Senior Engineer – Cybersecurity (IAM, SIEM, Cloud Security)
Raft · San Antonio
Job description
About the role
We are seeking a Senior Engineer to lead and expand our cybersecurity capabilities. The role focuses on implementing, maintaining, and testing security solutions for U.S. government and defense clients, while supporting incident response and compliance initiatives.
Key responsibilities
- Design, deploy, and manage IAM, SIEM, and IaC solutions such as Okta, Keycloak, Splunk, ELK, Terraform, Puppet, and Chef.
- Configure and maintain security tooling including vulnerability scanners, compliance scanners, SAST/DAST tools, EDR, and audit logging systems.
- Implement and monitor AWS cloud security services (CloudTrail, CloudWatch, Inspector, GuardDuty, Shield, Secrets Manager).
- Automate validation of RMF/NIST 800‑53 controls in container and VM images.
- Secure and harden Linux virtual machines and containers, applying DISA STIGs and SRGs.
- Integrate security tools into CI/CD pipelines using GitLab and enforce DevSecOps practices.
- Conduct security testing, threat modeling, and incident response activities.
- Maintain security documentation such as SBOMs, PPS lists, data‑flow diagrams, and System Security Plans.
Required profile
- U.S. citizenship and ability to work on‑site within the continental United States.
- 5+ years of experience with IAM, SIEM, IaC, and security automation tools.
- 2+ years of experience securing AWS environments and implementing cloud security services.
- 2+ years of experience with container and VM hardening and RMF control automation.
- Willingness to work occasionally in a classified environment (Closed Area or SCIF).
- Commitment to obtain a CompTIA Security+ or DoD 8570 IAT Level II certification within the first 90 days.
Required skills
- Okta, Keycloak, Splunk, ELK
- Terraform, Puppet, Chef
- Vulnerability scanners, compliance scanners, SAST, DAST, EDR, audit logging
- AWS CloudTrail, CloudWatch, Inspector, GuardDuty, Shield, Secrets Manager
- NIST 800‑53, RMF control automation
- Linux VM and container hardening, DISA STIGs, SRGs
- GitLab pipelines, CI/CD integration, DevSecOps
- Kubernetes, Docker, scanning tools (TwistLock, Trivy, Zarf, JFrog Xray, Anchore)
- Security documentation: SBOMs, PPS lists, data‑flow diagrams, System Security Plans
Questions fréquentes
Why are you reporting this job?
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
Published 1 month ago
Expires 3 weeks from now
19 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
Raft
San Antonio