Peraton Logo

Peraton

Cyber Security Engineer

Posted 6 Hours Ago
Remote
Hiring Remotely in United States
112K-179K Annually
Senior level
Remote
Hiring Remotely in United States
112K-179K Annually
Senior level
Owns compliance documentation and security control narratives for an Agentic AI platform. Responsibilities include authoring System Security Plans, managing POA&Ms, coordinating audit evidence, supporting RMF and ATO activities, maintaining policies and SOPs, and partnering with cloud, platform, and security engineers. The role validates that documentation reflects implemented infrastructure and supports CMMC, FedRAMP, DoD, and NIST-aligned compliance efforts.
The summary above was generated by AI
Responsibilities

Peraton Labs is seeking a Senior Cyber Security Engineer to help establish, maintain, and mature the written compliance posture of our Agentic AI platform environment. This individual will play a critical role in ensuring our documented security and compliance artifacts accurately reflect the infrastructure, controls, and operational realities of the platform.


This role will own the development and maintenance of core compliance documentation, including System Security Plans (SSPs), supporting policies and standard operating procedures, POA&M management, and audit evidence coordination. This role will ensure proper security control implementation and be responsible for end-to-end Risk Management Framework (RMF) and Authority to Operate (ATO) compliance. The ideal candidate is highly detail-oriented, strong in policy and control documentation, and comfortable working closely with platform and security engineers to translate technical implementation into clear, auditor-ready language.


This is a high-trust role at the intersection of compliance, policy, and platform execution. The right candidate will serve as the connective tissue between what is written, what is required, and what is actually built and operated.


Key responsibilities may include, but are not limited to:

  • Own and maintain the written compliance posture of the Agentic AI platform
  • Author, update, and evolve System Security Plans (SSPs) and related compliance artifacts in support of ATO and broader assessment efforts
  • Develop additional SSPs and associated documentation required to support expanding authorization needs
  • Build, organize, and maintain a comprehensive security policy and SOP library aligned to relevant control frameworks
  • Manage POA&Ms, including documenting gaps, tracking remediation progress, and maintaining visibility into open items
  • Coordinate and run evidence collection cycles in support of internal reviews, external assessments, and audit activities
  • Serve as the primary compliance point of contact for internal auditors, external assessors, and compliance stakeholders
  • Partner closely with platform, cloud, and security engineers to validate that documented control narratives accurately reflect implemented infrastructure and operational practices
  • Review architecture diagrams, infrastructure-as-code, technical diagrams, and engineering documentation to ensure compliance materials remain accurate and defensible
  • Help ensure consistency, traceability, and quality across all compliance documentation and supporting artifacts
  • Identify documentation gaps, policy inconsistencies, or control narrative issues early and drive them to resolution
  • Support the maturation of repeatable compliance processes that strengthen audit readiness over time
Qualifications

Required Qualifications

  • Minimum of BS with 12+ years of experience, MS with 10+ years of experience, or a Ph.D. with 7 years of experience in security compliance, GRC, cybersecurity policy, or related compliance-focused roles
  • Deep hands-on experience authoring and maintaining System Security Plans (SSPs) aligned to NIST 800-171 and NIST 800-53
  • Demonstrated experience supporting systems through ATO efforts, formal security assessments, and/or CMMC readiness activities
  • Experience managing POA&Ms, coordination remediation tracking, and running structured evidence collection cycles
  • Strong background serving as a primary point of contact for auditors, assessors, and compliance stakeholders
  • Proven ability to build and maintain policy libraries, standards, and SOPs aligned to a formal control framework
  • Ability to read and interpret architecture diagrams, infrastructure-as-code, and technical documentation well enough to validate that control narratives reflect implemented reality
  • Working knowledge of AWS and cloud-native environments, including concepts such as EKS, IAM, logging, encryption, and cloud security controls
  • Exceptional attention to detail, with the ability to identify vague, conflicting, or incomplete documentation and drive clarity
  • Strong written communication skills, with the ability to translate technical implementation into concise, auditor-ready language
  • US Citizenship is required for this position

Desired Qualifications

  • Experience supporting CMMC Level 2 preparation, assessment, or sustainment activities
  • Background contributing to FedRAMP or DoD ATO packages
  • Experience working in highly technical cloud or platform environments where security controls must be mapped directly to operational systems
  • Familiarity with evidence management, control traceability, and structured documentation practices in regulated environments
  • Experience collaborating closely with cloud, DevSecOps, or platform engineering teams
  • Ability to operate effectively in an environment where compliance maturity is actively being built and refined
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range$112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Similar Jobs

Yesterday
Remote or Hybrid
New York, NY, USA
125K-155K Annually
Senior level
125K-155K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Designs and evaluates secure enterprise technology deployments through end-to-end security and threat analysis. Partners with business, IT, and cybersecurity teams on network, application, cloud, and enterprise security controls. Develops security guidance and mitigation requirements, communicates cybersecurity programs to stakeholders, documents best practices, and provides technical mentorship across concurrent initiatives.
Top Skills: CcpaCis Critical Security ControlsCloud Security MatrixCwe/Sans Top 25Endpoint Detection And Response (Edr)GdprHipaaIaasMitre Att&CkNist CsfOwasp Top 10PaasPci DssSaaSSox
7 Days Ago
Remote or Hybrid
Senior level
Senior level
Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Leads the design and implementation of advanced cybersecurity solutions, conducts risk and vulnerability assessments, develops incident response plans, and mitigates security incidents. Acts as a cybersecurity subject matter expert, partners with cross-functional teams and senior leadership, guides cybersecurity strategy, leads teams through influence, and evaluates emerging technologies and best practices to improve organizational security and resilience.
Top Skills: CismCisspCybersecurityDigital AnalysisGiacIncident ResponseRisk AssessmentVulnerability Assessment
23 Days Ago
Remote or Hybrid
221K-387K Annually
Expert/Leader
221K-387K Annually
Expert/Leader
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Lead architecture and implementation of internal AI security across agentic tools, LLMs, and RAG pipelines. Threat model AI surfaces, define governance and enforceable controls, partner on AI threat research, modernize cyber defense with AI, and mentor engineers to deliver production-grade security solutions.
Top Skills: Agentic Ai FrameworksCloud SecurityDetection EngineeringEndpoint SecurityIamIncident ResponseLangchainLanggraphLlmsRag Pipelines

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account