Haystack
← Back to Jobs
Employee
Technology

Cybersecurity Engineer (DevSecOps) with Security Clearance

Arcfieldhome, VA🇺🇸United StatesPosted 18 Aug 2026

Why This Role Stands Out

You'll thrive in this hybrid role as a Cybersecurity Engineer at Arcfield, where you'll leverage your expertise in DevSecOps and cloud security to protect critical systems and drive innovation in AI and classified environments. This opportunity offers significant career growth and the chance to develop specialized skills within a reputable company, making it an excellent next step for experienced security professionals.

Quick Overview

Salary
$101.2k - $199.0k/yr
Work Type
Hybrid
Schedule
Employee
Level
Mid Senior

Job Description

Responsibilities This position is for Strategic Technology Consulting (STC), an Arcfield Company Roles and Responsibilities The candidate should be capable of working independently as a contributor to software development team. He or she should exhibit expertise in:

  • Design, implement, and maintain security controls across cloud (AWS/Azure), on-premises, AI, and classified environments.
  • Support security accreditation and compliance activities for systems governed by NIST SP 800-53, RMF, NIST SP 800-171, CMMC, and FedRAMP, specifically focusing on achieving ATOs for high-side classified deployments.
  • Coordinate with IT, Corporate Security, Program Security, software engineering teams, and government customers to ensure security requirements are incorporated throughout the system lifecycle.
  • Conduct vulnerability assessments, security reviews, and remediation tracking across our React frontend, Python (FastAPI) backends, and Java-based Cameo plugins.
  • Implement DevSecOps practices within GitLab CI/CD pipelines, integrating automated security scanning tools (e.g., Trivy, Semgrep, yGuard, and OWASP tools) into secure software development processes.
  • Monitor security events and system health, leveraging Prometheus and Grafana, and support incident response activities.
  • Configure and manage identity, access management (IAM), privileged access, and least-privilege controls (RBAC) for microservices and cloud storage boundaries (S3/Blob).
  • Implement security controls and guardrails for state-of-the-art AI models, Large Language Models (LLMs), and Retrieval-Augmented Generation (RAG) services to ensure data privacy, prevent prompt injection, and validate deterministic outputs.
  • Develop and maintain security documentation, System Security Plans (SSPs), security procedures, and technical guidance.
  • Support Authority to Operate (ATO) packages, security audits, and continuous monitoring activities.
  • Evaluate emerging cybersecurity technologies and recommend improvements to strengthen the organization's security posture.
The candidate should also demonstrate a general understanding of or interest in gaining expertise in:
  • Systems Engineering processes, methods, and tools as applied to systems lifecycles
  • Digital Engineering methodologies and tooling

Position Summary: We are seeking a Security Engineer to design, implement, and maintain secure infrastructure and applications for our AI-driven Intelligent MBSE (iMBSE) platform across enterprise, cloud, AI, and classified environments. This role partners closely with software engineers, DevOps, IT, Security, and government customers to ensure cybersecurity is integrated throughout the system lifecycle while enabling rapid delivery of mission-critical systems engineering capabilities.

The ideal candidate has experience supporting Department of Defense (DoD) or Intelligence Community (IC) programs, implementing DevSecOps practices (specifically within containerized Kubernetes environments), and guiding systems through security compliance and accreditation for high-side networks. Qualifications

  • BS 8-10, MS 6-8, PhD 3-5
  • BS in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field (or equivalent experience).
  • 3-7 years of experience in cybersecurity, security engineering, DevSecOps, or a related field.
  • Experience securing AWS, Azure, or hybrid cloud environments, with a strong emphasis on securing containerized architectures (Docker, Kubernetes).
  • Working knowledge of networking, operating systems, encryption, authentication, and secure software development principles.
  • Experience with vulnerability management and DevSecOps toolchains (GitLab CI/CD, static/dynamic analysis tools).
  • Experience with scripting or automation using Python, PowerShell, or Bash.
  • Understanding of AI/ML security best practices (e.g., OWASP Top 10 for LLMs) and securing Retrieval-Augmented Generation (RAG) pipelines.
  • Strong communication and collaboration skills with both technical teams and external customers.
  • Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
Required Technologies & Tools
  • Familiarity with Model-Based Systems Engineering (MBSE) workflows or tools (e.g., Cameo Systems Modeler, SysML v2).
  • Experience securing message brokering and orchestration services (e.g., RabbitMQ).
Equal Pay Act This is the projected compensation range for this position. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, Arcfield invests in its employees beyond just compensation. Arcfield 's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long-Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.

Min: $101,156.77Max: $199,035.68

EEO Statement We are an equal opportunity employer and federal government contractor. We do not discriminate against any employee or applicant for employment as protected by law.

Skills

Docker
FastAPI
Microservices
AWS
Encryption
OWASP
Azure
Bash
GitLab CI
Grafana
Java
Kubernetes
PowerShell
Prometheus
Python
RabbitMQ
React

Similar jobs