Job Requirements
Remote
Secret Polygraph not specified
Senior Level Career (10+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries
Job Description
DSD LABORATORIES, INC.
Senior Cybersecurity Engineer
Information System Security Manager (designate) DSD
Security Clearance Requirement: An active Secret clearance is preferred; at minimum, candidates must be able to obtain and maintain a Secret clearance.
REPORTS TO
Chief Info. Security Officer LOCATION
Fully Remote (U.S.) EMPLOYMENT TYPE
Full-Time, Exempt
DIRECT REPORTS
None (IC Role) TRAVEL
None Anticipated CLEARANCE
Secret (Preferred)
Position Overview
DSD Laboratories is hiring its first dedicated Senior Cybersecurity Engineer to own the security engineering, assurance, and continuity of an environment that supports Department of Defense work — a Microsoft Government-cloud estate, a set of internal business platforms, and a product suite heading toward a formal authorization. Much of what you will own does not exist yet; you will be defining it.
This role was approved and funded following an independent 2026 review of DSD's technology function, with managed detection and response, retained incident response, and external assessment funded alongside it. Your mandate is to make DSD's security posture demonstrable — to customers, assessors, and auditors — and to build the operational depth that lets this environment run and recover without depending on any one person.
What You Will Do
● Serve as the named alternate administrator for the Microsoft 365 and Azure Government tenant, HAL, GitLab, and the corporate wiki.
● Hold escrowed break-glass credentials under dual control, and demonstrate recovery competence through restore tests you personally perform.
● Own the control register, System Security Plan, and plan of action and milestones.
● Support the NIST SP 800-53 Rev 5 policy programme and the authorization package for the DSD Forge product suite.
● Own daily triage and disposition of alerts from the managed detection service and internal automation.
● Own vulnerability management end to end, and manage the managed detection vendor relationship.
● Serve on the incident command roster as a deputy commander, and hold a DoD-approved medium assurance certificate for regulatory incident reporting.
● Own evidence preservation configuration, retention verification, and chain of custody.
● Administer privileged access management, conditional access policy, and secrets management across the estate.
● Embed secrets scanning, dependency analysis, and software bill of materials generation into product pipelines.
● Respond to customer and prime contractor security questionnaires and supply chain due diligence.
Required Qualifications
● Seven or more years in cybersecurity engineering or a closely related discipline, including at least three in a regulated or government-adjacent environment.
● Hands-on administration and security engineering in Microsoft 365 and Azure — Entra ID, conditional access, Defender, and log analytics.
● Demonstrated experience implementing or evidencing a formal control framework such as NIST SP 800-171 or 800-53.
● Direct experience responding to security incidents in a production environment, including the judgement calls made under time pressure.
● Active U.S. Government Secret clearance preferred; at minimum, must be eligible to obtain and maintain a Secret clearance.
Preferred Qualifications
● Microsoft Government cloud experience specifically — GCC High or Azure Government — as distinct from commercial tenancy.
● CMMC experience from either side of an assessment.
● FedRAMP, DoD Cloud Computing SRG, or Impact Level 4 and 5 authorization package experience.
● Prior designation as an ISSM or ISSO.
● Detection engineering, KQL, and log pipeline design.
● Infrastructure as code, CI/CD security, SBOM generation, and dependency scanning.
● Certifications aligned to the role — CISSP, CISM, CCSP, AZ-500, SC-200, or equivalent.
DSD Laboratories, Inc. is an Equal Opportunity Employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other status protected under applicable federal, state, or local law.
Senior Cybersecurity Engineer
Information System Security Manager (designate) DSD
Security Clearance Requirement: An active Secret clearance is preferred; at minimum, candidates must be able to obtain and maintain a Secret clearance.
REPORTS TO
Chief Info. Security Officer LOCATION
Fully Remote (U.S.) EMPLOYMENT TYPE
Full-Time, Exempt
DIRECT REPORTS
None (IC Role) TRAVEL
None Anticipated CLEARANCE
Secret (Preferred)
Position Overview
DSD Laboratories is hiring its first dedicated Senior Cybersecurity Engineer to own the security engineering, assurance, and continuity of an environment that supports Department of Defense work — a Microsoft Government-cloud estate, a set of internal business platforms, and a product suite heading toward a formal authorization. Much of what you will own does not exist yet; you will be defining it.
This role was approved and funded following an independent 2026 review of DSD's technology function, with managed detection and response, retained incident response, and external assessment funded alongside it. Your mandate is to make DSD's security posture demonstrable — to customers, assessors, and auditors — and to build the operational depth that lets this environment run and recover without depending on any one person.
What You Will Do
● Serve as the named alternate administrator for the Microsoft 365 and Azure Government tenant, HAL, GitLab, and the corporate wiki.
● Hold escrowed break-glass credentials under dual control, and demonstrate recovery competence through restore tests you personally perform.
● Own the control register, System Security Plan, and plan of action and milestones.
● Support the NIST SP 800-53 Rev 5 policy programme and the authorization package for the DSD Forge product suite.
● Own daily triage and disposition of alerts from the managed detection service and internal automation.
● Own vulnerability management end to end, and manage the managed detection vendor relationship.
● Serve on the incident command roster as a deputy commander, and hold a DoD-approved medium assurance certificate for regulatory incident reporting.
● Own evidence preservation configuration, retention verification, and chain of custody.
● Administer privileged access management, conditional access policy, and secrets management across the estate.
● Embed secrets scanning, dependency analysis, and software bill of materials generation into product pipelines.
● Respond to customer and prime contractor security questionnaires and supply chain due diligence.
Required Qualifications
● Seven or more years in cybersecurity engineering or a closely related discipline, including at least three in a regulated or government-adjacent environment.
● Hands-on administration and security engineering in Microsoft 365 and Azure — Entra ID, conditional access, Defender, and log analytics.
● Demonstrated experience implementing or evidencing a formal control framework such as NIST SP 800-171 or 800-53.
● Direct experience responding to security incidents in a production environment, including the judgement calls made under time pressure.
● Active U.S. Government Secret clearance preferred; at minimum, must be eligible to obtain and maintain a Secret clearance.
Preferred Qualifications
● Microsoft Government cloud experience specifically — GCC High or Azure Government — as distinct from commercial tenancy.
● CMMC experience from either side of an assessment.
● FedRAMP, DoD Cloud Computing SRG, or Impact Level 4 and 5 authorization package experience.
● Prior designation as an ISSM or ISSO.
● Detection engineering, KQL, and log pipeline design.
● Infrastructure as code, CI/CD security, SBOM generation, and dependency scanning.
● Certifications aligned to the role — CISSP, CISM, CCSP, AZ-500, SC-200, or equivalent.
DSD Laboratories, Inc. is an Equal Opportunity Employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other status protected under applicable federal, state, or local law.
group id: 10147693