About The Position

Applied Research Associates, Inc. (ARA) is looking for a bright, motivated, and energetic individual who embraces our core values of Passion, Freedom, Service, and Growth! As an Information System Security Engineer, you will participate in a dynamic team to develop, test, and validate Department of Defense (DoD) Risk Management Framework (RMF) security controls across cloud environments. You will also be offered learning opportunities that will help you grow your technical and professional skills and allow you to pursue the work you are passionate about.

Requirements

  • US citizenship (Selected applicants will undergo a security investigation and must meet eligibility requirements at the time of employment)
  • BS or higher in Cybersecurity, Computer Science, Information Technology, Engineering, Applied Mathematics, or a closely related field
  • Active AWS Certification
  • 5-7 years of relevant work experience with a bachelor’s degree, or 3-5 years of relevant work experience with a master’s degree
  • Excellent communication, documentation, and collaboration skills
  • Ability to work onsite 3 days per week in Raleigh, NC

Nice To Haves

  • 2+ years of hands-on experience implementing IaC and CaC
  • 3+ years of hands-on experience administering Windows and Linux systems
  • AWS Solutions Architect or Security Specialty Certification
  • CompTIA Security + Certification
  • Active DoD Secret Clearance (At the time of hire)
  • Experience supporting or implementing the DoD RMF
  • Experience with ACAS and other vulnerability scanners
  • Experience using security monitoring and endpoint protection tools such as Splunk, Microsoft Defender, and Clam AV
  • Experience applying DISA STIGs and Security Requirement Guides (SRGs)
  • Experience identifying, prioritizing, and remediating operating system, application, and infrastructure vulnerabilities
  • Familiarity with continuous monitoring, vulnerability management, and security compliance processes

Responsibilities

  • Work alongside system administrators, software developers, and customers to identify and remediate cybersecurity vulnerabilities
  • Deploy and manage security tools via Infrastructure as Code (IaC) and Configuration as Code (CaC) such as Assured Compliance Assessment Solution (ACAS), Splunk, Microsoft Defender, and Clam AV to monitor system health, assess security compliance, and investigate findings
  • Apply Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIG), security best practices, and configuration management processes to harden systems and maintain compliance with DoD cybersecurity requirements

Benefits

  • Employee-owned
  • Learning opportunities
  • Challenging culture where innovation & experimentation are the norm
  • Voice in company decisions
  • Women’s Initiative Network (WIN)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service