Назад
Company hidden
1 день назад

Security Engineer (Cybersecurity)

98 614 - 167 644$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (Cybersecurity): Securing federal applications and cloud environments through vulnerability testing, threat modeling, incident response, and compliance with federal security standards with an accent on SAST/DAST, FISMA systems, AWS security, and cryptography. Focus on hardening Linux and cloud infrastructure, correcting application vulnerabilities, and guiding secure production releases.

Location: Remote within the United States only; candidates must reside and be authorized to work in the U.S. All work must be performed in the U.S.; foreign locations and personal VPN connections are prohibited. Core hours are 10:00–16:00 Eastern Time, with occasional earlier client meetings.

Salary: $98,614–$167,644 per year.

Company

hirify.global is an advisory and technology services provider delivering consulting and technology solutions for complex client challenges.

What you will do

  • Perform Static Application Security Testing and Dynamic Application Security Testing across application code and infrastructure.
  • Create and update threat models for FISMA systems and support security assessment activities.
  • Lead or assist with security incident response, contingency planning, disaster recovery planning, and security documentation.
  • Review policies and procedures for compliance, identify remediation opportunities, and advise technical teams and senior leadership.
  • Use Nessus, Snyk, AWS GuardDuty, and AWS Inspector to detect and document vulnerabilities.
  • Securely harden Linux systems and cloud infrastructure while helping development teams correct code and prepare applications for production.

Requirements

  • Bachelor’s degree and 5+ years of professional security engineering experience.
  • Must be able to obtain and maintain a Public Trust.
  • Must have lived in the U.S. for three full years out of the last five years.
  • Experience with NIST 800-53 controls, DoD STIGs, incident response, cloud security, applied cryptography, OWASP Top Ten, and CWE Top 25.
  • Experience with Linux command-line tools and scripting in Python, Perl, or similar languages.
  • Strong engineering, application architecture, analytical, communication, leadership, and prioritization skills.

Nice to have

  • Experience with AWS, Azure, and/or GCP cloud infrastructure.
  • Consulting, healthcare, or Federal Government contracting experience.
  • OSCP, OSCE, OWSE, CISSP, GPEN, GXPN, Security+, or CEH certification.

Culture & Benefits

  • Full-time remote work within the United States.
  • Core working hours aligned with Eastern Time and flexibility to start earlier or work later based on time zone.
  • Occasional travel to a conference or another hirify.global location may be required once a year.
  • Collaborative work with development, DevOps, technical leadership, and security stakeholders.

Hiring process

  • The role is contingent upon a contract award.
  • Applications must be submitted directly by the applicant.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →