Cyber Security Engineer (Jr-Sr)

aqua IT

St Louis, Missouri

JOB DETAILS
SKILLS
Agile Programming Methodologies, Analysis Skills, Atlassian JIRA, Big Data, CISSP - Certified Information Systems Security Professional, CentOS, Change Control, Cloud Computing, Communication Skills, CompTIA Security+, Computer Security, Configuration Management, DoD Directive 8140, DoD Directive 8570, Documentation, IAT - Information Assurance Technical, Incident Response, Internet Application, Internet Security, Leadership, Linux Operating System, Maintain Compliance, Microsoft Windows Operating System, Operations Security (OPSEC), Publications, Python Programming/Scripting Language, React.js, Red Hat Linux Operating System, Risk, Risk Management, Scripting (Scripting Languages), Security Analysis, Security Attacks, Security Monitoring, Sensitive Compartmented Information (SCI), Software Engineering, Software Patches, System Lifecycle, Systems Administration/Management, Systems Analysis, Systems Engineering, Team Player, Top Secret Clearance, U.S. National Institute of Standards and Technology (NIST), United States Citizen, United States Department of Defense (DoD)
LOCATION
St Louis, Missouri
POSTED
7 days ago

Overview: We have several openings at multiple levels (Jr-Sr). This role focuses on cybersecurity engineering, risk management, and compliance across cloud and on-prem systems, supporting system authorization, vulnerability management, and secure operations in classified environments.

 

Responsibilities

  • Applying RMF processes to support system Assessment & Authorization (A&A), including control selection, implementation, assessment, and continuous monitoring
  • Developing, reviewing, and maintaining security documentation such as SSPs, POA&Ms, SARs, and ATO artifacts in tools such as XACTA or eMASS
  • Conducting vulnerability assessments and compliance scans (e.g., ACAS) and tracking remediation of findings and IAVM requirements
  • Implementing and validating security controls aligned with NIST 800-53, CNSSI 1253, and related DoD guidance
  • Supporting system hardening, patching, and configuration management in compliance with STIGs for Linux, Windows, and network devices
  • Monitoring systems for security events and supporting incident response and risk mitigation activities
  • Assessing security impacts of system changes and supporting configuration control boards (CCBs)
  • Collaborating with system engineers, administrators, and DevSecOps teams to integrate security throughout the system lifecycle
  • Providing cybersecurity risk input to program leadership, Authorizing Officials (AOs), and stakeholders

 

Requirements:

  • US citizenship with Active or Current TS/SCI clearance
  • Bachelor’s degree with 5+ years of experience (or equivalent experience)
  • DoD 8570 IAT Level II or higher certification (e.g., Security+, CySA+, CISSP)
  • Experience with RMF, A\&A, POA\&M, and ATO documentation (XACTA/eMASS)
  • Hands-on vulnerability scanning and compliance tracking (ACAS, IAVM)
  • Experience securing Linux and Windows systems, STIGs, patching, and system hardening
  • Knowledge of NIST 800-series publications and incident response processes
  • Strong analytical, communication, and collaboration skills

 

Preferred Qualifications:

  • Scripting or development experience (Python, Java, React)
  • DevSecOps tools and pipeline experience
  • Experience with Linux (Red Hat/CentOS), databases, web apps, or big data platforms
  • Familiarity with Agile environments and tools (Jira, Confluence)
  • Experience with NIST SP 800-171 and System Security Engineering (SSE)

About the Company

a

aqua IT