Remote Cyber Risk Mitigation Engineer (VA ESOM)

Kentro

$140K — $155K *
US-AnywhereRemote in United States
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Master's degree in cybersecurity, computer science, information systems, engineering, or a related technical discipline.
  • 10 years of relevant experience in the cybersecurity field.
  • 10 additional years of experience may substitute for educational requirements.
  • Experience in cybersecurity engineering, incident response, and security architecture.
  • Knowledge of identity and access management, network security, and secure restoration processes.

Responsibilities

  • Identify cyber threats and vulnerabilities affecting application recovery.
  • Develop tabletop scenarios for various cyber threat scenarios.
  • Define objectives and evaluation criteria for cyber exercises.
  • Evaluate coordination between contingency plans and incident response plans.
  • Assess backup protection and credential recovery processes.
  • Document cyber findings and distinguish weaknesses from assumptions.
  • Support recovery tests to validate security improvements.

Benefits

  • Competitive benefits package including paid time off and healthcare benefits.
  • Education reimbursement for certifications and professional development.
  • Flexible opportunities for professional growth and networking.
  • Community engagement through charity events and celebrations.
  • A positive workplace culture that incorporates fun and team-building activities.
Full Job Description
Overview

Kentro is hiring for Remote Cyber Risk Mitigation Engineer to support VA ESOM contract. The Cyber Risk Mitigation Engineer identifies and mitigates cybersecurity risks that could impact application recovery and resilience. This role assesses vulnerabilities, recovery processes, and security controls; supports cyber recovery exercises and testing; develops actionable mitigation recommendations; and communicates risks and progress to technical teams and program leadership.

Location: Remote - This position can be performed remotely within the United States and will support Eastern Time working hours.

Compensation Range: The pay range for this position is $140-$155K annually. Kentro determines compensation by evaluating current government contracting and commercial market conditions, as well as the role's specific requirements. Final salary placement within this range will be based on the candidate's relevant skills, experience, education, certifications, location, and security clearance level, where applicable.

This Job Description reflects the primary duties of the role; however, it is not intended to be all-inclusive. Team members may be asked to take on additional responsibilities in alignment with customer expectations, business needs, and Kentro's culture of collaboration and adaptability.

Responsibilities

  • Identify cyber threats, vulnerabilities, and security dependencies that could affect application recovery.
  • Develop tabletop scenarios involving ransomware, destructive attacks, compromised credentials, data corruption, and loss of trusted services.
  • Define cyber-focused exercise objectives, assumptions, injects, expected decisions, and evaluation criteria.
  • Evaluate coordination between information system contingency plans and incident response plans.
  • Assess backup protection, privileged access, credential recovery, logging, network controls, clean recovery environments, and system reconstitution.
  • Evaluate whether recovery procedures reduce the risk of reinfection, unauthorized access, or continued compromise.
  • Document cyber findings and distinguish confirmed weaknesses from assumptions that require technical testing.
  • Develop specific mitigation recommendations with owners, priorities, and measurable completion criteria.
  • Support restoration, failover, and recovery tests used to validate security improvements.
  • Brief application owners, engineers, and program leaders on significant cyber recovery risks and mitigation status.

Qualifications

  • Master's degree in cybersecurity, computer science, information systems, engineering, or a related technical discipline.
  • 10 years of relevant experience.
  • 10 years of additional relevant experience may be substituted for education.
  • Experience in cybersecurity engineering, incident response, cyber resilience, security architecture, or a related discipline.
  • Knowledge of identity and access management, network and endpoint security, logging, malware containment, backup protection, and secure restoration.

Preferred Qualifications:
  • Experience applying NIST SP 800-34, NIST SP 800-84, or NIST SP 800-53 contingency planning controls.
  • Experience with ransomware recovery, clean-room restoration, privileged access recovery, or cyber recovery vaults.
  • Experience leading or supporting tabletop, functional, or technical recovery exercises.
  • Relevant cybersecurity, incident response, cloud, or business continuity certification.
  • Background supporting large federal, DoD, or public-sector IT environments.

Clearance Requirement:
  • US Citizen or Lawful Permanent Resident (Green Card)
  • Willing and able to obtain and maintain Public Trust Clearance
  • Must meet updated ID requirements: https://www.gsa.gov/technology/it-contract-vehicles-and-purchasing-programs/federal-credentialing-services/get-appointment-help/bring-required-documents
    • If you do not currently meet the ID requirements outlined, you must be willing and able to update your current forms of ID in a timely manner to complete the suitability process successfully.

Benefits

We offer competitive benefits package including paid time off, healthcare benefits, supplemental benefits, 401k including an employer match, discount perks, rewards, and more. We invest in our employees - Every employee is eligible for education reimbursement for certifications, degrees, or professional development. Reimbursement amounts may fluctuate due to IRS limitations. We want you to grow as an expert and a leader and offer flexibility for you to take a course, complete a certification, or other professional growth and networking. We are committed to supporting your curiosity and sustaining a culture that prioritizes commitment to continuous professional development.

We work hard; we play hard. Kentro is committed to incorporating fun into every day. We dedicate funds for activities - virtual and in-person - e.g., we host happy hours, holiday events, fitness & wellness events, and annual celebrations. In alignment with our commitment to our communities, we also host and attend charity galas/events. We believe in appreciating your commitment and building a positive workspace for you to be creative, innovative, and happy.

How to Apply

To apply to Kentro Positions- Please click on the job link and then click the blue "Apply" button at the top right of Job Description. Please upload your resume and complete all the application steps. You must fully submit the application for Kentro to consider you for a position. If you need alternative application methods, please email [email protected] and request assistance.

Accommodations

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. Reasonable Accommodations may be made to enable qualified individuals with disabilities to perform the essential functions. If you need to discuss reasonable accommodations, please email [email protected].

#LI-

Similar Jobs

More Jobs at Kentro

More Information Technology Jobs

Find similar Remote Cyber Risk Mitigation Engineer (VA ESOM) jobs: