Sphera Logo

Sphera

Cybersecurity Engineer - DevOps

Posted 4 Hours Ago
Remote
Hiring Remotely in US
116K-174K Annually
Mid level
Remote
Hiring Remotely in US
116K-174K Annually
Mid level
Seeking a Cybersecurity Engineer to protect web applications, implement security measures, conduct risk analyses, and collaborate with development teams on secure solutions.
The summary above was generated by AI

Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability. Our mission is to create a safer, more sustainable and productive world.

Sphera is a portfolio company of Blackstone, a U.S.-based alternative asset investment company that focuses on private equity, technology and innovation, and more. Blackstone businesses succeed through strong partnerships, a personalized approach and a commitment to exceptional performance with uncompromising integrity. Sphera and Blackstone are leaders in the Environmental, Social and Governance (ESG) space.

We are guided by our core values of Customer Centricity, Accountability, Bias to Action, Innovation, and Collaboration. These values help us recruit the right talent to join our rapidly expanding team around the globe. It is important to us that each and every Spherion is not only eager to challenge themselves and knows how to get work done but is an awesome addition to our company culture.

We are seeking a dynamic and experienced Cybersecurity Engineer to work alongside a high-performing team of technology professionals within the federal government sector. This position plays a critical role in protecting the organization's web applications by designing, implementing, and maintaining robust security controls. This is essential in maintaining quality cyber posture scoring and contributes to building secure solutions.

Key Requirements:

  • U.S. Citizen
  • Ability to verify U.S. employment eligibility using Form I-9
  • Ability to obtain a U.S. Government security clearance and Common Access Card
  • Bachelor’s degree in computer science, Cybersecurity, IT, or related field.
  • Minimum 3-5 years of professional experience in Application Security with a strong understanding of systems security principles.
  • Ability to pass a drug test
  • A six-month trial/probationary period may be required.

Qualifications

  • Knowledge of cybersecurity frameworks and standards such as NIST, ISO 27001
  • Familiarity with Security Technical Implementation Guides (STIGs) and Security Requirements Guides for the Department of Defense (DOD) information technology systems.
  • Knowledge of Public Key Infrastructure (PKI).
  • Ability to obtain a Secret clearance.
  • Familiarity with DOD/DISA STIG Viewer tool.
  • Strong analytical and problem-solving skills.
  • Experience in Application programming and Application Security.
  • Knowledge of DAST and SAST tools.
  • Strong programming and scripting skills.
  • Security+ Certification.

Preferred Qualifications

  • Experience working on US DoD programs.
  • Secret clearance.
  • It is generally desirable for a person in this position to have a cybersecurity certification, such as SSCP, CISSP, GSEC, GISP, or other cybersecurity or IT certification.

Key Responsibilities

  • Implement and maintain DISA STIGs for application and web servers.
  • Mitigate OWASP Top 10 vulnerabilities and other web application security risks.
  • Conduct threat modeling exercises to identify and mitigate potential security risks.
  • Ensure compliance with DoD security and IA requirements by implementing controls aligned with the NIST RMF.
  • Investigate and respond to security incidents related to web applications.
  • Monitor SIEM alerts, analyze security logs, and investigate security incidents.
  • Collaborate with development teams to integrate security into the SDLC.
  • Work with DevOps to automate security testing and deployment processes.
  • Prepare and maintain security compliance documentation.
  • Stay updated on emerging threats, vulnerabilities, and industry best practices.
  • Work effectively independently and in a dynamic team environment.
  • Proven time management, organizational and follow-up skills to meet deadlines.
  • Excellent interpersonal skills.
  • Must be willing to learn new technologies and processes as needed.

Pay:

$116,000.00 - $174,000.00 + Eligible for Variable Compensation Plan

Commensurate with relevant qualifications and experience

Benefits:

  • Medical, Dental, and Vision Insurance

  • Health Savings Account

  • Flexible Spending Account

  • 401(k) Retirement Plan with Company Match

  • Life and Disability Insurance

  • Critical Illness Insurance

  • Accident Insurance

  • Hospital Indemnity Insurance

  • Paid Time Off and Holidays

  • Flexible Working Schedule

Sphera is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

This job description is intended to convey information essential to understanding the scope of the job and the general nature and level of work performed by job holders within this job. This job description is not intended to be an exhaustive list of qualifications, skills, efforts, duties, responsibilities or working conditions associated with the position.

Top Skills

Cis
Firewalls
Intrusion Detection Systems
Iso 27001
Nist
Programming
Public Key Infrastructure
Scripting
Security Technical Implementation Guides
Siem Solutions

Similar Jobs

12 Days Ago
Remote
Georgia, USA
120K-160K Annually
Mid level
120K-160K Annually
Mid level
Retail
The Senior DevOps Engineer role focuses on risk assessments, system monitoring, incident management, disaster recovery, and educating on resiliency practices.
Top Skills: Active DirectoryCloudCyberarkGrafanaIam SystemsLinuxLookerObservability ToolsPingPowershellPythonSsoVenafiWavefrontWindows
5 Hours Ago
Remote
USA
110K-180K Annually
Senior level
110K-180K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Sr. Cloud Red Team Engineer emulates threat actors in cloud environments, assesses security, and enhances CrowdStrike's Falcon security capabilities.
Top Skills: .NetAWSC/C++GdbGhidraGoIdaRustWindbg
9 Hours Ago
Remote
Hybrid
Arlington, VA, USA
Junior
Junior
Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
The Remediation Analyst monitors cyber threats, responds to remediation events, analyzes security logs, and collaborates with vendors to eliminate threats.
Top Skills: CybersecurityExcel

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account