EngineerJobs.io
← Back to all jobs

Job Description

EWR Radar Systems is seeking a hands-on cybersecurity professional to own security for fielded Air Force Portable Doppler Radar (PDR) systems and related software. This role focuses on operational patching, DISA STIG implementation, Tenable/ACAS scanning and remediation, and maintaining RMF/ATO evidence for radars that are often air-gapped.

Core Responsibilities

  • Own the Air Force PDR patch process, including planning, testing, packaging, and applying OS and application patches to radar servers and operator stations on the recurring AF schedule.
  • Perform quarterly DISA STIG scans, including the Q2 STIG cycle, across Linux, Windows, web, database, and application stacks used on PDR and related systems.
  • Conduct Tenable (Nessus / ACAS) scans, triage findings, remediate issues or document residual risk via POA&Ms, and deliver scan/remediation packages accepted by the USAF program office.
  • Maintain the accredited security baseline for fielded, often air-gapped radars, including offline updates, local accounts, certificates, SSH, firewall controls, and customer constraints such as no-Java and isolated networks.
  • Partner with Watch and related software to ensure authentication, TLS, logging, containers, ports, and configuration changes remain within the accredited baseline.
  • Keep RMF / ATO evidence current, including STIGs, scan results, hardware and software inventory, configuration baselines, and change records.
  • Coordinate with EWR engineering in Kirkwood and with USAF PDR stakeholders during patch, STIG, and Tenable reviews.
  • Support occasional travel to U.S. or international customer sites. Day-to-day work is based at the Kirkwood office.

Required Qualifications

  • U.S. citizenship.
  • Ability to obtain and maintain a DoD Secret security clearance (active Secret preferred).
  • Hands-on DISA STIG experience, demonstrated by applying STIGs (not only reading them). Experience with STIG Viewer, SCC, Evaluate-STIG, or equivalent is required.
  • Hands-on Tenable or ACAS experience, including scanning, handling false positives, performing remediation, and writing residual-risk documentation.
  • Linux administration skills on servers that are not cloud consoles, including packages, services, firewall configuration, logs, and certificates (RHEL, Ubuntu, or similar).
  • Windows server/workstation hardening experience in a DoD context.
  • Patch management capability for systems that cannot be rebooted easily and cannot be updated casually from the internet.
  • Clear written English to produce scan reports, POA&Ms, and patch notes suitable for program office documentation.

Technologies

Relevant tools and standards include C#, .NET, Linux, Docker, DISA STIG, Tenable (Nessus / ACAS), STIG Viewer, SCC, Evaluate-STIG, RHEL, Ubuntu, Windows, SSH, TLS, nginx, Apache, PostgreSQL, RMF, NIST SP 800-53, NIST SP 800-37, NIST SP 800-171, CMMC, and CompTIA Security+, CySA+, and CISSP.

Benefits

  • 401(k)
  • Dental insurance
  • Health insurance
  • Paid time off
  • Vision insurance

Clearance and Eligibility

This position requires U.S. citizenship and eligibility to obtain and maintain a DoD Secret security clearance. Employment is contingent on remaining eligible for Secret. An active Secret clearance is preferred but sponsorship may be available. The role cannot be held if Secret cannot be granted.

Strongly Preferred

  • Active Secret clearance.
  • DoD RMF experience aligned to NIST SP 800-53 / 800-37, including support of an ATO or ongoing authorization.
  • DISA STIG familiarity for nginx/Apache, PostgreSQL, .NET, Docker/containers, and Windows.
  • Experience with CMMC / NIST SP 800-171 in a small contractor environment.
  • Enough C# / .NET or application-security background to collaborate with Watch developers.
  • Docker and nginx on Linux, specifically in offline or field-deployed environments.
  • CompTIA Security+, CySA+, CISSP, or another DoD 8140/8570 baseline certification.
  • Prior USAF, USMC, or related DoD C5ISR, weather, radar, or industrial-control adjacent work.

How the Role Operates

EWR is a small manufacturer with a focus on practical execution. You will serve as the cyber owner for PDR and related products across the servers, the scan tools, and the documentation. The work is closely integrated with engineering in Kirkwood rather than being handled by a separate security department.

Similar Jobs