Startups

Senior Cybersecurity Engineer

Bluestaq · Colorado Springs · On-site

← All jobs
About Bluestaq

Bluestaq develops transformative enterprise systems and secures disparate data. Backed by Space Capital.

About the role

The Senior Cybersecurity Engineer at Bluestaq owns the defensive posture of software systems that underpin national security decisions — space domain awareness, satellite command and control, and the infrastructure behind them. This is not a scan-and-report seat. You close vulnerabilities, build detection logic that catches real threats, and lead incident response when things get loud. No playbook required. If you need to be told what to look for, this isn't the right level.

What they're looking for

  • Own the full vulnerability lifecycle — scanning with vulnerability management tools, triage by mission risk, remediation tracking, and verified closure across the fleet
  • Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to MITRE ATT&CK tactics relevant to Bluestaq's threat model
  • Serve as an incident responder for security events — contain, help scope, and provide clear status to the IR lead/leadership
  • Deliver written post-mortems with root cause, timeline, and tracked action items following incident closure
  • Maintain endpoint antivirus coverage across the fleet — configure policies, ensure definition currency, and coordinate remediation of flagged systems
  • Apply DISA STIGs to operating systems (Linux, Windows, etc.), document deviations and manage compliance artifacts (POA&Ms) in compliance management platforms (eMASS, Xacta, or equivalent RMF tools)
More about this role

Why This Role Matters

The Senior Cybersecurity Engineer at Bluestaq owns the defensive posture of software systems that underpin national security decisions — space domain awareness, satellite command and control, and the infrastructure behind them. This is not a scan-and-report seat. You close vulnerabilities, build detection logic that catches real threats, and lead incident response when things get loud. No playbook required. If you need to be told what to look for, this isn't the right level.

What You Own

  • Own the full vulnerability lifecycle — scanning with vulnerability management tools, triage by mission risk, remediation tracking, and verified closure across the fleet.
  • Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to MITRE ATT&CK tactics relevant to Bluestaq's threat model.
  • Serve as an incident responder for security events — contain, help scope, and provide clear status to the IR lead/leadership.
  • Deliver written post-mortems with root cause, timeline, and tracked action items following incident closure.
  • Maintain endpoint antivirus coverage across the fleet — configure policies, ensure definition currency, and...

Read the full posting on Bluestaq's site ↗

Cybersecurity Engineering

Build your edge while you search

Free tools for founders and investors, plus VC Unfiltered, our take on startups, venture and the people who build them.