Principal Compliance Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Onsite near office locations in Centennial, Colorado; Long Beach, California; the San Francisco Bay Area; or Washington, D.C. Candidates must meet U.S. Government ITAR eligibility requirements.
Salary: $195,000–$270,000 in Colorado; $205,000–$285,000 in Long Beach; $225,000–$310,000 in the San Francisco Bay Area; $205,000–$285,000 in Washington, D.C., plus equity and benefits.
Company
develops autonomous spacecraft, advanced payloads, mission software, and space-based interceptors for space superiority and national security.
What you will do
- Architect and maintain secure, audit-ready systems in AWS and Azure Government environments.
- Develop and validate custom STIGs for cloud infrastructure, SaaS applications, IaaS/PaaS configurations, and customer-deployed applications.
- Implement FIPS 140-2/140-3, TLS 1.2+, data-at-rest protections, and other enforceable technical controls.
- Embed compliance checks into CI/CD pipelines and integrate monitoring, logging, alerting, and automated vulnerability response.
- Lead vulnerability remediation, patch management, baseline enforcement, and continuous-monitoring metrics.
- Support audits through system documentation, evidence collection, technical walkthroughs, and authorization-boundary design for multi-tenant environments.
Requirements
- 10+ years of experience in cybersecurity engineering, cloud compliance, or DevSecOps.
- Hands-on experience with STIG-compliant configurations, custom STIG development, vulnerability remediation, and automated patching.
- Strong knowledge of FIPS-validated encryption, TLS configurations, cryptographic modules, DoD RMF IL5/IL6, and CMMC.
- Proficiency with Terraform, Ansible, Azure Policy, GitHub Actions, and SIEM or logging platforms.
- Experience designing authorization boundaries and customer isolation in AWS and Azure Government environments.
- Active security clearance required; all clearance levels considered, with TS/SCI preferred. Candidates must satisfy U.S. ITAR eligibility requirements.
Nice to have
- Container security experience with AKS or Kubernetes.
- People leadership, mentoring, or technical guidance experience.
- CISSP, CCSP, Azure Security Engineer, CMMC RP, or related certifications.
Culture & Benefits
- Equity and health, dental, vision, HRA/HSA benefits.
- PTO, paid holidays, 401(k), and parental leave.
- Work in a mission-driven environment focused on securing space infrastructure and countering threats.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →