B

Senior Cybersecurity Engineer

Bluestaq United State
Relocation
Apply
AI Summary

Own the defensive security posture of Bluestaq's software systems supporting national security missions, including space domain awareness and satellite command and control. Manage the full vulnerability lifecycle, build SIEM detection rules mapped to MITRE ATT&CK, lead incident response, and apply DISA STIGs and NIST RMF compliance. Requires hands-on experience in vulnerability management, incident response, OS hardening, cloud platforms, and scripting, with 4+ to 8+ years of experience depending on education level.

Key Highlights
Salary range (CO): $100,000 - $155,000 USD
May require an active TS/SCI clearance; Bluestaq will sponsor eligible candidates through the clearance process
Relocation assistance may be available, evaluated on a case-by-case basis
Role supports national security missions including space domain awareness and satellite command and control
Key Responsibilities
Own the full vulnerability lifecycle including scanning, risk-based triage, remediation tracking, and verified closure across the fleet.
Build and tune detection rules in SIEM tools mapped to MITRE ATT&CK tactics relevant to Bluestaq's threat model.
Serve as an incident responder for security events, including containment, scoping, and status reporting to leadership.
Deliver written post-mortems with root cause, timeline, and tracked action items following incident closure.
Maintain endpoint antivirus coverage across the fleet, including policy configuration and remediation coordination.
Apply DISA STIGs to operating systems and manage compliance artifacts (POA&Ms) in RMF platforms such as eMASS or Xacta.
Assist in CI/CD pipeline security by guiding developers toward secure coding practices before production.
Review threat intelligence and peer incident disclosures, translating findings into deployed detection logic within a sprint cycle.
Technical Skills Required
SIEM detection engineering Incident response NIST RMF compliance
Benefits & Perks
Salary range of $100,000 - $155,000 USD (CO)
Relocation assistance may be available on a case-by-case basis
Clearance sponsorship for eligible candidates without an active TS/SCI

Job Description


Why This Role Matters

The Senior Cybersecurity Engineer at Bluestaq owns the defensive posture of software systems that underpin national security decisions — space domain awareness, satellite command and control, and the infrastructure behind them. This is not a scan-and-report seat. You close vulnerabilities, build detection logic that catches real threats, and lead incident response when things get loud. No playbook required. If you need to be told what to look for, this isn't the right level.

What You Own

  • Own the full vulnerability lifecycle — scanning with vulnerability management tools, triage by mission risk, remediation tracking, and verified closure across the fleet.
  • Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to MITRE ATT&CK tactics relevant to Bluestaq's threat model.
  • Serve as an incident responder for security events — contain, help scope, and provide clear status to the IR lead/leadership.
  • Deliver written post-mortems with root cause, timeline, and tracked action items following incident closure.
  • Maintain endpoint antivirus coverage across the fleet — configure policies, ensure definition currency, and coordinate remediation of flagged systems.
  • Apply DISA STIGs to operating systems (Linux, Windows, etc.); document deviations and manage compliance artifacts (POA&Ms) in compliance management platforms (eMASS, Xacta, or equivalent RMF tools).
  • Assist in CI/CD pipeline security — provide guidance as far left as possible in the development cycle to ensure developers are generating clean, secure code and catching vulnerabilities before they reach production.
  • Review threat intelligence and peer-organization incident disclosures; translate findings into deployed detection logic within a sprint cycle.

What You Bring

Must-Haves

  • Production experience across the vulnerability lifecycle — scanning, risk-based triage, and driving findings to verified closure.
  • Hands-on SIEM detection engineering — building and tuning rules, mapped to MITRE ATT&CK, beyond running queries.
  • Real incident response reps — containment, scoping, and writing clear post-mortems with root cause and action items.
  • Applied DISA STIG and NIST RMF — OS hardening (Linux, Windows), managing POA&Ms, and working in compliance platforms (eMASS, Xacta, or equivalent).
  • Endpoint anti-malware / on-access scanning experience — deploying and maintaining coverage across a fleet.
  • Linux and Windows systems Administration in production environments.
  • Cloud experience — AWS, Google Cloud, Azure, or equivalent.
  • Scripting and automation – Python, Bash, Go, or similar, plus config management / IaC (Ansible, Terraform, or equivalent).
  • Threat-intel-to-detection –consuming external findings and translating them into deployed detection logic.
  • Security-minded in Ci/CD and architecture - flagging design risk and steering developers toward secure practices.
  • Investigative rigor – you dig deep, ask why, and don't settle for surface-level answers.
  • Strong written and verbal communication – you can put technical findings in front of peers, leadership, and cross-functional teams.
  • Ownership mentality – you follow through, document your work, and know when to persevere vs. ask for help.

Required Education & Experience

  • High School Diploma/GED and 8+ years of relevant experience, OR
  • Associate degree in a related field and 6+ years of relevant experience, OR
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field and 4+ years of relevant experience, OR
  • Master's degree in a related field and 2+ years of relevant experience

Salary Range (CO): $100,000 USD - $155,000 USD

Clearance Requirement: This position may require an active TS/SCI Clearance. Current clearance holders are strongly encouraged to apply. If you don't currently hold one, Bluestaq will sponsor eligible candidates through the clearance process based on program needs.

About Bluestaq

At Bluestaq, we build secure data platforms that matter for space missions, national defense, healthcare systems, and commercial innovation. Founded in 2018, we've become a leader in enterprise software and secure data management by staying focused on what counts: modern architecture, operational excellence, and mission impact.

We're engineers, problem-solvers, and builders who take the mission seriously, but not ourselves. We automate the repeatable, question the status quo, and design systems that are as reliable as they are scalable. Whether we're supporting space, defense systems, or healthcare advancements, we build with the same principles: cloud-native solutions, security by design, and relentless simplicity.

Relocation: Relocation assistance may be available for this role and is evaluated on a case-by-case basis.

Date the Position Closes: Applications will be accepted for 60 days beyond the posting date, or until the position is filled, whichever comes first.

Bluestaq is an Equal Opportunity Employer. We prohibit unlawful discrimination against applicants or employees on the basis age 40 and over, color, disability, gender identity, genetic information, military or veteran status, national origin, race, religion, sex, sexual orientation, or any other status protected by state or local law.

Bluestaq will make reasonable accommodations for qualified individuals with known disabilities and employees whose work requirements interfere with a religious belief unless doing so would result in an undue hardship to Bluestaq or a direct threat. Employees needing such accommodation are instructed to contact Human Resources immediately at contact.us@bluestaq.com.

Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

CSL

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

Los Alamos National Laboratory

United State

Systems Security Engineer II (Secret Clearance Required)

Cyber Security
19h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Raytheon

United State

Subscribe our newsletter

New Things Will Always Update Regularly