Senior DevSecOps Cybersecurity Engineer at KBR
Colorado Springs, CO
$149,000–$186,000from the description
Jul 20, 2026
Colorado Springs, CO
Jul 21, 2026
What this job asks for AI summary
A senior cybersecurity engineering role embedded within Agile and DevSecOps software delivery teams, focused on enabling secure deployment of mission capabilities into accredited IL5 and IL6 government production environments. Day-to-day work centers on CVE analysis and remediation, Risk Management Framework execution, ATO support, and cybersecurity documentation, with regular coordination across developers, cloud engineers, ISSMs, and government stakeholders. Suits an experienced practitioner with deep RMF and DoD compliance knowledge who can bridge technical and non-technical audiences.
Senior level · 7+ years · Los Angeles-Long Beach-Anaheim, CA · Bachelor's required · Secret clearance · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,481 (middle half $96,915–$170,448). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (9)
The role has two primary locations: El Segundo, CA and Colorado Springs, CO. Compensation ($149K–$186K/year) is quoted specifically for El Segundo, CA; Colorado Springs compensation is not stated. The CBSA reflects the El Segundo/LA metro where the salary range applies.
Work-from-home flexibility is mentioned but on-site support is required, so this is not a fully remote role.
The posting requires the ability to obtain a Secret clearance as a hard gate; an active Secret or higher is listed as preferred.
A Bachelor's degree in a relevant technical field is explicitly required; a Master's is listed as preferred.
Prisma Cloud and Twistlock are listed together as alternatives in the preferred security tooling list — Twistlock is the legacy name for Prisma Cloud Compute, so they are captured as a single skill with an alternative.
CISSP, CASP+, Security+, CISM, CCSP, and GIAC certifications are all listed as preferred alternatives under the same bullet; CISSP is used as the primary name with the others as alternatives. INCOSE CSEP/ESEP certifications appear in a separate preferred bullet and are non-technical credentials, so they are omitted per the skills extraction rules.
The alternative occupation code (15-1252 Software Developers) reflects that this role is embedded in DevSecOps delivery teams and involves evaluating deployment pipelines and secure software release processes, but the primary day-to-day work is clearly cybersecurity/RMF/compliance, making 15-1212 the stronger fit.
Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): CVE analysis, IL5/IL6 cloud environments.
Requires a Secret clearance — the cleared population is a small fraction of this occupation, so the real candidate pool is materially smaller than the estimate below, which does not model clearance.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.