Product Security Engineering 2

Indotronix International CorporationColorado Springs, CO
Onsite

About The Position

The candidate will partner directly with the Cyber Engineering organization to embed and validate cybersecurity solutions on the C2BMC platform at COS HWY-83, ensuring that all security controls are correctly implemented and fully tested. Serve as the primary liaison with the Cyber Test Facility (CTF) at MIDOC, where they will coordinate test events, validate test plans submitted by cyber teams, and brief program leadership on their analysis of the test plan while assisting the teams in identifying the specific cyber requirements needed for successful execution. Support cyber teams by facilitating the timely delivery of capabilities and solutions while maintaining a strong focus on vulnerability management. Handle Information Assurance Vulnerability Management (IAVM) tickets, Cyber Tasking Orders (CTO), Common Vulnerabilities and Exposures (CVE) remediation, vendor-issued patch integration, and the application and verification of DISA STIG configurations.

Requirements

  • Generally has 3+ years of related experience.
  • May have a post-secondary degree or training in a related discipline.
  • Must have an active full Secret DoD security clearance at start.
  • Must have a DoD 8140 IAT-Level II certification (e.g., Security+ or higher) at start.
  • Strong working knowledge of cyber capabilities, including: Patch management, Multi-factor authentication, Host-based security, Intrusion detection, Security event management, Active/passive system scanning, Defense-in-depth.
  • Strong working knowledge of core cyber capabilities, including patch management, Group Policy Object (GPO) management, and proven remediation techniques for addressing cybersecurity vulnerabilities and threats.
  • Security-engineering expertise in Information Assurance (IA) technologies, NIST standards, DoDI 8500.2, and Risk Management Framework (RMF) security controls.
  • Hands-on experience throughout the Agile development lifecycle, specifically using the Scrum framework, including: Identifying requirements, Defining user stories, Participating in sprint planning, Participating in daily stand-ups, Participating in sprint reviews.
  • Solid understanding of Software Development Life Cycle (SDLC) models and testing processes.
  • Proficiency in cyber-tool software applications.
  • Leadership experience.
  • Strong interpersonal skills.
  • Ability to support complex organizational relationships.
  • Excellent technical writing and verbal communication skills to present technical cyber issues and reports to government stakeholders, program management, and other C2BMC functional areas.

Nice To Haves

  • Wide application of principles, theories, and concepts in their field and provides solutions to a wide range of difficult problems with imaginative and thorough solutions.
  • Works under general direction, and results are reviewed upon completion for adequacy in meeting objectives.
  • Failure to achieve results normally results in serious program delays and considerable expenditure of resources.
  • Frequent internal and external customer contacts and represents the organization in providing solutions to difficult technical issues associated with specific projects.

Responsibilities

  • Partner directly with the Cyber Engineering organization to embed and validate cybersecurity solutions on the C2BMC platform.
  • Serve as the primary liaison with the Cyber Test Facility (CTF) at MIDOC.
  • Coordinate test events.
  • Validate test plans submitted by cyber teams.
  • Brief program leadership on analysis of test plans.
  • Assist teams in identifying specific cyber requirements for successful execution.
  • Support cyber teams by facilitating the timely delivery of capabilities and solutions.
  • Maintain a strong focus on vulnerability management.
  • Handle Information Assurance Vulnerability Management (IAVM) tickets.
  • Handle Cyber Tasking Orders (CTO).
  • Handle Common Vulnerabilities and Exposures (CVE) remediation.
  • Handle vendor-issued patch integration.
  • Apply and verify DISA STIG configurations.
  • Review test plans and test cases supplied by development teams.
  • Verify that test plans and test cases are correctly implemented.
  • Execute tests.
  • Provide clear, actionable feedback to ensure compliance with cybersecurity requirements.
  • Configure cyber audit tools.
  • Perform cyber vulnerability assessments.
  • Handle configuration activities.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service