Qualifications
Responsibilities:Stay informed on the latest revisions of NIST Risk Management Framework (RMF) and develop/update policy documents accordingly. Document and implement security measures for Continuous Integration (CI) pipelines in GitLab CI/CD, utilizing JFrog Artifactory, SonarQube, and Ansible. Create threat models and other necessary documentation outlining the end-to-end security of the Software Development Life Cycle (SDLC). Oversee integration, security scanning, and deployment security for multiple applications within orchestrated frameworks. Ensure software promotions adhere to government security policies across all classification levels. Manage AWS (GovCloud) security to uphold the integrity of software artifacts. Fulfill other duties as assigned. Requirements:Bachelor’s degree in cybersecurity, computer science, engineering, mathematics, or physical sciences. Minimum of two years of professional experience in developing and executing DevOps or DevSecOps solutions using CI/CD. Proven experience with NIST RMF, CMMC, and STIG compliance. Experience in applying security best practices to containerized solutions and orchestration frameworks, such as Docker, Podman, Kubernetes, etc. Proficient in ensuring cybersecurity protocols are followed in development, testing, and production environments. Understanding various software licenses (Public Domain, LGPL, Permissive, Copy Left, Proprietary). Capability to obtain and maintain a DoD security clearance. Willingness to work 100% on-site. Meticulous attention to detail. Strong verbal and written communication skills.
About the job
SciTec, a dynamic subsidiary of Firefly Aerospace, specializes in advanced technologies that bolster U. S. National Security and Defense. For over 45 years, we've empowered Department of Defense customers by pioneering innovative remote sensing algorithms, tools, and techniques. Our work enhances data exploitation capabilities across critical missions, including missile defense, intelligence, surveillance, reconnaissance, space domain awareness, and aircraft survivability.
Important Notice: SciTec solely engages in U. S. government contracts, necessitating U. S. citizenship for all employees. We are unable to sponsor or assume sponsorship of employee work visas of any kind. U. S. citizenship is also required to obtain and maintain a security clearance. Applicants who do not fulfill these criteria will not be considered.
We are currently seeking experienced Staff and Senior Staff Cybersecurity Engineers to join our team.