Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Engineer (Cybersecurity): Integrating security requirements into design and deployment workflows for federal systems with an accent on ATO efforts, compliance documentation, and risk assessments. Focus on automating security within DevSecOps pipelines and ensuring adherence to NIST and FedRAMP standards.
Location: Remote (Must be authorized to work in the United States; U.S. citizenship and federal security clearance may be required)
Salary: $110,000 – $145,000
Company
A software company focused on delivering high-quality products to the federal space to improve the lives of millions of Veterans.
What you will do
- Partner with application development teams to integrate security requirements into design, development, and deployment workflows.
- Support ATO efforts, including the development of System Security Plans (SSPs), POA&Ms, and control documentation.
- Conduct risk assessments, vulnerability scans, and threat modeling aligned with NIST SP 800-53 and VA security standards.
- Implement security within Agile/DevSecOps pipelines throughout the CI/CD lifecycle.
- Monitor and respond to security incidents and anomalies using tools such as Splunk, ACAS, or Nessus.
- Ensure full compliance with FISMA, HIPAA, FedRAMP, and VA-specific security requirements.
Requirements
- Experience supporting ATO and RMF processes, including documentation and continuous monitoring.
- Solid understanding of NIST SP 800-53, FISMA, and FedRAMP frameworks.
- Experience securing cloud environments such as AWS GovCloud or Azure Government.
- Proficiency with vulnerability scanning tools (Nessus, ACAS) and SIEM platforms (Splunk, ELK Stack).
- Must be authorized to work in the United States; ability to obtain a federal background investigation and/or security clearance may be required.
- Bachelor's Degree.
Nice to have
- Scripting or automation experience in Python, Bash, or PowerShell.
- Relevant certifications such as CISSP, CAP, CEH, CISM, or DoD 8570.
Culture & Benefits
- Fully remote work arrangement.
- Comprehensive benefits package with a company-matched 401(k) plan.
- Annual stipend and flexible PTO with paid holidays.
- Collaborative Agile environment emphasizing learning, growth, and individual impact.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →