At PMAT, we work on mission critical systems that directly support the warfighter, designing, building, and securing modern digital capabilities across cloud, data, and software environments. Our teams tackle complex, real-world challenges where delivery matters more than theory, and innovation is driven by curiosity, collaboration, and purpose.
In this role, you’ll contribute to Naval Operational Architecture (NOA), working alongside engineers and operators to deliver resilient, forward-leaning solutions in support of national defense.
About the role: PMAT is seeking a highly experienced Cyber Engineer to support the design, automation, security, administration, and sustainment of secure mission-critical environments across development, production, classified, cloud, containerized, and DevSecOps-enabled systems. This role focuses on improving software and infrastructure security posture through vulnerability management, automated security pipelines, container hardening, system hardening, compliance support, and secure infrastructure operations. The candidate will work closely with cybersecurity, software development, infrastructure, platform, engineering, and mission stakeholders to reduce vulnerabilities, implement mitigations, support authorization activities, and maintain secure and reliable environments throughout the development, accreditation, and operational lifecycle. The role requires strong hands-on technical capability, cybersecurity judgment, automation experience, and the ability to communicate security risks and remediation strategies across technical and program audiences.
Responsibilities:
- Design, implement, and improve security automation pipelines within DevSecOps environments by supporting CI/CD integration, automated vulnerability scanning, container security checks, remediation workflows, and secure software delivery practices.
- Support vulnerability management across production, development, cloud, containerized, and classified environments by identifying, tracking, prioritizing, documenting, and remediating findings in accordance with cybersecurity requirements and ISSM-approved timelines.
- Manage and document Plans of Action and Milestones for security findings by maintaining visibility of vulnerability status, remediation progress, risk acceptance considerations, and continuous burndown of medium-level findings.
- Develop and implement mitigations for identified vulnerabilities by applying secure configuration changes, system hardening, patching, container hardening, access control improvements, and infrastructure security enhancements.
- Support the design, administration, and sustainment of secure infrastructure stacks across Linux, Windows Server, virtualization, private cloud, enterprise services, network infrastructure, and containerized environments.
- Implement and remediate security controls in alignment with NIST SP 800-53, DISA STIGs, RMF, ATO, Zero Trust, secure software development lifecycle practices, and other applicable government cybersecurity requirements.
- Support infrastructure and cybersecurity automation by using scripting, configuration management, Infrastructure as Code, and automation tools to streamline system builds, patching, hardening, monitoring, and compliance activities.
- Collaborate with cybersecurity, software, infrastructure, networking, platform, program, and mission stakeholders to troubleshoot complex technical issues, improve security best practices, support accreditation efforts, and communicate risks, dependencies, and recommendations.
About Us: PMAT is an innovative small business founded with a passion for developing forward-leaning solutions from exceptional people that increase the mission's capability. We focus on designing and building impactful digital solutions that utilize modern cloud, data, and software concepts. Our passion is working on complex and progressive challenges such as edge platform computing, containerizing legacy platforms, distributed data platforms, or heterogeneous data analysis.
We recruit, retain, and foster a team motivated to pursue passions, investigate new ways of doing things, and embody an innovative and entrepreneurial spirit. We believe in being curious about every element of a problem and experiment relentlessly. We foster continuous learning in an environment that encourages positive collaboration and expands our capabilities. We tap into collective intelligence, acknowledging that the most brilliant people may not be in the room. Above all else, we believe that delivering and demonstrating is more potent than a sheet of paper. We are passionate about mission-centric design and delivering effective capabilities to and for the warfighter.
Whether you’re an experienced engineer or just beginning your career, you’ll work alongside experts who are committed to solving mission-critical problems. If you’re passionate about using your skills to make a real difference, apply today and become part of a team that’s shaping the future of defense technology!
Required Skills and Experience:
- Extensive experience supporting cybersecurity engineering, infrastructure security, systems administration, platform engineering, DevSecOps, vulnerability management, or related technical security roles.
- Experience supporting enterprise, cloud, containerized, hybrid, classified, application hosting, or compliance-driven technical environments.
- Experience with vulnerability management, system hardening, patching, secure configuration, access control, cyber risk tracking, and remediation planning.
- Experience working with Linux and Windows Server environments, including system administration, troubleshooting, monitoring, patching, and secure configuration activities.
- Experience using scripting, automation, configuration management, or Infrastructure as Code concepts to support cybersecurity and technical operations.
- Experience supporting DevSecOps pipelines, CI/CD workflows, secure software delivery, containerized environments, or automated security scanning.
- Understanding of RMF, ATO, NIST SP 800-53, DISA STIGs, secure SDLC principles, cybersecurity compliance, and authorization support activities.
- Strong written and verbal communication skills with the ability to explain technical issues, cybersecurity risks, dependencies, remediation actions, and recommendations to engineering, cybersecurity, program, and mission stakeholders.
Preferred Skills and Experience:
- Experience with Tekton, Jenkins, CI/CD automation, automated Docker container builds, container security hardening, and DevSecOps security pipeline development.
- Experience with Kubernetes, OpenShift Container Platform, service mesh environments, container security scanning tools, and multi-enclave security pipeline development.
- Experience with security tools and platforms such as ACAS, Nessus, Splunk, HBSS, endpoint security tools, vulnerability scanners, and enterprise monitoring platforms.
- Experience administering or securing VMware ESXi, vSAN, RHEL, Amazon Linux, Windows Server, private cloud, on-premises cloud, and secure data center environments.
- Experience with automation and scripting tools such as Ansible, Terraform, Bash, Python, PowerShell, JavaScript, YAML, JSON, Git, CloudFormation, PDQ, WSUS, or related technologies.
- Experience with AWS or AWS GovCloud infrastructure services such as EC2, Security Groups, S3, EBS, EFS, Route 53, IAM, CloudFormation, CloudWatch, Lambda, ELB, VPCs, subnets, route tables, endpoints, NACLs, Transit Gateways, VPC peering, AWS Directory Services, AWS Workspaces, and AWS CLI.
- Experience with foundational infrastructure and security services such as DNS, PKI, TLS, LDAP, Active Directory, authentication, authorization, OpenID Connect, SAML, single sign-on, databases, YUM repositories, Veeam, Horizon, Atlassian Suite, and enterprise monitoring tools.
- Experience supporting LAN/WAN environments, virtualized network backbones, routing, switching, OSPF, BGP, firewall concepts, ports and protocols, and complex network troubleshooting.
- Experience supporting ATO packages, security control assessments, compliance documentation, control validation, cybersecurity audits, POA&M management, and classified or restricted environment accreditation activities.
- Experience supporting Department of War Cybersecurity Workforce requirements, including DoW 8140 qualification alignment or the ability to satisfy applicable workforce requirements.
- Prior experience supporting government, Navy, Intelligence Community, national-level, or mission-critical classified environments.
Education and Certification Requirements:
- Bachelor’s Degree or Equivalent Experience
- Current Security+ Certificate
Citizenship and Clearance requirements:
- U.S. Citizenship required
- No dual citizenship
- SECRET security clearance required
- TS/SCI Eligible security clearance a plus
Location/Address:
- 100% On-site
- San Diego, CA, NAVWAR
Travel & Passport: 5%, CONUS and OCONUS
Work Environment: PMAT offices as needed. In some cases, work in a government facility may be required. Travel may be required for customer engagement, team coordination, and potentially for business development.
PMAT is an equal-opportunity employer. We believe in hiring a diverse workforce and sustaining an inclusive, people-first culture. We are committed to non-discrimination on any protected basis, such as disability and veteran status, or any other basis covered under applicable law.
#CJ