Software Engineer
We were early to the fight against Ubiquitous Technical Surveillance, and we’ve been pushing the edge ever since.
We were early to the fight against Ubiquitous Technical Surveillance, and we’ve been pushing the edge ever since.
Our mission is to help government and enterprise organizations understand and manage commercial data risks, shape their digital signatures, and operate with confidence in an increasingly complex information landscape. We build and integrate advanced, tech-forward solutions to problems our customers often don’t know they have – until it matters most.
We move fast, think critically, and deliver where it counts.
What’s in it for you?
We work hard and do fun things.
You’ll work on high-impact, technically challenging problems alongside a team that values teamwork over competition. Veilant offers a solid work-life balance and flexible remote work options. At Veilant, you’ll work with the most talented software developers, systems engineers, and subject matter experts, building tools and systems that make a real difference.
At most organizations, security accreditation shows up at the end of a program — a paperwork sprint to get an ATO signed before a deadline, run by someone who wasn't in the room when the architecture was decided.
That's not the job here.
Veilant is rethinking how cyber security and assurance get delivered across mission and enterprise systems, and we're looking for the person who will lead that shift. You'll be the primary security advisor and the trusted bridge between our Information Security Program and our government mission partners — the person engineering teams consult before they commit to a design, and the person our customers call when a hard question about risk or compliance lands on their desk.
If you've spent years watching RMF get treated as a compliance tax and you know it can be run as a discipline that actually makes systems better, this is the role where you get to prove it.
What you'll own
RMF accreditation, end to end. You are the lead for every in-scope system — authoring and maintaining System Security Plans, policies, and procedures; building ATO packages; writing the justifications; assembling evidence; walking auditors through reviews; answering the government's questions directly; and keeping continuous monitoring running long after the authorization is signed.
Compliance integrity. You'll review systems on a regular cadence for drift from documented configurations and procedures, report what you find without softening it, and drive remediation to closure.
Regulatory authority. You'll be the person in the building who knows what NIST CSF, SP 800-171, SP 800-53, CMMC, and the DoD Zero Trust Mandate actually require — and, more usefully, what they mean for the system in front of you.
Posted July 31, 2026