EngineerJobs.io
← Back to all jobs

Job Description

CACI is seeking a Journeyman Cybersecurity Engineer for the GMOS contract supporting the Department of State. This onsite role in Ashburn, VA centers on designing, implementing, and validating secure IT solutions spanning physical, virtual, and cloud environments, with a strong emphasis on compliance and secure engineering practices.

The position supports security engineering activities that connect architecture, network protection, monitoring and logging, and DevSecOps automation, including FedRAMP-aligned cloud support and security control validation across the system development lifecycle.

Key Responsibilities

  • Design and implement comprehensive security solutions for physical data centers, virtual hosting, and cloud platforms using defense-in-depth and zero-trust security approaches
  • Ensure operating environments, system configurations, and infrastructure deployments meet Department of State and DT physical and information security requirements
  • Apply security best practices across engineering designs and system development lifecycle activities, aligning to DOS security policies, FISMA requirements, NIST 800-53 controls, and STIGs
  • Deliver network security capabilities including high-availability load balancing, DDoS detection and mitigation, intrusion prevention systems, and web application firewalls
  • Implement and configure FedRAMP-compliant cloud systems, coordinating with the Department of State Cloud Computing Governance Board (CCGB) to support data sovereignty requirements and boundary protections
  • Provide security architecture technical expertise through security architecture reviews, threat modeling, and risk assessments
  • Implement monitoring, logging, and alerting integrated with enterprise monitoring infrastructure and SIEM platforms
  • Use DevSecOps tooling such as Ansible, Terraform, Jenkins, GitLab, and SonarQube to build and optimize CI/CD pipelines with automated security validation and vulnerability scanning
  • Perform security assessments, vulnerability testing, and security control validation for new and existing systems, producing technical reports with remediation recommendations
  • Collaborate with infrastructure engineers, application developers, security analysts, and Government stakeholders to implement secure technical solutions and promote security engineering best practices

Required Qualifications

  • Bachelor’s degree plus 4 years of related experience in areas such as cybersecurity engineering, security architecture, systems security engineering, network security, or DevSecOps (equivalencies considered)
  • Active Top Secret Clearance
  • Proven experience in security engineering, security architecture design, security controls implementation, and secure system design
  • Knowledge of information security frameworks including NIST 800-53, FISMA, and the Risk Management Framework (RMF), along with federal security requirements
  • Strong understanding of network security technologies including firewalls, IDS/IPS, load balancers, DDoS mitigation, and cloud security architectures (AWS, Azure)
  • Proficiency with DevSecOps tooling including Ansible, Terraform, Jenkins, GitLab, SonarQube, plus knowledge of CI/CD pipeline security integration

Technologies

  • Ansible, Terraform, Jenkins, GitLab, SonarQube, CI/CD pipelines
  • NIST 800-53, FISMA, Risk Management Framework (RMF), STIGs
  • SIEM platforms including Splunk, ArcSight, and QRadar
  • FedRAMP, DOS Cloud Computing Governance Board (CCGB), AWS, Azure
  • IDS/IPS, load balancers, DDoS mitigation, firewalls, intrusion prevention systems, web application firewalls
  • Enterprise Monitoring infrastructure

Benefits

  • Healthcare
  • Wellness
  • Financial
  • Retirement
  • Family support
  • Continuing education
  • Time off benefits
  • Flexible time off benefit
  • Robust learning resources

Position Details

  • Job category: Engineering
  • Time type: Full time
  • Employee type: Regular
  • Minimum clearance to start: Top Secret
  • Location: Ashburn, VA (onsite)
  • Pay range: USD 94,400 - 198,200 per year
  • Travel: Up to 10% (local)

Desired Background

  • Prior experience supporting federal agencies, especially the Department of State
  • Professional security certifications such as CompTIA Security+, CISSP, CEH, CCSP, or GIAC certifications
  • Experience with FedRAMP authorization processes, STIGs, and SIEM platforms (Splunk, ArcSight, QRadar)
  • Background in threat modeling methodologies, penetration testing, and vulnerability assessment tools

CACI also describes its culture as grounded in integrity, an environment of trust, and a focus on continuous growth.

Similar Jobs