Cybersecurity Consultant

GalvionPortsmouth, NH
Onsite

About The Position

Cybersecurity Consultant Location: Portsmouth, NH — On-site Employment Type: Contract Schedule: 40 hours/week, Monday–Friday Help Secure the Next Generation of Defense Technology Galvion is seeking a Cybersecurity Consultant to join our Advanced Development Engineering team in Portsmouth, NH. This role is ideal for a security professional who enjoys working directly with hardware and software engineers to build security into innovative embedded systems from the ground up. You’ll provide hands-on cybersecurity guidance across custom hardware, embedded computing, firmware, operating systems, and application software , helping engineering teams meet demanding DoD and Army security requirements without compromising performance or usability.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Computer Engineering , or a related technical discipline.
  • 5+ years of experience in system security engineering, cybersecurity consulting, or a related advisory role.
  • Strong knowledge of NIST SP 800-53 Rev. 5 and DISA STIG/SRG implementation.
  • Understanding of federal software supply-chain security requirements and practices.
  • Familiarity with SBOM standards , including SPDX and CycloneDX , and software dependency-management tools.
  • Experience or familiarity with embedded environments such as Android, embedded Linux, or RTOS .
  • Understanding of C/C++ or low-level software development and hardware security principles.
  • Strong communication skills and the ability to translate cybersecurity requirements into actionable engineering guidance.

Nice To Haves

  • Experience automating SBOM generation and vulnerability scanning within CI/CD pipelines .
  • Experience securing embedded or hardware-focused products.
  • Exposure to DoD Risk Management Framework (RMF) processes.
  • Experience with tactical, soldier-portable, IoT, or other resource-constrained platforms.
  • Practical experience with TPMs, hardware roots of trust, Secure Boot, and code signing .
  • A track record of finding pragmatic ways to satisfy security requirements while preserving system performance.

Responsibilities

  • Partner with hardware and software engineers to implement security-by-design principles, including Secure Boot, code signing, key management, access controls, and hardware security.
  • Interpret and map applicable DISA STIGs and SRGs to firmware, embedded operating systems, and application software.
  • Establish and support Software Bill of Materials (SBOM) processes across development and build environments.
  • Help engineering teams track third-party dependencies, open-source software, and software supply-chain vulnerabilities.
  • Review architectures, technical documentation, and software builds for alignment with NIST SP 800-53 Rev. 5 controls.
  • Analyze static code analysis, vulnerability scanning, and SBOM findings and work with engineers to develop practical remediation strategies.
  • Collaborate with external cybersecurity and compliance stakeholders to support successful system accreditation.
  • Balance security requirements with the real-world constraints of power, weight, processing capacity, and latency in embedded and soldier-portable systems.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service