22 hours ago
San Antonio, TX, USASenior

Responsibilities

  • Design, test, and apply automated baseline-hardening scripts using Ansible playbooks, Bash, and Python.
  • Enforce DISA Security Technical Implementation Guides and Security Requirements Guides across RHEL Linux servers, PostgreSQL instances, and container platforms.
  • Embed automated security testing, including SAST and SCA, into CI/CD pipelines using Git, Gradle, SonarQube, or comparable tools.
  • Package, deploy, and secure application containers using Docker and Kubernetes; validate image provenance, remediate CVEs, and configure secure runtimes.
  • Develop and maintain RMF security packages, including SSPs, ConMon plans, and SAPs, in the Xacta eGRC portal.
  • Run ACAS/Tenable Nessus vulnerability scans and SCAP compliance benchmarks, analyze findings, eliminate false positives, and coordinate patch cycles.
  • Create actionable POA&M entries and work with system engineers to resolve findings and mitigate operational risk.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Software Engineering, or a STEM discipline, with 4 years of additional equivalent professional experience.
  • CASP+ (SecurityX), CGRC, CISSP, CISM, CCISO, or equivalent certification.
  • Experience administering RHEL 8/9, performing command-line operations and system service management, and configuring SELinux.
  • Ability to work independently while collaborating with teams with diverse specialties.
  • U.S. citizenship and a U.S. government Top Secret/SCI security clearance with Poly-CI eligibility are required.
  • Preferred experience includes ACAS/Tenable Nessus scans, STIG Viewer/SCAP analysis, SSP maintenance, Xacta or eMASS, Joint and USAF doctrine, defensive cyber operations, programming, system design, and AF-SCI or NSANet-connected systems.
  • Preferred technical experience includes Ansible STIG remediation playbooks, PostgreSQL administration and access controls, NIST SP 800-53 Rev. 5, NIST SP 800-37, DoD/CNSSI directives, and secure container deployment with Docker, Kubernetes, or Podman.

Benefits

  • Medical, dental, and vision plans.
  • 401(k) with company match, life insurance, vacation and sick paid time off, and 11 paid holidays.
  • Tuition reimbursement and a work environment that encourages excellence.
  • Work is based at the 16th Air Force in San Antonio, Texas, with 10% travel required.

Tech Stack

AnsibleBashDockerGitGradleJavaKubernetesPostgreSQLPythonSonarQube

Categories

Scientific Research Corporation

About Scientific Research Corporation

1,001-5,000 employees

Scientific Research Corporation is a privately held engineering services and systems integration firm that builds and sustains communications, C4ISR, electronic warfare, radar, and simulation/instrumentation systems for U.S. defense and government customers and international markets. Founded in 1988 and headquartered in Atlanta, it delivers design, integration, test, and lifecycle support under contract, with engineering offices across the United States.

Contact me