{"schemaVersion":"jobsearcher.job.v1","id":"28a6cae3971bc7b010bfd5a2","url":"https://jobsearcher.com/jobs/28a6cae3971bc7b010bfd5a2","canonicalUrl":"https://jobsearcher.com/jobs/28a6cae3971bc7b010bfd5a2","title":"Senior DevSecOps Cybersecurity Engineer","description":"Title:\nSenior DevSecOps Cybersecurity Engineer\nBelong. Connect. Grow. with KBR!\nKBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country’s most critical role – protecting our national security.\nKBR is seeking a motivated and experienced Senior DevSecOps Cybersecurity Engineer to join our team. The primary work locations are El Segundo, CA and Colorado Spring, CO, but work-from-home flexibility is available. This role serves as a senior cybersecurity practitioner embedded within Agile and DevSecOps development teams responsible for delivering capabilities into government-owned production environments operating at IL5 and IL6.\nThe Cybersecurity Engineer will work closely with software developers, cloud engineers, mission owners, systems engineers, Information System Security Managers (ISSMs), Authorizing Officials (AOs), and government cybersecurity personnel to ensure software releases meet security, compliance, and operational requirements.\nThe position requires deep expertise in RMF implementation, vulnerability management, CVE assessment and remediation, secure deployment methodologies, and cybersecurity activities necessary to support Authority to Operate (ATO) accredited environments.\nThe successful candidate must be capable of explaining cybersecurity risk to both technical and non-technical stakeholders, developing mitigation strategies for identified vulnerabilities, and ensuring mission capabilities can be rapidly and securely deployed into operational environments.\nThis role is a senior cybersecurity and RMF expert embedded within DevSecOps software delivery teams responsible for enabling secure deployment of mission capabilities into accredited IL5 and IL6 production environments. The emphasis is on CVE analysis and remediation, RMF execution, cybersecurity documentation, deployment approval activities, security compliance, and effective communication of cyber risk to government stakeholders while enabling rapid and secure mission capability delivery.\nKBR (formerly LinQuest) is the prime contractor on the Military Satellite Communications (MILSATCOM) Systems Engineering, Integration and Test (MSEIT) contract. The MSEIT effort provides leading-edge Systems Engineering & Integration (SE&I) for the United States Space Force’s (USSF) Space Systems Command (SSC). We acquire state-of-the-art Military and Commercial Satellite Communications (SATCOM) systems, providing global, secure, survivable, and protected communications for our nation’s warfighters. We seek technical individuals who will thrive in a highly collaborative work environment of small teams, using the most modern tools and methodologies to tackle the challenges of integrating complex space and ground communications systems.\nWhy Join Us?\nInnovative Projects: KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.\nCollaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.\nImpactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.\nWork Environment:\nLocation: El Segundo, CA or Colorado Springs, CO (work-from-home flexibility with on-site support as required)\nTravel Requirements: Minimal\nWorking Hours: Standard\nResponsibilities\nCybersecurity Engineering\nServe as the primary cybersecurity engineering lead supporting DevSecOps software delivery efforts.\nProvide cybersecurity guidance throughout the software development lifecycle from design through production deployment.\nEvaluate system architectures, software components, and deployment pipelines for compliance with DoD and Department of the Air Force cybersecurity requirements.\nPartner with development, platform, cloud, and infrastructure teams to ensure security is integrated into all phases of delivery.\nCVE Analysis & Remediation\nAssess Common Vulnerabilities and Exposures (CVEs) identified through automated scanning, security testing, and cybersecurity reviews.\nAnalyze operational impact, exploitability, mission risk, and remediation options for vulnerabilities affecting mission systems.\nDevelop mitigation strategies and Plans of Action and Milestones (POA&M) recommendations when immediate remediation is not feasible.\nProvide technical justification and risk-based explanations to government stakeholders regarding vulnerability disposition decisions.\nSupport vulnerability review boards and release decisions for software entering production environments.\nRMF & Compliance\nSupport Risk Management Framework (RMF) activities across development, test, staging, and production environments.\nAssist with implementation and maintenance of NIST 800-53 security controls.\nDevelop and maintain cybersecurity artifacts required to support system authorization and continuous monitoring activities.\nPrepare material supporting cybersecurity assessments, authorization reviews, and package updates.\nAssist with security control assessments and remediation activities associated with authorization findings.\nSecure Deployment & Operations\nSupport secure software release processes into IL5 and IL6 production environments.\nCollaborate with DevSecOps teams to establish compliant deployment methodologies and release procedures.\nValidate cybersecurity readiness prior to production deployments and major software releases.\nReview security impacts of infrastructure, software, and configuration changes.\nEnsure application, container, platform, and infrastructure security requirements are met prior to deployment.\nSecurity Documentation & Readiness Activities\nSupport development and maintenance of cybersecurity documentation including Cybersecurity Strategies (CSS), System Security Plans (SSPs), authorization package artifacts, and supporting cybersecurity documentation.\nParticipate in Cyber Vulnerability Identification (CVI) events, cybersecurity assessments, security audits, and remediation activities.\nSupport Continuity of Operations (COOP) planning, tabletop exercises, incident response activities, and operational readiness events.\nAssist mission teams in preparing for cybersecurity inspections, compliance reviews, and authorization activities.\nCoordinate with government cybersecurity organizations to ensure documentation remains current and audit-ready.\nStakeholder Collaboration\nInterface directly with government cybersecurity personnel, ISSMs, ISSOs, Authorizing Officials, mission owners, and engineering teams.\nCommunicate cybersecurity risks, mitigation options, and deployment recommendations to leadership and operational stakeholders.\nSupport Agile ceremonies, release planning events, architecture reviews, and technical working groups.\nProvide cybersecurity guidance to software teams on secure coding, vulnerability remediation, and release readiness.\nRequired:\nAble to obtain and maintain a DoD Secret clearance\nBachelor's degree in engineering, computer science, information systems, cybersecurity or related technical field\n7+ years of cybersecurity, information assurance, DevSecOps, system security engineering, or related defense experience\nExtensive experience implementing and supporting the Risk Management Framework (RMF)\nStrong understanding of NIST 800-53 security controls and DoD cybersecurity policies\nDemonstrated experience evaluating, explaining, mitigating, and remediating Common Vulnerabilities and Exposures (CVEs)\nExperience supporting software deployments within accredited government production environments\nStrong understanding of IL5 and IL6 cloud environments and associated cybersecurity requirements\nExperience supporting ATO and continuous monitoring activities\nExperience working directly with government cybersecurity organizations and mission stakeholders\nAbility to communicate technical cybersecurity issues to both technical and executive audiences\nStrong written communication skills supporting cybersecurity documentation, risk acceptance packages, and authorization artifacts\nPreferred:\nActive DoD Secret clearance or higher\nMaster’s degree in engineering, computer science, information systems, cybersecurity or related technical field\nExperience supporting Space Systems Command (SSC), Space Operations Command (SpOC), U.S. Space Force, or other DoD space organizations.\nExperience supporting operational systems accredited under RMF within classified environments.\nFamiliarity with Platform One, Cloud One, Kubernetes, Iron Bank, Big Bang, and related DoD DevSecOps ecosystems.\nExperience supporting Authority to Operate (ATO) and Continuous Authorization to Operate (cATO) initiatives.\nKnowledge of Secure Software Development Framework (SSDF) and modern DevSecOps pipelines.\nExperience supporting Cybersecurity Strategies (CSS), Cyber Vulnerability Identification (CVI) events, cybersecurity inspections, and COOP tabletop exercises.\nExperience with STIG implementation, SCAP compliance, ACAS, Nessus, Fortify, SonarQube, Snyk, Prisma Cloud, Twistlock, or similar security tooling.\nSecurity certifications such as CISSP, CASP+, Security+, CISM, CCSP, or GIAC certifications.\nExperience supporting mission-critical systems deployed in classified cloud environments.\nExperience supporting software modernization efforts within U.S. Space Force programs.\nFamiliarity with SATCOM, space operations, command and control systems, mission planning systems, or enterprise management platforms.\nExperience implementing Zero Trust architectures within DoD environments.\nExperience balancing mission delivery timelines with cybersecurity compliance requirements in operational production systems.\nExperience supporting large-scale software factories or government-managed production environments.\nCertifications such as CISSP, CompTIA Security+\nCertifications such as INCOSE CSEP or ESEP\nBasic Compensation: $149,000-$186,000 in El Segundo, CA\nThe offered rate will be based on the selected candidate’s knowledge, skills, abilities and/or experience and in consideration of internal parity.\nReady to Make a Difference? If you’re excited about making a significant impact in the field of space defense and working on projects that matter, we encourage you to apply and join our team.\nKBR Benefits\nKBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development.\nBelong, Connect and Grow at KBR\n\nAt KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver – Together.\nKBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.","company":"KBR","rawCompany":"kbr066162f8","city":"El Segundo","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-08-03T20:14:19.308Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior DevSecOps Cybersecurity Engineer","description":"Title:\nSenior DevSecOps Cybersecurity Engineer\nBelong. Connect. Grow. with KBR!\nKBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country’s most critical role – protecting our national security.\nKBR is seeking a motivated and experienced Senior DevSecOps Cybersecurity Engineer to join our team. The primary work locations are El Segundo, CA and Colorado Spring, CO, but work-from-home flexibility is available. This role serves as a senior cybersecurity practitioner embedded within Agile and DevSecOps development teams responsible for delivering capabilities into government-owned production environments operating at IL5 and IL6.\nThe Cybersecurity Engineer will work closely with software developers, cloud engineers, mission owners, systems engineers, Information System Security Managers (ISSMs), Authorizing Officials (AOs), and government cybersecurity personnel to ensure software releases meet security, compliance, and operational requirements.\nThe position requires deep expertise in RMF implementation, vulnerability management, CVE assessment and remediation, secure deployment methodologies, and cybersecurity activities necessary to support Authority to Operate (ATO) accredited environments.\nThe successful candidate must be capable of explaining cybersecurity risk to both technical and non-technical stakeholders, developing mitigation strategies for identified vulnerabilities, and ensuring mission capabilities can be rapidly and securely deployed into operational environments.\nThis role is a senior cybersecurity and RMF expert embedded within DevSecOps software delivery teams responsible for enabling secure deployment of mission capabilities into accredited IL5 and IL6 production environments. The emphasis is on CVE analysis and remediation, RMF execution, cybersecurity documentation, deployment approval activities, security compliance, and effective communication of cyber risk to government stakeholders while enabling rapid and secure mission capability delivery.\nKBR (formerly LinQuest) is the prime contractor on the Military Satellite Communications (MILSATCOM) Systems Engineering, Integration and Test (MSEIT) contract. The MSEIT effort provides leading-edge Systems Engineering & Integration (SE&I) for the United States Space Force’s (USSF) Space Systems Command (SSC). We acquire state-of-the-art Military and Commercial Satellite Communications (SATCOM) systems, providing global, secure, survivable, and protected communications for our nation’s warfighters. We seek technical individuals who will thrive in a highly collaborative work environment of small teams, using the most modern tools and methodologies to tackle the challenges of integrating complex space and ground communications systems.\nWhy Join Us?\nInnovative Projects: KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.\nCollaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.\nImpactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.\nWork Environment:\nLocation: El Segundo, CA or Colorado Springs, CO (work-from-home flexibility with on-site support as required)\nTravel Requirements: Minimal\nWorking Hours: Standard\nResponsibilities\nCybersecurity Engineering\nServe as the primary cybersecurity engineering lead supporting DevSecOps software delivery efforts.\nProvide cybersecurity guidance throughout the software development lifecycle from design through production deployment.\nEvaluate system architectures, software components, and deployment pipelines for compliance with DoD and Department of the Air Force cybersecurity requirements.\nPartner with development, platform, cloud, and infrastructure teams to ensure security is integrated into all phases of delivery.\nCVE Analysis & Remediation\nAssess Common Vulnerabilities and Exposures (CVEs) identified through automated scanning, security testing, and cybersecurity reviews.\nAnalyze operational impact, exploitability, mission risk, and remediation options for vulnerabilities affecting mission systems.\nDevelop mitigation strategies and Plans of Action and Milestones (POA&M) recommendations when immediate remediation is not feasible.\nProvide technical justification and risk-based explanations to government stakeholders regarding vulnerability disposition decisions.\nSupport vulnerability review boards and release decisions for software entering production environments.\nRMF & Compliance\nSupport Risk Management Framework (RMF) activities across development, test, staging, and production environments.\nAssist with implementation and maintenance of NIST 800-53 security controls.\nDevelop and maintain cybersecurity artifacts required to support system authorization and continuous monitoring activities.\nPrepare material supporting cybersecurity assessments, authorization reviews, and package updates.\nAssist with security control assessments and remediation activities associated with authorization findings.\nSecure Deployment & Operations\nSupport secure software release processes into IL5 and IL6 production environments.\nCollaborate with DevSecOps teams to establish compliant deployment methodologies and release procedures.\nValidate cybersecurity readiness prior to production deployments and major software releases.\nReview security impacts of infrastructure, software, and configuration changes.\nEnsure application, container, platform, and infrastructure security requirements are met prior to deployment.\nSecurity Documentation & Readiness Activities\nSupport development and maintenance of cybersecurity documentation including Cybersecurity Strategies (CSS), System Security Plans (SSPs), authorization package artifacts, and supporting cybersecurity documentation.\nParticipate in Cyber Vulnerability Identification (CVI) events, cybersecurity assessments, security audits, and remediation activities.\nSupport Continuity of Operations (COOP) planning, tabletop exercises, incident response activities, and operational readiness events.\nAssist mission teams in preparing for cybersecurity inspections, compliance reviews, and authorization activities.\nCoordinate with government cybersecurity organizations to ensure documentation remains current and audit-ready.\nStakeholder Collaboration\nInterface directly with government cybersecurity personnel, ISSMs, ISSOs, Authorizing Officials, mission owners, and engineering teams.\nCommunicate cybersecurity risks, mitigation options, and deployment recommendations to leadership and operational stakeholders.\nSupport Agile ceremonies, release planning events, architecture reviews, and technical working groups.\nProvide cybersecurity guidance to software teams on secure coding, vulnerability remediation, and release readiness.\nRequired:\nAble to obtain and maintain a DoD Secret clearance\nBachelor's degree in engineering, computer science, information systems, cybersecurity or related technical field\n7+ years of cybersecurity, information assurance, DevSecOps, system security engineering, or related defense experience\nExtensive experience implementing and supporting the Risk Management Framework (RMF)\nStrong understanding of NIST 800-53 security controls and DoD cybersecurity policies\nDemonstrated experience evaluating, explaining, mitigating, and remediating Common Vulnerabilities and Exposures (CVEs)\nExperience supporting software deployments within accredited government production environments\nStrong understanding of IL5 and IL6 cloud environments and associated cybersecurity requirements\nExperience supporting ATO and continuous monitoring activities\nExperience working directly with government cybersecurity organizations and mission stakeholders\nAbility to communicate technical cybersecurity issues to both technical and executive audiences\nStrong written communication skills supporting cybersecurity documentation, risk acceptance packages, and authorization artifacts\nPreferred:\nActive DoD Secret clearance or higher\nMaster’s degree in engineering, computer science, information systems, cybersecurity or related technical field\nExperience supporting Space Systems Command (SSC), Space Operations Command (SpOC), U.S. Space Force, or other DoD space organizations.\nExperience supporting operational systems accredited under RMF within classified environments.\nFamiliarity with Platform One, Cloud One, Kubernetes, Iron Bank, Big Bang, and related DoD DevSecOps ecosystems.\nExperience supporting Authority to Operate (ATO) and Continuous Authorization to Operate (cATO) initiatives.\nKnowledge of Secure Software Development Framework (SSDF) and modern DevSecOps pipelines.\nExperience supporting Cybersecurity Strategies (CSS), Cyber Vulnerability Identification (CVI) events, cybersecurity inspections, and COOP tabletop exercises.\nExperience with STIG implementation, SCAP compliance, ACAS, Nessus, Fortify, SonarQube, Snyk, Prisma Cloud, Twistlock, or similar security tooling.\nSecurity certifications such as CISSP, CASP+, Security+, CISM, CCSP, or GIAC certifications.\nExperience supporting mission-critical systems deployed in classified cloud environments.\nExperience supporting software modernization efforts within U.S. Space Force programs.\nFamiliarity with SATCOM, space operations, command and control systems, mission planning systems, or enterprise management platforms.\nExperience implementing Zero Trust architectures within DoD environments.\nExperience balancing mission delivery timelines with cybersecurity compliance requirements in operational production systems.\nExperience supporting large-scale software factories or government-managed production environments.\nCertifications such as CISSP, CompTIA Security+\nCertifications such as INCOSE CSEP or ESEP\nBasic Compensation: $149,000-$186,000 in El Segundo, CA\nThe offered rate will be based on the selected candidate’s knowledge, skills, abilities and/or experience and in consideration of internal parity.\nReady to Make a Difference? If you’re excited about making a significant impact in the field of space defense and working on projects that matter, we encourage you to apply and join our team.\nKBR Benefits\nKBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development.\nBelong, Connect and Grow at KBR\n\nAt KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver – Together.\nKBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.","datePosted":"2026-08-03T20:14:19.308Z","dateModified":"2026-08-03T20:14:19.308Z","hiringOrganization":{"@type":"Organization","name":"KBR","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"El Segundo","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"28a6cae3971bc7b010bfd5a2"},"url":"https://jobsearcher.com/jobs/28a6cae3971bc7b010bfd5a2"}}