Cyber Engineer (Digital Ecosystem)

PMATSan Diego, CA
$180,000 - $200,000Onsite

About The Position

At PMAT, we work on mission critical systems that directly support the warfighter, designing, building, and securing modern digital capabilities across cloud, data, and software environments. Our teams tackle complex, real-world challenges where delivery matters more than theory, and innovation is driven by curiosity, collaboration, and purpose. In this role, you’ll contribute to Naval Operational Architecture (NOA), working alongside engineers and operators to deliver resilient, forward-leaning solutions in support of national defense. About the role: PMAT is seeking a highly experienced Cyber Engineer to support the design, automation, security, administration, and sustainment of secure mission-critical environments across development, production, classified, cloud, containerized, and DevSecOps-enabled systems. This role focuses on improving software and infrastructure security posture through vulnerability management, automated security pipelines, container hardening, system hardening, compliance support, and secure infrastructure operations. The candidate will work closely with cybersecurity, software development, infrastructure, platform, engineering, and mission stakeholders to reduce vulnerabilities, implement mitigations, support authorization activities, and maintain secure and reliable environments throughout the development, accreditation, and operational lifecycle. The role requires strong hands-on technical capability, cybersecurity judgment, automation experience, and the ability to communicate security risks and remediation strategies across technical and program audiences.

Requirements

  • Extensive experience supporting cybersecurity engineering, infrastructure security, systems administration, platform engineering, DevSecOps, vulnerability management, or related technical security roles.
  • Experience supporting enterprise, cloud, containerized, hybrid, classified, application hosting, or compliance-driven technical environments.
  • Experience with vulnerability management, system hardening, patching, secure configuration, access control, cyber risk tracking, and remediation planning.
  • Experience working with Linux and Windows Server environments, including system administration, troubleshooting, monitoring, patching, and secure configuration activities.
  • Experience using scripting, automation, configuration management, or Infrastructure as Code concepts to support cybersecurity and technical operations.
  • Experience supporting DevSecOps pipelines, CI/CD workflows, secure software delivery, containerized environments, or automated security scanning.
  • Understanding of RMF, ATO, NIST SP 800-53, DISA STIGs, secure SDLC principles, cybersecurity compliance, and authorization support activities.
  • Strong written and verbal communication skills with the ability to explain technical issues, cybersecurity risks, dependencies, remediation actions, and recommendations to engineering, cybersecurity, program, and mission stakeholders.

Nice To Haves

  • Experience with Tekton, Jenkins, CI/CD automation, automated Docker container builds, container security hardening, and DevSecOps security pipeline development.
  • Experience with Kubernetes, OpenShift Container Platform, service mesh environments, container security scanning tools, and multi-enclave security pipeline development.
  • Experience with security tools and platforms such as ACAS, Nessus, Splunk, HBSS, endpoint security tools, vulnerability scanners, and enterprise monitoring platforms.
  • Experience administering or securing VMware ESXi, vSAN, RHEL, Amazon Linux, Windows Server, private cloud, on-premises cloud, and secure data center environments.
  • Experience with automation and scripting tools such as Ansible, Terraform, Bash, Python, PowerShell, JavaScript, YAML, JSON, Git, CloudFormation, PDQ, WSUS, or related technologies.
  • Experience with AWS or AWS GovCloud infrastructure services such as EC2, Security Groups, S3, EBS, EFS, Route 53, IAM, CloudFormation, CloudWatch, Lambda, ELB, VPCs, subnets, route tables, endpoints, NACLs, Transit Gateways, VPC peering, AWS Directory Services, AWS Workspaces, and AWS CLI.
  • Experience with foundational infrastructure and security services such as DNS, PKI, TLS, LDAP, Active Directory, authentication, authorization, OpenID Connect, SAML, single sign-on, databases, YUM repositories, Veeam, Horizon, Atlassian Suite, and enterprise monitoring tools.
  • Experience supporting LAN/WAN environments, virtualized network backbones, routing, switching, OSPF, BGP, firewall concepts, ports and protocols, and complex network troubleshooting.
  • Experience supporting ATO packages, security control assessments, compliance documentation, control validation, cybersecurity audits, POA&M management, and classified or restricted environment accreditation activities.
  • Experience supporting Department of War Cybersecurity Workforce requirements, including DoW 8140 qualification alignment or the ability to satisfy applicable workforce requirements.
  • Prior experience supporting government, Navy, Intelligence Community, national-level, or mission-critical classified environments.

Responsibilities

  • Design, implement, and improve security automation pipelines within DevSecOps environments by supporting CI/CD integration, automated vulnerability scanning, container security checks, remediation workflows, and secure software delivery practices.
  • Support vulnerability management across production, development, cloud, containerized, and classified environments by identifying, tracking, prioritizing, documenting, and remediating findings in accordance with cybersecurity requirements and ISSM-approved timelines.
  • Manage and document Plans of Action and Milestones for security findings by maintaining visibility of vulnerability status, remediation progress, risk acceptance considerations, and continuous burndown of medium-level findings.
  • Develop and implement mitigations for identified vulnerabilities by applying secure configuration changes, system hardening, patching, container hardening, access control improvements, and infrastructure security enhancements.
  • Support the design, administration, and sustainment of secure infrastructure stacks across Linux, Windows Server, virtualization, private cloud, enterprise services, network infrastructure, and containerized environments.
  • Implement and remediate security controls in alignment with NIST SP 800-53, DISA STIGs, RMF, ATO, Zero Trust, secure software development lifecycle practices, and other applicable government cybersecurity requirements.
  • Support infrastructure and cybersecurity automation by using scripting, configuration management, Infrastructure as Code, and automation tools to streamline system builds, patching, hardening, monitoring, and compliance activities.
  • Collaborate with cybersecurity, software, infrastructure, networking, platform, program, and mission stakeholders to troubleshoot complex technical issues, improve security best practices, support accreditation efforts, and communicate risks, dependencies, and recommendations.

Benefits

  • PMAT is an equal-opportunity employer. We believe in hiring a diverse workforce and sustaining an inclusive, people-first culture. We are committed to non-discrimination on any protected basis, such as disability and veteran status, or any other basis covered under applicable law.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service