1 день назад
Security Engineer (Cybersecurity)
98 614 - 167 644$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Engineer (Cybersecurity): Securing federal applications and cloud environments through vulnerability testing, threat modeling, incident response, and compliance with federal security standards with an accent on SAST/DAST, FISMA systems, AWS security, and cryptography. Focus on hardening Linux and cloud infrastructure, correcting application vulnerabilities, and guiding secure production releases.
Location: Remote within the United States only; candidates must reside and be authorized to work in the U.S. All work must be performed in the U.S.; foreign locations and personal VPN connections are prohibited. Core hours are 10:00–16:00 Eastern Time, with occasional earlier client meetings.
Salary: $98,614–$167,644 per year.
Company
is an advisory and technology services provider delivering consulting and technology solutions for complex client challenges.
What you will do
- Perform Static Application Security Testing and Dynamic Application Security Testing across application code and infrastructure.
- Create and update threat models for FISMA systems and support security assessment activities.
- Lead or assist with security incident response, contingency planning, disaster recovery planning, and security documentation.
- Review policies and procedures for compliance, identify remediation opportunities, and advise technical teams and senior leadership.
- Use Nessus, Snyk, AWS GuardDuty, and AWS Inspector to detect and document vulnerabilities.
- Securely harden Linux systems and cloud infrastructure while helping development teams correct code and prepare applications for production.
Requirements
- Bachelor’s degree and 5+ years of professional security engineering experience.
- Must be able to obtain and maintain a Public Trust.
- Must have lived in the U.S. for three full years out of the last five years.
- Experience with NIST 800-53 controls, DoD STIGs, incident response, cloud security, applied cryptography, OWASP Top Ten, and CWE Top 25.
- Experience with Linux command-line tools and scripting in Python, Perl, or similar languages.
- Strong engineering, application architecture, analytical, communication, leadership, and prioritization skills.
Nice to have
- Experience with AWS, Azure, and/or GCP cloud infrastructure.
- Consulting, healthcare, or Federal Government contracting experience.
- OSCP, OSCE, OWSE, CISSP, GPEN, GXPN, Security+, or CEH certification.
Culture & Benefits
- Full-time remote work within the United States.
- Core working hours aligned with Eastern Time and flexibility to start earlier or work later based on time zone.
- Occasional travel to a conference or another location may be required once a year.
- Collaborative work with development, DevOps, technical leadership, and security stakeholders.
Hiring process
- The role is contingent upon a contract award.
- Applications must be submitted directly by the applicant.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Security Engineer (AI)
95 000 - 110 000$
3 дня назад
Security Engineer (Linux Systems Engineer)
99 400 - 155 850$
4 дня назад
Senior Security Engineer (Cybersecurity)
8 дней назад
Senior Detection Engineer (Cybersecurity)
195 000 - 230 000$
3 дня назад
AI Security Engineer
100 000 - 150 000$
3 дня назад