Назад
Company hidden
6 часов назад

Principal Compliance Engineer (Cybersecurity)

195 000 - 270 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Compliance Engineer (AWS/Azure Government): Designing and maintaining secure, audit-ready cloud architectures and technical controls for regulated DoD environments with an accent on STIG development, FIPS encryption, vulnerability remediation, and RMF/CMMC compliance. Focus on embedding compliance automation into CI/CD, sustaining system authorization, hardening multi-tenant boundaries, and demonstrating compliance during audits.

Location: Onsite near office locations in Centennial, Colorado; Long Beach, California; the San Francisco Bay Area; or Washington, D.C. Candidates must meet U.S. Government ITAR eligibility requirements.

Salary: $195,000–$270,000 in Colorado; $205,000–$285,000 in Long Beach; $225,000–$310,000 in the San Francisco Bay Area; $205,000–$285,000 in Washington, D.C., plus equity and benefits.

Company

hirify.global develops autonomous spacecraft, advanced payloads, mission software, and space-based interceptors for space superiority and national security.

What you will do

  • Architect and maintain secure, audit-ready systems in AWS and Azure Government environments.
  • Develop and validate custom STIGs for cloud infrastructure, SaaS applications, IaaS/PaaS configurations, and customer-deployed applications.
  • Implement FIPS 140-2/140-3, TLS 1.2+, data-at-rest protections, and other enforceable technical controls.
  • Embed compliance checks into CI/CD pipelines and integrate monitoring, logging, alerting, and automated vulnerability response.
  • Lead vulnerability remediation, patch management, baseline enforcement, and continuous-monitoring metrics.
  • Support audits through system documentation, evidence collection, technical walkthroughs, and authorization-boundary design for multi-tenant environments.

Requirements

  • 10+ years of experience in cybersecurity engineering, cloud compliance, or DevSecOps.
  • Hands-on experience with STIG-compliant configurations, custom STIG development, vulnerability remediation, and automated patching.
  • Strong knowledge of FIPS-validated encryption, TLS configurations, cryptographic modules, DoD RMF IL5/IL6, and CMMC.
  • Proficiency with Terraform, Ansible, Azure Policy, GitHub Actions, and SIEM or logging platforms.
  • Experience designing authorization boundaries and customer isolation in AWS and Azure Government environments.
  • Active security clearance required; all clearance levels considered, with TS/SCI preferred. Candidates must satisfy U.S. ITAR eligibility requirements.

Nice to have

  • Container security experience with AKS or Kubernetes.
  • People leadership, mentoring, or technical guidance experience.
  • CISSP, CCSP, Azure Security Engineer, CMMC RP, or related certifications.

Culture & Benefits

  • Equity and health, dental, vision, HRA/HSA benefits.
  • PTO, paid holidays, 401(k), and parental leave.
  • Work in a mission-driven environment focused on securing space infrastructure and countering threats.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →