Maryland Heights, MOremote

Salary
$116,000–$145,000from the description
Posted
Aug 17, 2026
Location
Maryland Heights, MO
Last confirmed open
Aug 20, 2026

What this job asks for AI summary

This role focuses on designing, operating, and troubleshooting SASE and ZTNA platforms in production enterprise environments, including both FedRAMP High/GCCH government cloud and commercial settings. The engineer will own identity federation, conditional access policy, and compliance workflows aligned to NIST and CMMC frameworks, while also writing automation scripts to manage policy-as-code. It suits a hands-on security practitioner with deep networking fundamentals and cross-functional communication skills.

Senior level · 5+ years · Remote · Full-time

Must have (24)
SASE · 5+ yrsZTNA · 5+ yrsCASBSWGSD-WANTLS/PKIDNSSIEMSOAREDRSAMLOIDCSCIMOkta or Azure ADIAMAzure or AWSLinuxWindowsNIST 800-53NIST 800-171CMMCSOC 2 or Soc 1ISO 27001Python, PowerShell or Bash
Nice to have (2)
FedRAMPCCNA, Ccsp or CISSP

“or” means any one of them counts — you don't need all of them.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

Roughly 240 people nationally plausibly meet what this posting asks for (information security analysts). range 50–430

Applicant volume Light — Few people clear these requirements, so an application that does clear them gets looked at. Worth applying to even if you miss a nice-to-have.

What gives you an edge
CMMC2%SD-WAN3%NIST 800-1713%SCIM4%

Rare in this occupation — lead with these, and say what you built with them.

What won't set you apart
Linux65%SIEM55%PowerShell51%Python51%Bash51%Azure AD50%Okta50%IAM45%NIST 800-5340%EDR40%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Aug 20, 2026. It is a model, not a headcount.

Why we read it this way (8)

The posting carries no explicit seniority level in the title; the 5-year minimum and depth of requirements support a Senior classification.

U.S. citizenship is a hard requirement due to GCCH environment access, but no specific security clearance is stated as required — the role does not gate on holding or obtaining a clearance.

The role is tagged #LI-REMOTE, indicating fully remote eligibility; no primary office location is specified, so no CBSA is assigned.

The degree (Bachelor's in Cybersecurity/CS/IT) is listed as 'preferred' and explicitly states equivalent experience is accepted in lieu — treated as not required.

SASE/ZTNA vendor-specific certifications (any major platform), CCNA, CCSP, and CISSP are listed under Preferred and explicitly noted as 'preferred but not required.'

FedRAMP High/GCCH experience appears under the Preferred section.

SOC 1/2 and ISO 27001 appear in the required technologies/standards list alongside NIST and CMMC; all are treated as hard gates.

The SOC code is Medium confidence: the role's primary work is security analysis and policy design (15-1212), but the heavy emphasis on network architecture, SASE/SD-WAN platform operation, and troubleshooting below the vendor UI also has characteristics of 15-1244 (Network/Systems Admins). 15-1212 was chosen because policy design, compliance framework application, and identity federation are the dominant described activities.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗