Senior Cybersecurity Engineer
Job Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
Raft, a customer-obsessed non-traditional defense tech company, is seeking a Senior Cybersecurity Engineer to support their program’s core support team. This role will help secure, operate, and continuously improve the program environment, providing secure access to protected DoD resources across cloud environments and multiple security classifications.
You will work alongside Product, DevSecOps, Site Reliability, and Software Engineering personnel to support team operations and develop security capabilities specific to the cloud platform environment.
What You’ll Do
- Maintain and improve the cybersecurity posture of the cloud platform stack across classified and unclassified environments.
- Support Authority to Operate (ATO) and continuous Authority to Operate (cATO) requirements and ensure platform changes remain aligned with the applicable DoD Reference Design and approved security baseline.
- Identify, analyze, prioritize, and remediate vulnerabilities across cloud infrastructure, Kubernetes environments, containers, applications, and supporting technologies.
- Integrate security controls and automated security testing into DevSecOps and GitOps workflows.
- Support continuous monitoring and integration with applicable DoD Cyber Service Providers.
- Develop and maintain security automation using Infrastructure as Code and Configuration as Code, including technologies such as Terraform, Ansible, Helm, Kubernetes Operators, and similar tooling.
- Ensure the use of current hardened containers from Iron Bank and support updates to platform components outside the Iron Bank/Big Bang baseline, including firewalls, Kubernetes distributions, and cloud-provider services.
- Support security capabilities associated with Zero Trust, identity, access control, PKI, authentication, authorization, ingress/egress, and micro-segmentation.
- Monitor and update access and security policies, attestations, groups, users, devices, certificates, and resource entitlements.
- Support integration with DoD PKI and Single Sign-On capabilities.
- Support and secure technologies that may include AppGate, Palo Alto firewalls, HashiCorp Vault and Consul, Keycloak, Zeek, and RKE2/Kubernetes.
- Develop and maintain cybersecurity and accreditation documentation in support of the DoD Risk Management Framework (RMF).
- Partner with DoD teams and other stakeholders to improve security processes and accelerate secure enterprise deployments.
- Participate in Agile development processes, including backlog refinement, technical planning, implementation, testing, and delivery.
- Troubleshoot security and access issues affecting platform users and connected applications and services.
What We Are Looking For
- 8+ years of relevant experience in cybersecurity, cloud security, cloud architecture, DevSecOps, platform engineering, or a related technical discipline.
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
- IAT Level III certification for security-focused personnel.
- One or more relevant cloud certifications.
- Secret eligible.
- Experience securing workloads and infrastructure within AWS, Azure, or other enterprise cloud environments; experience with AWS GovCloud or Azure Government is highly desirable.
- Experience identifying and remediating vulnerabilities across cloud infrastructure, containers, Kubernetes, operating systems, and applications.
- Experience with Infrastructure as Code / Configuration as Code, preferably Terraform, Ansible, Helm, or comparable technologies.
- Understanding of GitOps, CI/CD, and DevSecOps security practices.
- Experience with identity and access management, PKI, Zero Trust principles, network security, firewalls, or software-defined perimeter technologies.
- Experience with security monitoring, vulnerability management, security scanning, logging, and incident troubleshooting.
- Working knowledge of DoD RMF, ATO/cATO, STIGs, and DoD cybersecurity requirements.
- Ability to work directly with software engineers, platform engineers, SREs, product teams, and government stakeholders to integrate security into engineering workflows.
- Strong troubleshooting skills and the ability to work effectively in a dynamic Agile environment.
Highly Preferred
- Experience with several of the technologies used within the CNAP ecosystem, including Kubernetes/RKE2, Big Bang, Iron Bank, GitLab, Terraform, Ansible, Helm, AWS GovCloud, Azure Government, Palo Alto, AppGate, HashiCorp Vault, Consul, Keycloak, Zeek, Zero Trust, GitOps.
- Experience supporting Platform One, Cloud One, DoD software factories, CNAP, or another DoD enterprise DevSecOps environment.
How would you rate this job post?
See what other professionals think about this role.
Similar Opportunities
Senior Product Manager (Digital Signage) - AI Development Lifecycle (AIDLC)
Appspace
United StatesSenior Product Manager (Tools, Libraries, and Applications) at Yubico
Yubico
United States
GermanyApplication Developer - Senior
Horizon Industries
United StatesFull Stack Engineer @Work Team at OnePay
Oneapp
United StatesMore Openings at Raft LLC
Explore Top Companies in this Space
Two Six Technologies
National Security Technology / Cyber Defense Systems / AI Mission Orchestration
Orcrist Technologies GmbH
AI / Data Analytics / Defense Technology / Enterprise Software
Credence
Defense Tech / National Security AI / Government Contracting / Intelligence Systems
Istari Digital
Business/Productivity Software / Generative AI Software / Aerospace / Defense
Raft LLC
View Company ProfileRaft (operating at teamraft.com) is a technology platform engineered for mission clarity and operational success. Founded by Shubhi Mishra, Col (R) Frederick “Trey” Coleman, Dawn Pinto, and Danielle McCoy, Raft is a leading defense technology company dedicated to empowering the U.S. military and government agencies with cutting-edge AI/ML and data solutions. Under the hood, Raft delivers scalable AI, data integration, and resilience. This allows mission-focused enterprises to streamline their operations and achieve operational success. Backed by a $60 million strategic growth investment.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.

