Jobs Companies Raft Company Website Senior Engineer

À propos de ce poste Senior Engineer chez Raft Company Website

Raft Company Website · Télétravail · Remote; San Antonio, TX

This is a U.S. based position. All of the programs we support require U.S. citizenship to be eligible for employment. All work must be conducted within the continental U.S.

Who we are:

Raft (https://TeamRaft.com) is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a leader in autonomous data fusion and Agentic AI, with a purposeful focus on Distributed Data Systems, Platforms at Scale, and Complex Application Development. With headquarters in McLean, VA, our range of clients includes innovative federal and public agencies leveraging design thinking, cutting-edge tech stack, and cloud-native ecosystem. We build digital solutions that impact the lives of millions of Americans.

About the role:

The SeniorCybersecurity Engineer supports a DoW program by ensuring Information Assurance (IA), cybersecurity, and security engineering requirements are incorporated directly into the platform’s DevSecOps pipelines, tooling, configurations, and software delivery processes.
 
This role works closely with the Pipeline Architect, Software Engineering SMEs, infrastructure/platform engineers, and government stakeholders to ensure required DoD cybersecurity thresholds are met without creating unnecessary friction in the software delivery lifecycle. The Senior Cybersecurity Engineer helps translate security and compliance requirements into technical controls that can be automated, validated, and continuously enforced within the pipeline.
 
Key Responsibilities
  • Work with the Pipeline Architect and Software Engineering SMEs to ensure DoD IA and cybersecurity thresholds are met and built directly into pipeline tooling, configurations, and workflows.
  • Translate DoD cybersecurity, RMF, and DevSecOps requirements into actionable technical requirements for engineering teams.
  • Design, implement, configure, and maintain automated security controls within CI/CD pipelines.
  • Integrate and maintain security tooling for SAST, DAST, software composition analysis (SCA), container scanning, secrets detection, dependency scanning, and vulnerability management.
  • Establish and enforce security gates and thresholds within GitLab CI/CD pipelines to prevent noncompliant or vulnerable software artifacts from progressing through the delivery lifecycle.
  • Support secure software supply chain practices, including artifact integrity, SBOM generation, vulnerability scanning, signing, provenance, and software attestations.
  • Work with engineering teams to integrate tools such as Fortify, SonarQube, Trivy, Twistlock/Prisma Cloud, NeuVector, Cosign/Sigstore, and similar security capabilities into automated workflows.
  • Review Kubernetes, container, GitLab Runner, infrastructure-as-code, and pipeline configurations for security vulnerabilities and configuration weaknesses.
  • Support vulnerability triage and remediation by working directly with software and platform engineering teams to determine severity, operational impact, remediation approaches, and acceptable mitigation strategies.
  • Develop and maintain security-as-code and policy-as-code approaches that allow cybersecurity requirements to be consistently enforced across environments.
  • Support compliance with the DoD DevSecOps Reference Design, NIST Risk Management Framework (RMF), NIST 800-53 controls, and applicable DoD cybersecurity requirements.
  • Support the collection and automation of security evidence required for authorization and continuous monitoring activities.
  • Partner with platform and application teams to ensure cybersecurity requirements support the UP continuous Authority to Operate (cATO) approach and Continuous Delivery/Continuous Deployment processes.
  • Identify cybersecurity risks associated with changes to pipeline architecture, platform baselines, infrastructure, and application delivery processes and recommend technical mitigations.
  • Develop security documentation, technical implementation guidance, configuration standards, and engineering best practices.
  • Participate in architecture reviews, technical discussions, troubleshooting sessions, and security assessments.

What we are looking for: 

  • 3+ years of experience in Cybersecurity Engineering, DevSecOps, Platform Engineering, Cloud Security, Application Security, or a related technical discipline.
  • Hands-on experience implementing security capabilities within CI/CD pipelines, preferably GitLab CI/CD.
  • Experience with one or more application or container security technologies such as Fortify, SonarQube, Trivy, Twistlock/Prisma Cloud, NeuVector, or equivalent tools.
  • Experience with containerized environments and Kubernetes security concepts.
  • Experience identifying, assessing, and remediating software, container, infrastructure, or configuration vulnerabilities.
     
  • Working knowledge of DoD RMF, NIST SP 800-53, and DoD cybersecurity/Information Assurance requirements.
     
  • Understanding of DevSecOps principles and the integration of security controls throughout the software development lifecycle.
     
  • Experience working with Git and infrastructure/configuration-as-code technologies such as Terraform, Ansible, Helm, or equivalent technologies.
     
  • Understanding of software supply chain security concepts, including SBOMs, artifact signing, provenance, vulnerability scanning, and attestations.
     
  • Ability to translate cybersecurity requirements into practical technical controls and communicate effectively with both cybersecurity and engineering stakeholders.

Highly preferred:

  • Experience with GitLab, GitLab Runners, Argo CD, Kubernetes, Helm, SOPS, AWS/GovCloud, Platform One or other DoD software factories, and DoD cATO environments is preferred. Familiarity with Cosign/Sigstore, container registries, package managers, microservices architectures, Kubernetes admission controls, policy-as-code, and automated compliance evidence collection is also highly desirable.
     
  • Experience supporting software delivery within IL4/IL5/IL6 DoD environments and working directly with ISSMs, ISSOs, security control assessors, Authorizing Officials, or government cybersecurity organizations is a plus.
    Certifications
     
  • DoD 8140/8570-compliant cybersecurity certification appropriate to the position is preferred (e.g., Security+, CySA+, CASP+/SecurityX, CISSP, or equivalent).
     
  •  Kubernetes, cloud security, or AWS certifications are desirable.

Clearance Requirements:

  • Minimum active Secret Clearance required to start

Salary Range: $140,000.00 - $160,000.00

Work Type:

  • Remote with a preference for candidates based in San Antonio, TX
  • Travel up to 35% to customer sites

What we will offer you: 

  • Highly competitive salary
  • Fully covered healthcare, dental, and vision coverage
  • 401(k) and company match
  • Take as you need PTO + 11 paid holidays
  • Education & training benefits
  • Generous Referral Bonuses
  • And More!

Our Vision Statement: 

We bridge the gap between humans and data through radical transparency and our obsession with the mission. 

Our Customer Obsession: 

We will approach every deliverable like it's a product. We will adopt a customer-obsessed mentality. As we grow, and our footprint becomes larger, teams and employees will treat each other not only as teammates but customers. We must live the customer-obsessed mindset, always. This will help us scale and it will translate to the interactions that our Rafters have with their clients and other product teams that they integrate with. Our culture will enable our success and set us apart from other companies.

How do we get there? 

Public-sector modernization is critical for us to live in a better world. We, at Raft, want to innovate and solve complex problems. And, if we are successful, our generation and the ones that follow us will live in a delightful, efficient, and accessible world where out-of-box thinking, and collaboration is a norm. 

Raft’s core philosophy is Ubuntu: I Am, Because We are. We support our “nadi” by elevating the other Rafters. We work as a hyper collaborative team where each team member brings a unique perspective, adding value that did not exist before. People make Raft special. We celebrate each other and our cognitive and cultural diversity. We are devoted to our practice of innovation and collaboration. 

We’re an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.

Prêt à postuler chez Raft Company Website ?
Postuler chez Raft Company Website

À propos de Raft Company Website

Join Us - It's Fun! 🚀

Raft is a niche-focused digital consulting firm that helps public agencies solve hard problems that impact the lives of millions of Americans. We are active members of the Cloud Native Computing Foundation (CNCF) and Kubernetes Certified Service Providers (KCSP). We work on hard complex problems to make it easy for Humans to connect with Data. Our benefits are 🔥 . Our culture is ❤️.

Digital innovation is like making a good cup of coffee. If the beans are not roasted just the right way, no amount of pumpkin spice will make it taste great. We take every step seriously and take the time we need to get it right the first time. If you love building inclusive user-research driven products, CLIs, API-first solutions, and believe in automation over human intervention, let us show you how deep the rabbit-hole goes.

Why Raft?

Humans-first

We put our people and our culture first. We work with some of the smartest, hardest working experts in their field. We owe it to them to make sure our team is free of meaningless restrictions and politics so they can focus on what they love, finding innovative solutions.

Diversity is our Superpower

We celebrate diversity, individuality, and non-traditional, out of the-box thinkers. We go to bat for you and for your differences. Because our differences make us strong. 

Remote-first

We are a geographically distributed team where little humans, pets, and everything in between are welcome during our zoom calls. We ♥️ Open Source and use Mattermost for collaboration. We strive for less meetings and are mindful of different time zones. 💤  

If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to access job openings or apply for a job on this site as a result of your disability. You can request reasonable accommodations by contacting Recruiting at [email protected] or by phone at 703-570-4820.

Voir tous les emplois chez Raft Company Website →

Emplois similaires

RC
Senior Engineer
Raft Company Website
⚡ Postuler tôt Dayton, OH; St. Louis, MO Sur site $120,000–$180,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RC
Senior Engineer
Raft Company Website
⚡ Postuler tôt Tampa, FL; Dayton, OH Sur site $120,000–$180,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RC
Product Manager - Army
Raft Company Website
⚡ Postuler tôt Joint Base Lewis-McChord Sur site $150,000–$190,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RC
Scrum Master
Raft Company Website
⚡ Postuler tôt Colorado Springs, CO Sur site $90,000–$115,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RC
Principal Engineer
Raft Company Website
⚡ Postuler tôt Fort Hood, TX Sur site $160,000–$220,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RC
Engineer
Raft Company Website
⚡ Postuler tôt Colorado Springs, CO Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RC
Senior Engineer
Raft Company Website
⚡ Postuler tôt Arlington, VA; Rome, NY: Hansc... Hybride $110,000–$180,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RC
Principal Engineer
Raft Company Website
⚡ Postuler tôt Tacoma, WA; Tampa, FL Sur site $160,000–$220,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RC
Senior Engineer
Raft Company Website
⚡ Postuler tôt Dayton, OH; Tampa, FL Sur site $120,000–$180,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Raft Company Website

Voir tous les emplois chez Raft Company Website →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit