Security Specialist IV
Description
September 2025
Title: Security Specialist IV
Location: Boulder, CO (Onsite)
Terms: Full-Time
Clearance: U.S. Citizenship with ability to obtain and maintain a Public Trust
Travel: Up to 10%
RESULTS. INNOVATION. VALUES. ACCOUNTABILITY.
That’s RIVA. Our employee-first approach has manifested a culture that attracts the best and brightest. By investing in people first and providing a flexible work environment, our employees have higher morale, higher productivity rates, and lower turnover. At RIVA, people are our #1 priority.
Program Overview
The National Oceanic and Atmospheric Administration (NOAA) Global Systems Laboratory (GSL) is a world leader in applying cutting-edge research and innovative IT systems to improve weather and environmental forecasting across the globe. Based in Boulder, Colorado, GSL’s mission supports the development and integration of advanced computing, modeling, artificial intelligence, and software engineering to meet the growing needs of the scientific and environmental community.
RIVA Solutions supports NOAA GSL through a range of IT, systems engineering, cybersecurity, and DevOps services. Our team plays a critical role in maintaining secure, high-performance computing environments that enable NOAA’s researchers and operational teams to deliver next-generation climate, weather, and environmental solutions for the nation.
Position Overview
RIVA Solutions is seeking a Security Specialist IV to support the Global Systems Laboratory (GSL) at NOAA in Boulder, CO. This individual will assist in maintaining a secure computing environment by identifying, resolving, and reporting security violations while ensuring compliance with federal IT mandates. The Security Specialist IV will work independently and collaboratively with NOAA security staff and IT stakeholders to implement advanced cybersecurity practices and support cloud-based and on-premise security systems.
Core Responsibilities
- Apply security strategies at the OS/Container/Microservice levels
- Perform vulnerability and SCAP scans
- Create and manage secure configurations via configuration management tools
- Document and respond to security incidents
- Assist with risk assessment evaluations
- Contribute to cloud security initiatives
- Manage firewall access requests
- Administer the LetsEncrypt certificate infrastructure
- Oversee web traffic ingress/egress for both on-prem and cloud-based systems
Required Qualifications
- Bachelor’s degree in Computer Science or related field (or equivalent experience)
- 2+ years of experience as a Security Specialist in a heterogeneous, multi-system Linux environment
- Advanced experience with multiple operating systems (Windows, macOS, RedHat/Ubuntu/Oracle Linux)
- Familiarity with IT security industry best practices
- Hands-on experience with security scanning tools
Preferred Qualifications
- Familiarity with or experience in the following:
- NIST SP 800-53
- BigFix
- Tenable Security Center
- Web Application Firewalls
- Computer Forensics
- Network File Systems (NFS)
- Tomcat/Apache web servers
- Network Attached Storage
- Networking
- Cloud-based security tools (AWS, GCP, Azure)
- Kubernetes and containers
- Experience prioritizing and managing multiple tasks simultaneously
- Strong written and verbal communication skills
Salary
Up to $145,000 (based on experience)
RIVA Benefits
- Paid Time Off / Sick Leave
- Health, Dental, and Vision Coverage
- Life Insurance
- Retirement Benefits / 401K with company matching
- HSA/FSA Spending Accounts
- Long- and Short-Term Disability
- Pet Insurance
- Wellness Program Initiatives
- RIVA Flex
- Additional Workplace Benefits
RIVA Solutions is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any protected class. If you need a reasonable accommodation to search for a job opening or to submit an online application, please email [email protected]. Only messages left for this purpose will be returned.