Platinum Technologies ยท 1 day ago
Cyber Security Engineer
Platinum Technologies is a Northern Virginia based integrated solutions firm that specializes in Cybersecurity, Cloud and Digital Services to the Public Sector. They are seeking an experienced Cyber Security Engineer with cloud experience to lead cybersecurity efforts for engineering and integration projects across various environments and perform compliance assessments and documentation.
IT InfrastructureIT ManagementSoftware
Responsibilities
Lead all cybersecurity efforts for engineering and integration projects across on-premises, hybrid, and cloud environments
Perform Cybersecurity accreditation in accordance with DoDI 8510.01, Risk Management Framework (RMF) for DoD IT, including ATO and ATC activities
Develop and maintain RMF assessment documentation and security analysis for cloud-hosted architectures (AWS, Azure, GCC-High, etc.)
Conduct automated and manual cloud vulnerability scanning, security scanning, and compliance validation; analyze results and produce remediation/mitigation strategies
Perform Assessment and Authorization (A&A) of DoD systems, software, and networks using RMF, including package development and maintenance within Enterprise Mission Assurance Support Service (eMASS) and Xacta
Evaluate compliance using Evaluate STIG, including assessments of virtual machines, containers, and native cloud technologies such as Docker and Kubernetes
Conduct hands-on vulnerability testing; assess compliance with STIGs, SRGs, cloud baselines, and DoD security requirements
Author and review cybersecurity documentation (SSPs, SCTMs, SARs, POA&Ms, Continuous Monitoring artifacts, etc.)
Provide security engineering review of proposed system changes (hardware, software, cloud services, or integrations), advising the ISSM on security implications
Support continuous monitoring activities including configuration assessments, log review, and boundary protection analysis across hybrid and cloud environments
Qualification
Required
Certified Information Systems Security Professional (CISSP)
Cloud security certification (e.g., AWS Security Specialty, Azure Security Engineer Associate, CCSP, or equivalent)
Experience preparing and briefing technical reviews to both technical and non-technical audiences
Experience conducting cloud security assessments, including automated scanning, STIG/SRG mapping, and RMF artifact development
Experience evaluating compliance using Evaluate STIG across VM, container, and cloud-native deployments (Docker, Kubernetes)
Experience serving as an Information System Security Officer (ISSO) or Information System Security Manager (ISSM)
Demonstrated experience obtaining new ATO/ATC approvals for complex, hybrid, or cloud-hosted systems
Experience supporting U.S. Air Force customers and familiarity with USAF cybersecurity processes