- Страна
- США
- Зарплата
- 94 000 $ – 117 000 $
Откликайтесь
на вакансии с ИИ

Cybersecurity Administrator II - CUI
Привлекательная вакансия в инновационной аэрокосмической компании с прозрачным диапазоном зарплаты и отличным пакетом льгот, включая опционы. Работа над критически важными государственными проектами обеспечивает высокую стабильность и профессиональный престиж.
Сложность вакансии
Роль требует глубоких знаний специфических федеральных стандартов США (NIST, CMMC) и опыта работы с государственными контрактами, что сужает круг подходящих кандидатов. Высокая ответственность за защиту критически важной информации в аэрокосмической отрасли добавляет сложности.
Анализ зарплаты
Предложенная зарплата ($94k - $117k) находится в пределах рыночной нормы для Колорадо, хотя верхняя граница чуть ниже медианы для узких специалистов по CMMC/NIST в оборонном секторе, где ставки могут достигать $130k+. Тем не менее, наличие опционов (Equity Grants) может значительно повысить общую компенсацию.
Сопроводительное письмо
I am writing to express my strong interest in the Cybersecurity Administrator II position at Ursa Major. With over six years of experience in cybersecurity and a deep specialization in federal compliance, I am confident in my ability to lead your risk mitigation strategies for Controlled Unclassified Information (CUI). My background includes extensive work with NIST SP 800-171 and CMMC frameworks, ensuring that critical defense data remains secure while enabling operational efficiency.
In my previous roles, I have successfully managed complex security infrastructures, including SIEM and IDS/IPS systems, and led the development of System Security Plans (SSPs). I am particularly drawn to Ursa Major’s mission of revolutionizing propulsion technology and would welcome the opportunity to apply my technical leadership to protect the intellectual property that drives your innovation. I am eager to bring my expertise in audit readiness and incident response to your intrinsically motivated team.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в ursamajor уже сейчас
Присоединяйтесь к команде Ursa Major и защитите будущее американской аэрокосмической отрасли уже сегодня!
Описание вакансии
The future of aerospace and defense starts here.
Ursa Major was founded to revolutionize how America and its allies access and apply high-performance propulsion, from hypersonics to solid rocket motors, satellite maneuvering and launch. We design and deliver propulsion and defense systems that solve the most urgent and critical national security demands.
We are bringing a new model to space access: one in which every link in an enormous value chain isn’t limited by those around it. We design rocket engines and propulsion solutions.
Our products and technologies require an extraordinary team. A team that will ensure the security of tomorrow’s technologies while deploying today’s best. We are an intrinsically motivated team with a passion for solving problems and empowering each other every day to develop our skills, knowing that there is always room for growth.
The Cybersecurity Administrator II is a technical leadership role responsible for overseeing the organization’s cybersecurity strategy with a primary focus on risk mitigation for Controlled Unclassified Information (CUI). This position involves managing advanced security infrastructure, conducting high-level risk assessments, and leading the implementation of security policies to ensure compliance with federal regulations such as NIST SP 800-171 and CMMC. The Administrator will collaborate with stakeholders to reduce the probability of a material impact due to a cyber event, specifically targeting the protection of sensitive data flows.
Responsibilities:
- Risk Mitigation & CUI Oversight
+ Identify and Prioritize Risks: Conduct high-level risk assessments and threat modeling specifically focused on the protection of CUI and Federal Contract Information (FCI).
+ Develop Mitigation Strategies: Oversee the implementation and advancement of comprehensive risk mitigation strategies to ensure data integrity and confidentiality at the CUI level.
+ Data Flow Analysis: Work with stakeholders and external vendors to ensure risk management and CUI handling protocols are embedded in all applicable organizational processes and systems.
+ Technical Controls: Establish and enforce advanced security policies and protocols across the organization to meet stringent federal data protection standards.
- Security & Compliance Management
+ Infrastructure Optimization: Manage and optimize security infrastructure, including firewalls, IDS/IPS, and SIEM systems, ensuring they are tuned to detect threats against sensitive data environments.
+ Federal Compliance Leadership: Lead the technical implementation of compliance programs to adhere to CMMC, NIST (800-171/800-53), FISMA, and FedRAMP.
+ Documentation & Auditing: Develop and maintain critical documentation, including System Security Plans (SSPs), Risk Assessment Reports (RARs), and Plan of Action and Milestones (POA&M) specifically for CUI-governed systems.
+ Audit Readiness: Oversee regular compliance audits and assessments, ensuring all findings related to CUI protection are addressed promptly.
- Incident Response & Mentorship
+ Directed Response: Lead the development of incident response plans and manage efforts for cybersecurity incidents, ensuring effective containment and recovery of impacted CUI assets.
+ Post-Incident Analysis: Conduct detailed post-incident analysis to extract lessons learned and improve future risk mitigation strategies.
+ Training and Awareness: Develop and lead cybersecurity training programs for employees and junior staff, focusing on proper CUI handling and compliance requirements.
- Other duties as assigned.
Qualifications:
- Education & Experience: Minimum of 5-7 years of experience in cybersecurity, with a heavy focus on risk management and federal data protection.
+ An equivalent combination of a Master’s degree with 1-3 years of experience, or a Bachelor’s degree with 3-5 years of experience is acceptable.
- Regulatory Expertise: Extensive experience working with government contracts and a deep understanding of federal cybersecurity regulations, particularly NIST SP 800-171 and CMMC.
- Certifications: Advanced certifications such as CISSP, CISM, or CISA are preferred; specialized risk certifications like CRISC or CEH are a significant plus.
- Skills: Advanced proficiency in security technologies (SIEM, firewalls, IDS/IPS).
- Clearance: Ability to obtain and maintain government security clearance is strongly preferred.
- Strong leadership, mentorship, and communication skills to bridge the gap between technical requirements and management goals.
Colorado law requires us to tell you the base compensation range of this role, which is $94,000 - $117,000, determined by your education, experience, knowledge, skills, and abilities. The salary range for this role is intentionally wide as we are evaluating individuals based on their unique experience and abilities to fit our needs. Most importantly, we are excited to meet you, and see if you are a great fit for our team. What we can’t quantify for you are the exciting challenges, supportive team, and amazing culture we enjoy.
Classification: Full-Time, Exempt
Click here for more information about our awesome benefits.
Benefits Include: (Please note, Interns are not eligible for benefits)
- Unlimited PTO - Vacation, Sick, Personal, and Bereavement
- Paid Parental and Adoptive Leave
- Medical, Dental and Vision Insurance
- Tax Advantage Accounts (HSA/FSA)
- Employer Paid Short and Long Term Disability, Basic Life, AD&D
- Additional Benefit Options Including Voluntary Life and Emergency Medical Transport
- EAP Program
- Retirement Savings Plan - 401k with Company Match
- Equity Grants in the Company
How To Apply:
Interested candidates are encouraged to apply by filling out the application below and clicking "Submit Application". This position will be posted for a minimum of 3 days and will remain open until filled or adjusted based on the volume of applicants.
NOTE: Research suggests that women and BIPOC individuals may self-select out of opportunities if they don't meet 100% of the job requirements. We encourage anyone who believes they have the skills and the drive necessary to succeed here to apply for this role.
US CITIZENSHIP, PERMANENT RESIDENCY, REFUGEE OR ASYLUM STATUS IS REQUIRED.
Eligibility to obtain and maintain a U.S. Security Clearance.
We’re an equal-opportunity employer. You will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.
No outside recruiters, please.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- FedRAMP
- CISA
- CISSP
- CISM
- CMMC
- FISMA
- Risk Assessment
- Incident Response
- Firewalls
- CEH
- SIEM
- IDS/IPS
- CRISC
- NIST SP 800-171
Возможные вопросы на собеседовании
Позиция сфокусирована на CUI, поэтому важно понимать практический опыт кандидата с этим стандартом.
Опишите ваш опыт внедрения контроля NIST SP 800-171. С какими самыми большими трудностями вы столкнулись при подготовке к сертификации CMMC?
Проверка технических навыков управления защитной инфраструктурой.
Как вы оптимизируете правила SIEM и IDS/IPS для минимизации ложных срабатываний при сохранении высокого уровня обнаружения угроз в среде с конфиденциальными данными?
Роль предполагает лидерство и наставничество.
Расскажите о случае, когда вам нужно было убедить руководство или смежный отдел внедрить строгую политику безопасности, которая могла замедлить рабочие процессы. Как вы нашли баланс?
Оценка навыков реагирования на инциденты.
Каков ваш алгоритм действий при обнаружении потенциальной утечки CUI? Какие шаги по сдерживанию и отчетности вы предпримете в первую очередь?
Проверка навыков документирования, критически важных для комплаенса.
Какой подход вы используете при ведении Плана действий и вех (POA&M)? Как вы приоритизируете устранение уязвимостей?
Похожие вакансии
Специалист по защите информации (Mobile Security Engineer)
Senior Information Security (ИБ)
Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)
Специалист по информационной безопасности (Пентестер)
Исследователь безопасности Android
Senior AppSecOps Engineer
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- США
- Зарплата
- 94 000 $ – 117 000 $