Security Engineer - Remote
Core
Security Engineer ensuring environments and applications meet Federal Security Standards, assessing risks, and developing secure solutions for technical teams and leadership.
Role type
Senior IC Security Engineer (Federal/Consulting)
Builds
Secure production applications and environments for federal clients
Domain
Federal Government contracting, Cloud Security, Application Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Threat modeling for FISMA systems, Security incident response, System hardening (DoD STIGs), Cloud security (AWS/Azure/GCP), Cryptography, Linux command line, Python/Perl scripting
Preferred skills
NIST 800-53 security controls, OWASP Top Ten, CWE Top 25, Application architecture, Federal Government contracting experience
Technologies
Nessus, Snyk, AWS GuardDuty, AWS Inspector, Linux (bash/sh/zsh), Python, Perl
Responsibilities
Perform SAST and DAST to identify vulnerabilities, Create and update threat models for FISMA systems, Assist and lead security incident response, Review policies for compliance and identify remediation areas, Work with DevOps to harden Linux and cloud infrastructure, Document security plans and disaster recovery procedures
Seniority
Senior, hands-on IC