
This is a U.S. based position. All of the programs we support require U.S. citizenship to be eligible for employment. All work must be conducted within the continental U.S.
Who we are:
Raft (https://TeamRaft.com) is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a leader in autonomous data fusion and Agentic AI, with a purposeful focus on Distributed Data Systems, Platforms at Scale, and Complex Application Development. With headquarters in McLean, VA, our range of clients includes innovative federal and public agencies leveraging design thinking, cutting-edge tech stack, and cloud-native ecosystem. We build digital solutions that impact the lives of millions of Americans.
About the role:
- Maintain and improve the cybersecurity posture of the cloud platform stack across classified and unclassified environments.
- Support Authority to Operate (ATO) and continuous Authority to Operate (cATO) requirements and ensure platform changes remain aligned with the applicable DoD Reference Design and approved security baseline.
- Identify, analyze, prioritize, and remediate vulnerabilities across cloud infrastructure, Kubernetes environments, containers, applications, and supporting technologies.
- Integrate security controls and automated security testing into DevSecOps and GitOps workflows.
- Support continuous monitoring and integration with applicable DoD Cyber Service Providers.
- Develop and maintain security automation using Infrastructure as Code and Configuration as Code, including technologies such as Terraform, Ansible, Helm, Kubernetes Operators, and similar tooling.
- Ensure the use of current hardened containers from Iron Bank and support updates to platform components outside the Iron Bank/Big Bang baseline, including firewalls, Kubernetes distributions, and cloud-provider services.
- Support security capabilities associated with Zero Trust, identity, access control, PKI, authentication, authorization, ingress/egress, and micro-segmentation.
- Monitor and update access and security policies, attestations, groups, users, devices, certificates, and resource entitlements.
- Support integration with DoD PKI and Single Sign-On capabilities.
- Support and secure technologies that may include AppGate, Palo Alto firewalls, HashiCorp Vault and Consul, Keycloak, Zeek, and RKE2/Kubernetes.
- Develop and maintain cybersecurity and accreditation documentation in support of the DoD Risk Management Framework (RMF).
- Partner with DoD teams and other stakeholders to improve security processes and accelerate secure enterprise deployments.
- Participate in Agile development processes, including backlog refinement, technical planning, implementation, testing, and delivery.
- Troubleshoot security and access issues affecting platform users and connected applications and services.
What we are looking for:
- 8+ years of relevant experience in cybersecurity, cloud security, cloud architecture, DevSecOps, platform engineering, or a related technical discipline.
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
- IAT Level III certification for security-focused personnel.
- One or more relevant cloud certifications.
- Secret eligible
- Experience securing workloads and infrastructure within AWS, Azure, or other enterprise cloud environments; experience with AWS GovCloud or Azure Government is highly desirable.
- Experience identifying and remediating vulnerabilities across cloud infrastructure, containers, Kubernetes, operating systems, and applications.
- Experience with Infrastructure as Code / Configuration as Code, preferably Terraform, Ansible, Helm, or comparable technologies.
- Understanding of GitOps, CI/CD, and DevSecOps security practices.
- Experience with identity and access management, PKI, Zero Trust principles, network security, firewalls, or software-defined perimeter technologies.
- Experience with security monitoring, vulnerability management, security scanning, logging, and incident troubleshooting.
- Working knowledge of DoD RMF, ATO/cATO, STIGs, and DoD cybersecurity requirements.
- Ability to work directly with software engineers, platform engineers, SREs, product teams, and government stakeholders to integrate security into engineering workflows rather than treating cybersecurity as a separate compliance activity.
- Strong troubleshooting skills and the ability to work effectively in a dynamic Agile environment where requirements and priorities can change.
Highly preferred:
- Experience with several of the technologies used within the CNAP ecosystem would be particularly valuable:
- Kubernetes/RKE2 • Big Bang • Iron Bank • GitLab • Terraform • Ansible • Helm • AWS GovCloud • Azure Government • Palo Alto • AppGate • HashiCorp Vault • Consul • Keycloak • Zeek • Zero Trust • GitOps
- Experience supporting Platform One, Cloud One, DoD software factories, CNAP, or another DoD enterprise DevSecOps environment is also highly desirable.
Clearance Requirements:
- Ability to obtain and maintain an active Secret security clearance
Salary Range: $120,000.00 - $135,000.00
Work Type:
- Fully Remote
What we will offer you:
- Highly competitive salary
- Fully covered healthcare, dental, and vision coverage
- 401(k) and company match
- Take as you need PTO + 11 paid holidays
- Education & training benefits
- Generous Referral Bonuses
- And More!
Our Vision Statement:
We bridge the gap between humans and data through radical transparency and our obsession with the mission.
Our Customer Obsession:
We will approach every deliverable like it's a product. We will adopt a customer-obsessed mentality. As we grow, and our footprint becomes larger, teams and employees will treat each other not only as teammates but customers. We must live the customer-obsessed mindset, always. This will help us scale and it will translate to the interactions that our Rafters have with their clients and other product teams that they integrate with. Our culture will enable our success and set us apart from other companies.
How do we get there?
Public-sector modernization is critical for us to live in a better world. We, at Raft, want to innovate and solve complex problems. And, if we are successful, our generation and the ones that follow us will live in a delightful, efficient, and accessible world where out-of-box thinking, and collaboration is a norm.
Raft’s core philosophy is Ubuntu: I Am, Because We are. We support our “nadi”by elevating the other Rafters. We work as a hyper collaborative team where each team member brings a unique perspective, adding value that did not exist before. People make Raft special. We celebrate each other and our cognitive and cultural diversity. We are devoted to our practice of innovation and collaboration.
We’re an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
You will be redirected to the company website to complete your application.







