Jobs Companies Raft Company Website Senior Engineer

Über diese Senior Engineer Stelle bei Raft Company Website

Raft Company Website · Remote · Remote; San Antonio, TX

This is a U.S. based position. All of the programs we support require U.S. citizenship to be eligible for employment. All work must be conducted within the continental U.S.

Who we are:

Raft (https://TeamRaft.com) is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a leader in autonomous data fusion and Agentic AI, with a purposeful focus on Distributed Data Systems, Platforms at Scale, and Complex Application Development. With headquarters in McLean, VA, our range of clients includes innovative federal and public agencies leveraging design thinking, cutting-edge tech stack, and cloud-native ecosystem. We build digital solutions that impact the lives of millions of Americans.

About the role:

The SeniorCybersecurity Engineer supports a DoW program by ensuring Information Assurance (IA), cybersecurity, and security engineering requirements are incorporated directly into the platform’s DevSecOps pipelines, tooling, configurations, and software delivery processes.
 
This role works closely with the Pipeline Architect, Software Engineering SMEs, infrastructure/platform engineers, and government stakeholders to ensure required DoD cybersecurity thresholds are met without creating unnecessary friction in the software delivery lifecycle. The Senior Cybersecurity Engineer helps translate security and compliance requirements into technical controls that can be automated, validated, and continuously enforced within the pipeline.
 
Key Responsibilities
  • Work with the Pipeline Architect and Software Engineering SMEs to ensure DoD IA and cybersecurity thresholds are met and built directly into pipeline tooling, configurations, and workflows.
  • Translate DoD cybersecurity, RMF, and DevSecOps requirements into actionable technical requirements for engineering teams.
  • Design, implement, configure, and maintain automated security controls within CI/CD pipelines.
  • Integrate and maintain security tooling for SAST, DAST, software composition analysis (SCA), container scanning, secrets detection, dependency scanning, and vulnerability management.
  • Establish and enforce security gates and thresholds within GitLab CI/CD pipelines to prevent noncompliant or vulnerable software artifacts from progressing through the delivery lifecycle.
  • Support secure software supply chain practices, including artifact integrity, SBOM generation, vulnerability scanning, signing, provenance, and software attestations.
  • Work with engineering teams to integrate tools such as Fortify, SonarQube, Trivy, Twistlock/Prisma Cloud, NeuVector, Cosign/Sigstore, and similar security capabilities into automated workflows.
  • Review Kubernetes, container, GitLab Runner, infrastructure-as-code, and pipeline configurations for security vulnerabilities and configuration weaknesses.
  • Support vulnerability triage and remediation by working directly with software and platform engineering teams to determine severity, operational impact, remediation approaches, and acceptable mitigation strategies.
  • Develop and maintain security-as-code and policy-as-code approaches that allow cybersecurity requirements to be consistently enforced across environments.
  • Support compliance with the DoD DevSecOps Reference Design, NIST Risk Management Framework (RMF), NIST 800-53 controls, and applicable DoD cybersecurity requirements.
  • Support the collection and automation of security evidence required for authorization and continuous monitoring activities.
  • Partner with platform and application teams to ensure cybersecurity requirements support the UP continuous Authority to Operate (cATO) approach and Continuous Delivery/Continuous Deployment processes.
  • Identify cybersecurity risks associated with changes to pipeline architecture, platform baselines, infrastructure, and application delivery processes and recommend technical mitigations.
  • Develop security documentation, technical implementation guidance, configuration standards, and engineering best practices.
  • Participate in architecture reviews, technical discussions, troubleshooting sessions, and security assessments.

What we are looking for: 

  • 3+ years of experience in Cybersecurity Engineering, DevSecOps, Platform Engineering, Cloud Security, Application Security, or a related technical discipline.
  • Hands-on experience implementing security capabilities within CI/CD pipelines, preferably GitLab CI/CD.
  • Experience with one or more application or container security technologies such as Fortify, SonarQube, Trivy, Twistlock/Prisma Cloud, NeuVector, or equivalent tools.
  • Experience with containerized environments and Kubernetes security concepts.
  • Experience identifying, assessing, and remediating software, container, infrastructure, or configuration vulnerabilities.
     
  • Working knowledge of DoD RMF, NIST SP 800-53, and DoD cybersecurity/Information Assurance requirements.
     
  • Understanding of DevSecOps principles and the integration of security controls throughout the software development lifecycle.
     
  • Experience working with Git and infrastructure/configuration-as-code technologies such as Terraform, Ansible, Helm, or equivalent technologies.
     
  • Understanding of software supply chain security concepts, including SBOMs, artifact signing, provenance, vulnerability scanning, and attestations.
     
  • Ability to translate cybersecurity requirements into practical technical controls and communicate effectively with both cybersecurity and engineering stakeholders.

Highly preferred:

  • Experience with GitLab, GitLab Runners, Argo CD, Kubernetes, Helm, SOPS, AWS/GovCloud, Platform One or other DoD software factories, and DoD cATO environments is preferred. Familiarity with Cosign/Sigstore, container registries, package managers, microservices architectures, Kubernetes admission controls, policy-as-code, and automated compliance evidence collection is also highly desirable.
     
  • Experience supporting software delivery within IL4/IL5/IL6 DoD environments and working directly with ISSMs, ISSOs, security control assessors, Authorizing Officials, or government cybersecurity organizations is a plus.
    Certifications
     
  • DoD 8140/8570-compliant cybersecurity certification appropriate to the position is preferred (e.g., Security+, CySA+, CASP+/SecurityX, CISSP, or equivalent).
     
  •  Kubernetes, cloud security, or AWS certifications are desirable.

Clearance Requirements:

  • Minimum active Secret Clearance required to start

Salary Range: $140,000.00 - $160,000.00

Work Type:

  • Remote with a preference for candidates based in San Antonio, TX
  • Travel up to 35% to customer sites

What we will offer you: 

  • Highly competitive salary
  • Fully covered healthcare, dental, and vision coverage
  • 401(k) and company match
  • Take as you need PTO + 11 paid holidays
  • Education & training benefits
  • Generous Referral Bonuses
  • And More!

Our Vision Statement: 

We bridge the gap between humans and data through radical transparency and our obsession with the mission. 

Our Customer Obsession: 

We will approach every deliverable like it's a product. We will adopt a customer-obsessed mentality. As we grow, and our footprint becomes larger, teams and employees will treat each other not only as teammates but customers. We must live the customer-obsessed mindset, always. This will help us scale and it will translate to the interactions that our Rafters have with their clients and other product teams that they integrate with. Our culture will enable our success and set us apart from other companies.

How do we get there? 

Public-sector modernization is critical for us to live in a better world. We, at Raft, want to innovate and solve complex problems. And, if we are successful, our generation and the ones that follow us will live in a delightful, efficient, and accessible world where out-of-box thinking, and collaboration is a norm. 

Raft’s core philosophy is Ubuntu: I Am, Because We are. We support our “nadi” by elevating the other Rafters. We work as a hyper collaborative team where each team member brings a unique perspective, adding value that did not exist before. People make Raft special. We celebrate each other and our cognitive and cultural diversity. We are devoted to our practice of innovation and collaboration. 

We’re an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.

Bereit, sich bei Raft Company Website zu bewerben?
Bei Raft Company Website bewerben

Über Raft Company Website

Join Us - It's Fun! 🚀

Raft is a niche-focused digital consulting firm that helps public agencies solve hard problems that impact the lives of millions of Americans. We are active members of the Cloud Native Computing Foundation (CNCF) and Kubernetes Certified Service Providers (KCSP). We work on hard complex problems to make it easy for Humans to connect with Data. Our benefits are 🔥 . Our culture is ❤️.

Digital innovation is like making a good cup of coffee. If the beans are not roasted just the right way, no amount of pumpkin spice will make it taste great. We take every step seriously and take the time we need to get it right the first time. If you love building inclusive user-research driven products, CLIs, API-first solutions, and believe in automation over human intervention, let us show you how deep the rabbit-hole goes.

Why Raft?

Humans-first

We put our people and our culture first. We work with some of the smartest, hardest working experts in their field. We owe it to them to make sure our team is free of meaningless restrictions and politics so they can focus on what they love, finding innovative solutions.

Diversity is our Superpower

We celebrate diversity, individuality, and non-traditional, out of the-box thinkers. We go to bat for you and for your differences. Because our differences make us strong. 

Remote-first

We are a geographically distributed team where little humans, pets, and everything in between are welcome during our zoom calls. We ♥️ Open Source and use Mattermost for collaboration. We strive for less meetings and are mindful of different time zones. 💤  

If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to access job openings or apply for a job on this site as a result of your disability. You can request reasonable accommodations by contacting Recruiting at [email protected] or by phone at 703-570-4820.

Alle Jobs bei Raft Company Website ansehen →

Ähnliche Jobs

RC
Senior Engineer
Raft Company Website
⚡ Früh bewerben Dayton, OH; St. Louis, MO Vor Ort $120,000–$180,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RC
Senior Engineer
Raft Company Website
⚡ Früh bewerben Tampa, FL; Dayton, OH Vor Ort $120,000–$180,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RC
Product Manager - Army
Raft Company Website
⚡ Früh bewerben Joint Base Lewis-McChord Vor Ort $150,000–$190,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RC
Scrum Master
Raft Company Website
⚡ Früh bewerben Colorado Springs, CO Vor Ort $90,000–$115,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RC
Principal Engineer
Raft Company Website
⚡ Früh bewerben Fort Hood, TX Vor Ort $160,000–$220,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RC
Engineer
Raft Company Website
⚡ Früh bewerben Colorado Springs, CO Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RC
Senior Engineer
Raft Company Website
⚡ Früh bewerben Arlington, VA; Rome, NY: Hansc... Hybrid $110,000–$180,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RC
Principal Engineer
Raft Company Website
⚡ Früh bewerben Tacoma, WA; Tampa, FL Vor Ort $160,000–$220,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RC
Senior Engineer
Raft Company Website
⚡ Früh bewerben Dayton, OH; Tampa, FL Vor Ort $120,000–$180,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Raft Company Website

Alle Jobs bei Raft Company Website ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos