Назад
Company hidden
6 часов назад

Security Engineer (Cloud Security)

150 000 - 200 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (Cloud Security) (FedRAMP/NIST): Supporting cybersecurity operations, compliance, and risk management for FedRAMP-authorized and Intelligence Community systems with an accent on RMF and ATO lifecycle management, cloud security, and continuous monitoring. Focus on designing secure AWS GovCloud and Azure Government controls, integrating security into DevSecOps pipelines, and leading vulnerability management and incident response.

Location: McLean, VA, United States; onsite role

Salary: $150,000–$200,000 per year

Company

hirify.global develops analytical, operational, and technical solutions for complex national security challenges.

What you will do

  • Lead FedRAMP Moderate/High and Intelligence Community ATO authorization efforts under NIST RMF, NIST 800-53, NIST 800-37, FedRAMP, and ICD 503 requirements.
  • Conduct risk assessments, security control assessments, gap analyses, and security architecture reviews.
  • Manage RMF activities, continuous monitoring, vulnerability assessments, compliance validation, remediation tracking, and security reporting.
  • Develop and maintain SSPs, SARs, POA&Ms, control traceability artifacts, and audit evidence.
  • Support security operations and incident response, including threat monitoring, alert analysis, investigations, root cause analysis, and coordination with SOCs and government stakeholders.
  • Design security controls for AWS GovCloud and Azure Government and integrate automated security testing, vulnerability scanning, compliance validation, and Infrastructure-as-Code security into DevSecOps pipelines.

Requirements

  • Active TS/SCI clearance with Polygraph required.
  • Bachelor’s degree or higher in Cybersecurity, IT, or a related field with 5+ years of cybersecurity experience in federal or Intelligence Community environments, or a master’s degree with 3+ years of relevant experience.
  • Strong knowledge of NIST RMF, NIST 800-53 controls, and FedRAMP requirements.
  • At least one of the following certifications: CISM, CISA, CompTIA Security+, CAP, or CCSP.
  • Experience with RMF, FedRAMP, ICD 503, ServiceNow GRC, Splunk, AWS GovCloud, and Azure.

Nice to have

  • Experience with cloud-native security tools and DevSecOps pipelines in regulated environments.
  • Knowledge of Zero Trust Architecture.
  • Experience with cross-domain solutions.

Culture & Benefits

  • Competitive total compensation package.
  • Team-oriented, dynamic, and growing work environment.
  • Focus on exceptional performance, professional development, and mentoring junior staff.
  • Equal employment opportunity for qualified applicants.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →