New Job! Remote Job
Company

Senior Engineer

About the Role

Raft is seeking a Senior Cybersecurity Engineer to support the program's core support team. This role will help secure, operate, and continuously improve the program environment as it provides secure access to protected DoD resources across cloud environments and multiple security classifications.

You will work alongside Product, DevSecOps, Site Reliability, and Software Engineering personnel to support team operations and develop security capabilities specific to the cloud platform environment.

What You’ll Do

  • Maintain and improve the cybersecurity posture of the cloud platform stack across classified and unclassified environments

  • Support Authority to Operate (ATO) and continuous Authority to Operate (cATO) requirements, ensuring platform changes align with DoD Reference Design and approved security baseline

  • Identify, analyze, prioritize, and remediate vulnerabilities across cloud infrastructure, Kubernetes environments, containers, applications, and supporting technologies

  • Integrate security controls and automated security testing into DevSecOps and GitOps workflows

  • Support continuous monitoring and integration with DoD Cyber Service Providers

  • Develop and maintain security automation using Infrastructure as Code and Configuration as Code (Terraform, Ansible, Helm, Kubernetes Operators, etc.)

  • Ensure use of current hardened containers from Iron Bank and support updates to platform components outside Iron Bank/Big Bang baseline

  • Support security capabilities associated with Zero Trust, identity, access control, PKI, authentication, authorization, ingress/egress, and micro-segmentation

  • Monitor and update access and security policies, attestations, groups, users, devices, certificates, and resource entitlements

  • Support integration with DoD PKI and Single Sign-On capabilities

  • Secure technologies including AppGate, Palo Alto firewalls, HashiCorp Vault and Consul, Keycloak, Zeek, and RKE2/Kubernetes

  • Develop and maintain cybersecurity and accreditation documentation in support of the DoD Risk Management Framework (RMF)

  • Partner with DoD teams and stakeholders to improve security processes and accelerate secure enterprise deployments

  • Participate in Agile development processes (backlog refinement, technical planning, implementation, testing, delivery)

  • Troubleshoot security and access issues affecting platform users and connected applications/services

What We Are Looking For

  • 8+ years of relevant experience in cybersecurity, cloud security, cloud architecture, DevSecOps, platform engineering, or related discipline

  • Bachelor’s degree in Computer Science, Cybersecurity, IT, Engineering, or related field

  • IAT Level III certification for security-focused personnel

  • One or more relevant cloud certifications

  • Secret eligible

  • Experience securing workloads and infrastructure within AWS, Azure, or other enterprise cloud environments (AWS GovCloud or Azure Government highly desirable)

  • Experience identifying and remediating vulnerabilities across cloud infrastructure, containers, Kubernetes, operating systems, and applications

  • Experience with Infrastructure as Code / Configuration as Code (Terraform, Ansible, Helm, etc.)

  • Understanding of GitOps, CI/CD, and DevSecOps security practices

  • Experience with identity and access management, PKI, Zero Trust principles, network security, firewalls, or software-defined perimeter technologies

  • Experience with security monitoring, vulnerability management, security scanning, logging, and incident troubleshooting

  • Working knowledge of DoD RMF, ATO/cATO, STIGs, and DoD cybersecurity requirements

  • Ability to integrate security into engineering workflows rather than treating it as separate compliance activity

  • Strong troubleshooting skills in dynamic Agile environments

Highly Preferred

  • Experience with CNAP ecosystem technologies: Kubernetes/RKE2, Big Bang, Iron Bank, GitLab, Terraform, Ansible, Helm, AWS GovCloud, Azure Government, Palo Alto, AppGate, HashiCorp Vault, Consul, Keycloak, Zeek, Zero Trust, GitOps

  • Experience supporting Platform One, Cloud One, DoD software factories, CNAP, or other DoD enterprise DevSecOps environments

Clearance Requirements

  • Ability to obtain and maintain an active Secret security clearance

Salary Range

  • $120,000.00 – $135,000.00

Work Type

  • Fully Remote

What We Will Offer You

  • Highly competitive salary

  • Fully covered healthcare, dental, and vision coverage

  • 401(k) and company match

  • Take-as-you-need PTO + 11 paid holidays

  • Education & training benefits

  • Generous referral bonuses

  • And more!

Our Vision Statement

We bridge the gap between humans and data through radical transparency and our obsession with the mission.

Our Customer Obsession

We approach every deliverable like it’s a product, adopting a customer-obsessed mentality. As we grow, teams and employees treat each other not only as teammates but as customers. This mindset helps us scale and translates to the interactions Rafters have with clients and product teams. Our culture enables success and sets us apart.

Don't let this one get away.