as Code, including technologies such as Terraform, Ansible, Helm, Kubernetes Operators, and similar tooling.
- Ensure the use of current hardened containers from Iron Bank and support updates to platform components outside the Iron Bank/Big Bang baseline, including firewalls, Kubernetes distributions, and cloud-provider services.
- Support security capabilities associated with Zero Trust, identity, access control, PKI, authentication, authorization, ingress/egress, and micro-segmentation.
- Monitor and update access and security policies, attestations, groups, users, devices, certificates, and resource entitlements.
- Support integration with DoD PKI and Single Sign-On capabilities.
- Support and secure technologies that may include App Gate, Palo Alto firewalls, Hashi Corp Vault and Consul, Keycloak, Zeek, and RKE2/Kubernetes.
- Develop and maintain cybersecurity and accreditation documentation in support of the DoD Risk Management Framework (RMF).
- Partner with DoD teams and other stakeholders to improve security processes and accelerate secure enterprise deployments.
- Participate in Agile development processes, including backlog refinement, technical planning, implementation, testing, and delivery.
- Troubleshoot security and access issues affecting platform users and connected applications and services.
What we are looking for:
8+ years of relevant experience in cybersecurity, cloud security, cloud architecture, Dev Sec Ops , platform engineering, or a related technical discipline.
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
IAT Level III certification for security-focused personnel.
One or more relevant cloud certifications.
Secret eligibleExperience securing workloads and infrastructure within AWS, Azure, or other enterprise cloud environments; experience with AWS Gov Cloud or Azure Government is highly desirable.
Experience identifying and remediating vulnerabilities across cloud infrastructure, containers, Kubernetes, operating systems, and applications.
Experience with Infrastructure as Code / Configuration as Code, preferably Terraform, Ansible, Helm, or comparable technologies.
Understanding of Git Ops, CI/CD, and Dev Sec Ops security practices.
Experience with identity and access management, PKI, Zero Trust principles, network security, firewalls, or software‑defined perimeter technologies.
Experience with security…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).