waypointjobs

HTX Labs

Skillbridge Intern - ISSE

Remote — United States (see country and timezone requirements)

Check who can apply and the requirements below before continuing.

Job description

About HTX Labs

Since 2017, HTX Labs has been on a mission to accelerate the future of learning, employing immersive software training solutions and content development services for the Department of Defense to elevate the level of proficiency and preparedness of today's warfighter.

HTX Labs developed the EMPACT® Immersive Learning Platform to address a growing need to modernize training, improve safety, maximize operational efficiency, and build resilience and readiness across the defense industry.

HTX Labs is dedicated to driving learning innovation, providing the necessary digital infrastructure to empower users to easily create, deploy, measure, and sustain mission-specific, immersive training programs anytime, anywhere, on any device, with anyone, at scale.

Information Systems Security Engineer (ISSE) – DoW Skillbridge

Position Summary

HTX Labs is seeking a hands-on Information Systems Security Engineer (ISSE) to design, implement, automate, and maintain secure cloud and edge infrastructure supporting Department of War (DoW) systems. This position partners daily with the DevSecOps Engineer to build and operate secure Microsoft Azure Government and disconnected/on-premise deployments while translating RMF, CMMC Level 2, and DoW security requirements into technical implementations. Approximately 15% of this role focuses on AI Security Engineering, ensuring AI-enabled capabilities are deployed securely and governed in accordance with NIST AI RMF, DoW guidance, and industry best practices.

Primary Responsibilities

Harden and maintain secure cloud and edge infrastructure supporting DoW workloads.

Partner with the DevSecOps Engineer to build secure CI/CD pipelines using modern software delivery and Infrastructure as Code (IaC) practices.

Implement Zero Trust principles including RBAC, workload identity, network segmentation, private networking, and least privilege.

Engineer and maintain security controls for cloud IAM, WAF, container security, runtime protection, and Kubernetes policy enforcement.

Automate security validation, compliance monitoring, evidence collection, vulnerability remediation, and configuration management using PowerShell, Python, Bash, Azure CLI, and YAML.

Implement and maintain NIST SP 800-53 Rev. 5, RMF, CMMC Level 2, STIG, and DISA security controls through technical implementations.

Support ATO packages, Cybersecurity Impact Analyses (CIAs), SSP updates, POA&M remediation, security assessments, and continuous monitoring.

Collaborate with engineering teams to secure software supply chains through SBOM generation, image signing, container security, and secure CI/CD.

AI Security Engineering (Approximately 15% of Role)

Design and implement security controls for AI-enabled applications, LLMs, Retrieval-Augmented Generation (RAG), AI agents, and Model Context Protocol (MCP) integrations.

Evaluate AI technologies for security, privacy, compliance, and supply chain risks before deployment.

Mitigate AI-specific threats including prompt injection, model poisoning, jailbreak attacks, insecure tool usage, and data leakage.

Integrate AI security testing and policy validation into CI/CD pipelines.

Perform AI threat modeling and architecture reviews using the NIST AI Risk Management Framework (AI RMF) and OWASP Top 10 for LLM Applications.

Support secure deployment of AI workloads in Azure Government and disconnected Edge environments.

Required Qualifications

U.S. Citizen.

5+ years of experience in cybersecurity, cloud engineering, DevSecOps, or information systems security engineering.

Experience with Azure or Azure Government, Kubernetes, Linux administration, networking, scripting, and Infrastructure as Code.

Experience implementing RMF, CMMC, STIGs, or other government cybersecurity frameworks.

Strong troubleshooting and communication skills.

Preferred Qualifications

Experience supporting DoW IL4/IL5 environments and Authority to Operate (ATO) efforts.

Experience with managed/self-managed Kubernetes.

Experience with CI/CD platforms, GitOps deployment solutions, IaC tools, Kubernetes policy enforcement, container runtime security, cloud IAM, and WAF technologies.

Experience securing AI-enabled applications, Azure AI Foundry, Azure OpenAI, RAG architectures, or MCP integrations.

Knowledge of NIST AI RMF, OWASP Top 10 for LLM Applications, secure AI software supply chains, and AI governance.

Preferred certifications include Security+, CASP+, CKA, CKS, Azure Security Engineer Associate, Azure Administrator Associate, Terraform Associate, or RHCSA.

Desired Characteristics

Hands-on security engineer focused on building secure cloud-native platforms.

Collaborates across software engineering, DevSecOps, cybersecurity, AI engineering, and program management.

Passionate about automation, Zero Trust, AI Security Engineering, and continuous improvement.

Technologies

Cloud-native architectures

Managed and self-managed Kubernetes

Containers and container orchestration

CI/CD platforms

GitOps deployment solutions

Infrastructure as Code (IaC)

Kubernetes policy enforcement

Work Location: Remote

Reporting Structure: Reports directly to the Enterprise IT and Cybersecurity Manager.

Pay: This internship is not paid through HTX Labs - you will be paid through the DoW as per your Skillbridge Agreement upon approval. Speak to your CO if you have questions.

We’re constantly working towards making HTX Labs the best place to work, for everyone. We believe deeply that bringing together diversity of thoughts, perspectives and expression is key for building the best product for our equally diverse community. We celebrate uniqueness and whatever makes you, you and encourage everyone who wants to help us transform the way the world learns, to join us on our journey. We value all types of experiences. If you don’t think you quite meet every qualification, we’d still love to hear from you. We are interested in qualified candidates who are eligible to work in the United States. We are not able to sponsor work visas at this time.

Originally posted on Himalayas

Who can apply

Eligible countries: United States. Accepted UTC offsets: UTC-10, UTC-9, UTC-8, UTC-7, UTC-6, UTC-5, UTC+14. Review the full description for employer-specific work authorization, residency and schedule requirements.

Ready for your next step?Apply on the official website
Apply on Himalayas ↗

Explore related searches

Current related jobs

Red Wine and Blue

Himalayas

General Interest Application

Remote — United States (see country and timezone requirements)

Salary not specifiedfull timeRemote

WHO THE HECK ARE WE? Red Wine & Blue is a national community of over 600,000 diverse suburban women working together to defeat extremism, one fr…

Listing expires 2026-12-04View job

Carle Health

Himalayas

Finance Systems Analyst

Remote — United States (see country and timezone requirements)

$26.41 – $44.10 per hourfull timeRemote

OverviewThe Finance Systems Analyst assists with supporting assigned finance/accounting applications for the enterprise such as costing, producti…

Listing expires 2026-12-04View job

Kyowa Kirin

Himalayas

Scientific Relations Manager

Remote — Worldwide (see timezone requirements)

Salary not specifiedfull timeRemote

OverviewWE PUSH THE BOUNDARIES OF MEDICINE. LEAPING FORWARD TO MAKE PEOPLE SMILE At Kyowa Kirin International (KKI), our purpose is to make peop…

Listing expires 2026-12-04View job

Belden, Inc

Himalayas

Solution Consultant - Cybersecurity Practice (US)

Remote — United States (see country and timezone requirements)

$125,000.00 – $160,000.00 per yearfull timeRemote

Innovation Starts With YouPropel your career at Belden, where innovation creates possibilities—for our people, our customers, and the communities…

Listing expires 2026-12-04View job