Cybersecurity Engineer
Why This Role Stands Out
This remote Cybersecurity Engineer role offers a unique opportunity to build and innovate security solutions for a large federal cloud platform, fostering significant skills development in automation and DevSecOps. You'll thrive here if you're a proactive, hands-on engineer eager to take ownership and collaborate with a senior team, making a tangible impact on critical infrastructure.
Quick Overview
Job Description
Job Description
Aspis is expanding its cybersecurity team and seeking a hands-on Cybersecurity Engineer to build the security capability behind a large Federal civilian cloud platform operations and maintenance program. This is a building role rather than a monitoring role. The environment is hybrid: a FedRAMP-authorized AWS commercial cloud footprint alongside Azure, on-premises data centers, legacy and mainframe-connected applications, and enterprise geospatial platforms supporting hundreds of business applications. You will write and maintain the automation, pipeline security stages, hardened baselines, detection content, and integrations that make security continuous instead of manual. Responsibilities align to the NIST NICE Workforce Framework for Cybersecurity (NIST SP 800-181r1). You will work alongside cloud engineers, DevSecOps engineers, and our compliance and authorization staff, with real ownership on a small, senior team.
This is a full-time position. The Kansas City, Missouri metropolitan area is strongly preferred and candidates who reside in and can work from the Kansas City metro will receive preference; however, residency there is not required, and we will consider candidates elsewhere in the United States who are able to travel to client sites as needed. Consistent with Aspis' telework policy, employees are required to report to an Aspis office on a regular basis but may be allowed to work from home and are required to visit client job sites as applicable. The company reserves the right to change its employment policies at any time without notice.
Responsibilities
- Design, code, test, and maintain security automation - scripts, modules, services, and integrations - that replace manual security work.
- Build and maintain infrastructure-as-code modules that deliver hardened, compliant cloud resources by default.
- Build and maintain security stages in CI/CD pipelines, including static analysis, dependency and container image scanning, secrets detection, and policy-as-code gates.
- Engineer hardened operating system, container, and cloud service baselines, plus the automation that applies and enforces them.
- Build identity, access, encryption, key management, and logging capability into the platform, and engineer secure interfaces between on-premises systems and cloud services.
- Build and maintain detection content, correlation rules, and alerting as code, with version control and testing.
- Automate vulnerability scanning coverage, finding enrichment, deduplication, ticket creation, and aging escalation so remediation service levels are met without manual tracking.
- Build response automation and playbooks-as-code for containment, isolation, evidence capture, and recovery, and participate in the on-call rotation.
- Convert incident findings and root cause analysis into durable engineering fixes rather than repeat manual response.
- Maintain design documentation, run books, reference architectures, and code documentation, and provide control implementation evidence to compliance and authorization staff.
- Mentor junior engineers, perform code review, and support knowledge transfer to client staff.
- Other duties as assigned.
Qualifications
- Demonstrated ability to build and maintain production code or automation in at least one language such as Python, Bash, PowerShell, or Go, with source control, testing, and peer review discipline.
- Hands-on cloud security engineering experience in AWS, with working knowledge of Azure, appropriate to experience level.
- Experience building CI/CD pipeline security stages using GitLab or comparable tooling, and infrastructure-as-code proficiency such as Terraform or CloudFormation.
- Working knowledge of hardening standards and of security frameworks relevant to Federal work (NIST SP 800-53, FISMA, FedRAMP), appropriate to experience level.
- Experience building or tuning vulnerability scanning coverage, detection content, or log pipelines.
- Strong analytical skills and attention to detail.
- Clear, professional written and verbal communication, including design and operational documentation.
- Ability to manage multiple assignments and deadlines with limited day-to-day oversight.
- Discretion in handling sensitive client, system, and company information.
- Ability to obtain and maintain a Federal Public Trust background investigation; must be authorized to work in the United States without sponsorship.
- Availability during client core hours with on-call and after-hours support as needed for deployments and incidents.
Requirements
Skills:
- Security automation and tooling development, secure CI/CD pipeline engineering, infrastructure-as-code, platform hardening, detection engineering, and cloud security engineering.
- Demonstrated coding or automation ability with source control and peer review discipline.
- Strong verbal and written communication skills.
Background Check: Public Trust background check required.
Degree Required: Associate's degree or higher preferred; equivalent experience and/or certifications considered in lieu of a degree.
Experience Required: Varies by level (Level 1: 0-2 years; Level 2: 2-5 years; Level 3: 5-10 years; Level 4: 10+ years) of relevant cybersecurity engineering experience.
Industry Certifications: Tiered by level - CompTIA Security+ (or equivalent) preferred at entry and required from Level II; advanced cloud and engineering certifications (e.g., AWS Certified Security - Specialty, CCSP, GIAC GCSA, CISSP) expected at senior levels.
Must pass reference check and background check.
Compensation details: 110000-125000 Yearly Salary
PI167262de8e75-31181-41346661
Skills
Similar jobs
Senior Program Security Specialist L3
Na Oiwi Kane · Kirtland, United States
5 minutes ago$110k - $120k/yrSenior Security Data Analyst
Milestone Technologies, Inc. · United States
5 minutes ago$120k - $130k/yrInformation Systems Security Engineer (ISSE)
Open Systems Technologies Corporation · United States
12 minutes agoApplication Security Engineer (Senior) ID71668
AgileEngine · Dallas, United States
12 minutes agoCyber Analyst Sr. with Security Clearance
Referentia Systems Incorporated · Hampton, United States
13 minutes agoEngineer, Security Operations & Engineering
Collibra · United States
15 minutes ago