CybersecurityJobs.io
← Back to all jobs

Job Description

BOOST LLC is seeking a Cybersecurity SME to support mission-critical security work for the USSF’s Warp Core data platform in Colorado Springs, Colorado. In this onsite role, you will help evaluate and strengthen the security posture of critical systems, advise on risk and compliance, and work closely with engineering and cross-functional stakeholders to align security controls with the SDLC.

What You Will Do

  • Perform independent, in-depth assessments of system security controls to support compliance and strong cybersecurity hygiene.
  • Act as a technical authority for cybersecurity topics, advising on risk management, threat mitigation, and compliance strategy.
  • Lead or oversee vulnerability assessments, penetration testing, and threat modeling to identify gaps, evaluate risk, and recommend corrective actions.
  • Assess and recommend security policies, frameworks, and standards mapped to NIST, ISO 27001, GDPR, and DoD RMF requirements.
  • Partner with engineering, operations, and leadership to integrate security best practices into system and software development lifecycles (SDLC).
  • Monitor emerging threats, technologies, and regulations to maintain an up-to-date security strategy.
  • Mentor and train team members on cybersecurity practices and tools.
  • Deliver security assessment reports, recommendations, and metrics to senior leadership and stakeholders.

Required Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, or a related field, plus 12+ years of cybersecurity architecture experience; or a Master’s degree plus 10+ years experience.
  • 12+ years of progressive experience as a cybersecurity engineer securing and assessing large-scale or complex enterprise software efforts.
  • 5+ years of commercial industry experience securing and assessing complex enterprise software projects.
  • Advanced knowledge of threat analysis, vulnerability management, and incident response best practices.
  • Knowledge of how to review outputs from security tools, including SIEMs, firewalls, IDS/IPS, and endpoint protection solutions.
  • Expert understanding of security frameworks, compliance standards, and regulations such as NIST, ISO 27001, GDPR, and DoD RMF.
  • Detailed experience with identity and access management (IAM), encryption technologies, network/cloud security, and secure software development best practices.
  • Proficiency in conducting threat modeling and risk analysis to identify and mitigate vulnerabilities.
  • Expert problem-solving and analytical skills for complex, large-scale security challenges.
  • Excellent communication skills for engaging leadership, stakeholders, and development teams, plus industry or academic communities.
  • Ability to obtain and maintain a TS/SCI clearance and willingness to take a CI polygraph.

Relevant Frameworks and Tools

  • NIST, ISO 27001, GDPR, DoD RMF
  • SIEMs, firewalls, IDS/IPS, endpoint protection solutions
  • Identity and access management (IAM), encryption technologies
  • Network/cloud security, secure software development best practices
  • SDLC

Benefits

  • Competitive salary range of $200,000–$310,000 per year, based on experience.
  • Options for 100% company-paid medical, dental, and vision premiums.
  • 401K matching up to 6% with immediate 100% vesting.
  • 25 days of PTO plus 10 federal holidays.

Highly Desirable Qualifications

  • Certifications such as CISSP, CISM, CEH, GIAC, or CCSP.
  • Experience securing government or defense-related systems and environments.
  • Expertise in advanced threat detection, threat hunting, and forensic analysis.
  • Knowledge of DevSecOps practices and integrating security into CI/CD pipelines.
  • Familiarity with zero-trust architectures and AI-driven security technologies.
  • Experience working in highly classified environments supporting the IC/DoD for operational missions.

Similar Jobs