{"id":792884,"url":"https://alion.io/job/bluestaq-senior-cybersecurity-engineer","title":"Senior Cybersecurity Engineer","company":{"id":669314,"name":"Bluestaq","domain":"bluestaq.com","url":"https://alion.io/company/bluestaq","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"B","score":75,"open_postings":3,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-10-02T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"senior","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Colorado Springs, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":100000,"max":155000,"currency":"USD","period":"year","gross":null,"usd_annual":155000},"salary_estimate":null,"experience_years_min":4,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Ansible","optional":false},{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"Bash","optional":false},{"name":"CI/CD","optional":false},{"name":"GCP","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"Splunk","optional":false},{"name":"Terraform","optional":false},{"name":"Windows","optional":false}],"status":"live","first_seen_at":"2026-09-01T22:42:06Z","employer_posted_date":"2026-09-21","last_verified_at":"2026-10-02T17:00:19Z","board_verified":true,"closed_at":null,"days_open":31,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":31},"description":"Why This Role Matters\nThe Senior Cybersecurity Engineer at Bluestaq owns the defensive posture of software systems that underpin national security decisions - space domain awareness, satellite command and control, and the infrastructure behind them. This is not a scan-and-report seat. You close vulnerabilities, build detection logic that catches real threats, and lead incident response when things get loud. No playbook required. If you need to be told what to look for, this isn't the right level. \nWhat You Own \nOwn the full vulnerability lifecycle - scanning with vulnerability management tools, triage by mission risk, remediation tracking, and verified closure across the fleet. \nBuild and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to MITRE ATT&CK tactics relevant to Bluestaq's threat model. \nServe as an incident responder for security events - contain, help scope, and provide clear status to the IR lead/leadership. \nDeliver written post-mortems with root cause, timeline, and tracked action items following incident closure. \nMaintain endpoint antivirus coverage across the fleet - configure policies, ensure definition currency, and coordinate remediation of flagged systems. \nApply DISA STIGs to operating systems (Linux, Windows, etc.); document deviations and manage compliance artifacts (POA&Ms) in compliance management platforms (eMASS, Xacta, or equivalent RMF tools). \nAssist in CI/CD pipeline security - provide guidance as far left as possible in the development cycle to ensure developers are generating clean, secure code and catching vulnerabilities before they reach production. \nReview threat intelligence and peer-organization incident disclosures; translate findings into deployed detection logic within a sprint cycle. \nWhat You Bring\nMust-Haves \nProduction experience across the vulnerability lifecycle - scanning, risk-based triage, and driving findings to verified closure. \nHands-on SIEM detection engineering - building and tuning rules, mapped to MITRE ATT&CK, beyond running queries. \nReal incident response reps - containment, scoping, and writing clear post-mortems with root cause and action items. \nApplied DISA STIG and NIST RMF - OS hardening (Linux, Windows), managing POA&Ms, and working in compliance platforms (eMASS, Xacta, or equivalent). \nEndpoint anti-malware / on-access scanning experience - deploying and maintaining coverage across a fleet. \nLinux and Windows systems Administration in production environments. \nCloud experience - AWS, Google Cloud, Azure, or equivalent. \nScripting and automation - Python, Bash, Go, or similar, plus config management / IaC (Ansible, Terraform, or equivalent). \nThreat-intel-to-detection -consuming external findings and translating them into deployed detection logic. \nSecurity-minded in Ci/CD and architecture - flagging design risk and steering developers toward secure practices. \nInvestigative rigor - you dig deep, ask why, and don't settle for surface-level answers. \nStrong written and verbal communication - you can put technical findings in front of peers, leadership, and cross-functional teams. \nOwnership mentality - you follow through, document your work, and know when to persevere vs. ask for help. \nRequired Education & Experience \nHigh School Diploma/GED and 8+ years of relevant experience, OR \nAssociate degree in a related field and 6+ years of relevant experience, OR \nBachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field and 4+ years of relevant experience, OR \nMaster's degree in a related field and 2+ years of relevant experience \nSalary Range (CO)\n$100,000—$155,000 USD\nClearance Requirement: This position may require an active TS/SCI Clearance. Current clearance holders are strongly encouraged to apply. If you don't currently hold one, Bluestaq will sponsor eligible candidates through the clearance process based on program needs.\nRelocation: Relocation assistance is available for full-time positions.\nAbout Bluestaq\n At Bluestaq, we build secure data platforms that matter for space missions, national defense, healthcare systems, and commercial innovation. Founded in 2018, we've become a leader in enterprise software and secure data management by staying focused on what counts: modern architecture, operational excellence, and mission impact.\nWe're engineers, problem-solvers, and builders who take the mission seriously, but not ourselves. We automate the repeatable, question the status quo, and design systems that are as reliable as they are scalable. Whether we're supporting space, defense systems, or healthcare advancements, we build with the same principles: cloud-native solutions, security by design, and relentless simplicity.\nWhat We Offer:\nFor full-time positions\n100% employer-paid health, dental, and vision for you and your dependents\n10% total 401(k) contribution from day one, no vesting period - Bluestaq contributes 4% automatically and matches 100% of the next 6%\nEvery role is eligible for an annual performance bonus\n$200,000 employer-paid life insurance, plus short- and long-term disability coverage\n$5,000 annual professional development budget per employee\n20 days PTO, plus 8 paid holidays\nPet insurance, onsite gym, and flexible schedule\nBluestaq is an Equal Opportunity Employer. We prohibit unlawful discrimination against applicants or employees on the basis age 40 and over, color, disability, gender identity, genetic information, military or veteran status, national origin, race, religion, sex, sexual orientation, or any other status protected by state or local law.\nBluestaq will make reasonable accommodations for qualified individuals with known disabilities and employees whose work requirements interfere with a religious belief unless doing so would result in an undue hardship to Bluestaq or a direct threat. Employees needing such accommodation are instructed to contact Human Resources immediately at .\nApplications will be accepted for 60 days beyond the posting date, or until the position is filled, whichever comes first.","description_format":"text","description_chars":6111,"description_truncated":false,"requirements":{"experience_years_min":4,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"high_school","optional":false},"security_clearance":true,"languages":[]},"benefits":["Flexible schedule","Life insurance","Professional development","Relocation assistance"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":true,"industries":["Cybersecurity","Information Security","Marketplaces"],"lifecycle":[{"event":"open","at":"2026-09-12T04:06:35Z"}],"liveness":{"score":60,"band":"ok","label":"Likely open","p_open":1,"p_active":0.794,"p_room":0.75,"age_days":30,"expected_fill_days":41,"reasons":["conf:7","velocity","win:late"],"computed_at":"2026-10-02T05:45:00Z"},"pay":{"stated_usd_annual":155000,"is_top_pay":false},"html_url":"https://alion.io/job/bluestaq-senior-cybersecurity-engineer","json_url":"https://alion.io/job/bluestaq-senior-cybersecurity-engineer.json","meta":{"generated_at":"2026-10-03T03:10:44Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":2836,"day_limit":5000,"remaining_today":2164,"minute_limit":60,"resets_at":"2026-10-04T00:00:00Z"}}}