EngineerJobs.io
← Back to all jobs

Job Description

Blue Origin’s Blue National Security organization is seeking a Senior Cybersecurity Engineer to design, harden, and secure classified enclaves, mission ground systems, and labs. The role focuses on practical cybersecurity engineering, RMF accreditation support, vulnerability remediation, and incident response activities in support of national security missions.

Responsibilities

  • Implement security architecture across classified enclaves, mission ground systems, and lab environments, including network segmentation, identity and access management, endpoint hardening, logging and audit, and encryption at rest and in transit.
  • Author and maintain SSPs, security control implementation statements, risk assessments, and POA&Ms.
  • Guide systems through RMF to achieve ATO and ATC, and sustain compliance through continuous monitoring.
  • Conduct vulnerability scanning and drive remediation, manage patching, support log review and audit reduction, and triage security events with the enterprise SOC.
  • Participate in an on-call rotation.
  • Investigate, contain, and document incidents, and coordinate corrective actions to closure with system owners.
  • Build scripting and tooling to make compliance evidence, STIG application, and reporting repeatable rather than manual.
  • Collaborate with program engineers and system administrators to deliver secure systems on mission schedules.
  • Mentor junior engineers and analysts, contributing to team standards, baselines, and accreditation playbooks.

Requirements

  • Bachelor’s degree in a technical discipline (Computer Science, Cybersecurity, Computer/Electrical Engineering, or similar) or equivalent experience.
  • 6+ years of hands-on cybersecurity engineering experience.
  • Direct experience implementing and sustaining security controls on classified systems in DoD or IC environments.
  • Working experience with RMF control implementation, SSP and artifact development, POA&M remediation, and continuous monitoring.
  • Hands-on depth in at least three of the following: Linux and Windows hardening (STIG/SCAP), network security and segmentation, IAM and PKI, government cloud (AWS GovCloud / Azure Government), SIEM and log analysis, vulnerability management tooling.
  • Scripting proficiency in Python, PowerShell, and Bash for automation of security operations and compliance tasks.
  • Active U.S. Government Top Secret clearance with SCI eligibility and eligibility for SAP access determination.
  • DoD 8140 IAT/IAM Level II certification (Security+ CE or equivalent) at hire.

Technologies

  • Python, PowerShell, Bash
  • Linux, Windows
  • STIG, SCAP
  • IAM, PKI
  • AWS GovCloud, Azure Government
  • SIEM
  • RMF
  • SSP, POA&M, STIG application
  • Terraform, Ansible, Puppet
  • JSIG
  • ICD 503/705
  • NIST SP 800-53, NIST SP 800-171

Benefits

  • Medical, dental, vision
  • Basic and supplemental life insurance
  • Paid parental leave
  • Short and long-term disability
  • 401(k) with a company match of up to 5%
  • Education Support Program
  • Stock Options for all regular employees working at least 20 hours/week
  • Paid Time Off: up to four (4) weeks per year based on weekly scheduled hours
  • Up to 14 company-paid holidays

Logistics

  • Primarily onsite in classified spaces, with limited telework by nature of the work.
  • Travel up to 10–15% to other Blue Origin sites and customer facilities.
  • On-call rotation participation, with occasional extended hours to support mission-critical events and incident response.
  • Ability to obtain and maintain access to classified facilities; periodic polygraph may be required.

Application Process

Applications will be accepted on an ongoing basis until the requisition is closed.

Base Pay Range

  • CO applicants: USD 133,500.00 - 186,898.95
  • WA applicants: USD 145,188.00 - 203,263.20

Preferred Qualifications

  • Prior ISSO or ISSE role on SAP/SAR programs.
  • Working knowledge of JSIG, ICD 503/705, and NIST SP 800-53 / 800-171.
  • Experience standing up and accrediting new classified enclaves, labs, or facilities.
  • Infrastructure-as-code and configuration management experience (Terraform, Ansible, Puppet).
  • Cross-domain solution implementation or accreditation support.
  • Detection engineering, threat hunting, or incident response experience.
  • Active TS/SCI with polygraph and SAP Eligible.

Background Check

  • Required for all positions: Blue’s Standard Background Check.
  • May be required for certain job profiles: Defense Biometric Identification System (DBIDS) background check if the role requires presence on a military installation.
  • May be required for certain job profiles for drivers operating Commercial Motor Vehicles that meet specified GVW/GVWR thresholds and/or transport placardable hazardous materials by ground in commerce, subject to additional Federal Motor Carrier Safety Regulations.
  • May be required for certain job profiles: ability to obtain and maintain Merchant Mariner Credential, including pre-employment and random drug testing and a DOT physical.

Export Control Regulations

Applicants for employment at Blue Origin must be a U.S. citizen or national, U.S. permanent resident (current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.

Similar Jobs