{"schemaVersion":"jobsearcher.job.v1","id":"1085ff6cd4ca0d3dfd2172c7","url":"https://jobsearcher.com/jobs/1085ff6cd4ca0d3dfd2172c7","canonicalUrl":"https://jobsearcher.com/jobs/1085ff6cd4ca0d3dfd2172c7","title":"Sr Cyber Security Engineer","description":"Overview\nIn this role you bridge compliance and engineering to build secure systems end-to-end. You own the cybersecurity workstream, driving RMF ATO and federal certifications while embedding security automation into CI/CD. You collaborate with backend and frontend engineers to harden a microservices architecture and proactively close security gaps. You translate technical findings for leadership and report program status and risk. This is a hands-on, impact-focused position with a clear mission to strengthen security across the platform.\n\nResponsibilitiesOwn the cybersecurity program end-to-end from gap identification to implementation trackingReport cyber risk posture and remediation progress to leadershipDefine and maintain the cybersecurity requirements backlog and progress cadenceLead RMF process to achieve and maintain ATO for the platformImplement controls per NIST SP 800-53 and DoD STIGs/SRGsGenerate artifacts for eMASS (SSP, POAM, SAR)Conduct vulnerability self-assessments using ACAS (Nessus) and SCCIntegrate SAST/DAST into GitLab/GitHub CI/CD pipelinesDevelop scripts (Python, Bash, Ansible) for Linux patching/configuration managementImplement Container Security scanning for Docker/KubernetesEnforce Security as Code with Terraform or HelmRemediate vulnerabilities and harden configurations (SSH, libraries, NGINX)Harden APIs/microservices with secure auth (OAuth2/JWT/mTLS) and encryption (FIPS 140-2)Respond to zero-days with rapid hotfixesConduct threat modeling with engineering teamsDesign secure logging/auditing pipelines (ELK/Splunk)Advise on secure architecture for third-party sensors and IoTWork in remote, flexible hours with occasional extended/weekend hoursOther duties as assigned\nKey requirements8+ years in Cyber Security Engineering or DevSecOpsProven track record achieving DoD/Federal ATOHands-on RMF, NIST 800-53, and DISA STIGsScripting in Python, Bash for automationExperience with vulnerability scanners (ACAS/Nessus, Burp Suite, SonarQube)Linux security expertise (SELinux, iptables, hardening)CI/CD tools experience (GitLab CI, Jenkins) and Container Security (Docker/K8s)Ability to work autonomously and drive design decisions to completionExperience communicating technical findings to executive leadershipOwnership over requirements definition and progress reporting for cyber workstreamsCISSP, CASP+, or Security+ CE (Required)Active Secret Security Clearancestrong communication with leadershipautonomous and proactivethreat modeling and collaboration with engineering teamsPythonBashAnsible","company":"Constellis","rawCompany":"constellis","city":"Duluth","state":"MN","isRemote":false,"isActive":false,"createdAt":"2026-09-15T03:47:14.745Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Sr Cyber Security Engineer","description":"Overview\nIn this role you bridge compliance and engineering to build secure systems end-to-end. You own the cybersecurity workstream, driving RMF ATO and federal certifications while embedding security automation into CI/CD. You collaborate with backend and frontend engineers to harden a microservices architecture and proactively close security gaps. You translate technical findings for leadership and report program status and risk. This is a hands-on, impact-focused position with a clear mission to strengthen security across the platform.\n\nResponsibilitiesOwn the cybersecurity program end-to-end from gap identification to implementation trackingReport cyber risk posture and remediation progress to leadershipDefine and maintain the cybersecurity requirements backlog and progress cadenceLead RMF process to achieve and maintain ATO for the platformImplement controls per NIST SP 800-53 and DoD STIGs/SRGsGenerate artifacts for eMASS (SSP, POAM, SAR)Conduct vulnerability self-assessments using ACAS (Nessus) and SCCIntegrate SAST/DAST into GitLab/GitHub CI/CD pipelinesDevelop scripts (Python, Bash, Ansible) for Linux patching/configuration managementImplement Container Security scanning for Docker/KubernetesEnforce Security as Code with Terraform or HelmRemediate vulnerabilities and harden configurations (SSH, libraries, NGINX)Harden APIs/microservices with secure auth (OAuth2/JWT/mTLS) and encryption (FIPS 140-2)Respond to zero-days with rapid hotfixesConduct threat modeling with engineering teamsDesign secure logging/auditing pipelines (ELK/Splunk)Advise on secure architecture for third-party sensors and IoTWork in remote, flexible hours with occasional extended/weekend hoursOther duties as assigned\nKey requirements8+ years in Cyber Security Engineering or DevSecOpsProven track record achieving DoD/Federal ATOHands-on RMF, NIST 800-53, and DISA STIGsScripting in Python, Bash for automationExperience with vulnerability scanners (ACAS/Nessus, Burp Suite, SonarQube)Linux security expertise (SELinux, iptables, hardening)CI/CD tools experience (GitLab CI, Jenkins) and Container Security (Docker/K8s)Ability to work autonomously and drive design decisions to completionExperience communicating technical findings to executive leadershipOwnership over requirements definition and progress reporting for cyber workstreamsCISSP, CASP+, or Security+ CE (Required)Active Secret Security Clearancestrong communication with leadershipautonomous and proactivethreat modeling and collaboration with engineering teamsPythonBashAnsible","datePosted":"2026-09-15T03:47:14.745Z","dateModified":"2026-09-15T03:47:14.745Z","hiringOrganization":{"@type":"Organization","name":"Constellis","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Duluth","addressRegion":"MN","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"1085ff6cd4ca0d3dfd2172c7"},"url":"https://jobsearcher.com/jobs/1085ff6cd4ca0d3dfd2172c7"}}