Cybersecurity Engineer

BAM Technologies, LLC

Arlington (VA)

Remote

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A dynamic technology firm is seeking a Cybersecurity Engineer responsible for implementing automated security tools and maintaining security compliance. This role involves collaboration with development and operations teams to integrate security best practices into applications and infrastructure. Candidates should have a relevant degree and over 3 years of experience in cybersecurity. Familiarity with cloud security and compliance standards is essential. The position is remote and offers opportunities to enhance the organization's security posture.

Qualifications

  • 3+ years of experience in a security field.
  • Proficiency in cloud and container security, understanding OWASP Top 10.
  • Experience with DISA STIGs, NIST 800-53, and RMF.

Responsibilities

  • Implement and maintain automated security tools.
  • Run security scans and provide evidence of STIG compliance.
  • Collaborate with teams to integrate security best practices.

Skills

Threat modeling
Web application penetration testing
Scripting for testing and automation
Vulnerability management

Education

Bachelor’s degree in computer science/Cybersecurity or relevant field

Tools

Amazon Web Services (AWS)
GitHub
Linux

Job description

Cybersecurity Engineer

BAM is a dynamic, multi-disciplinary firm with leading-edge skills in information technology, software development and applied research. Serving government and commercial markets, BAM is committed to its customers and to delivering strong leadership, sound solutions, and innovative thinking.

The Cybersecurity Engineer is responsible for implementing and maintaining automated security tools, running security scans, and providing evidence of STIG compliance. This role involves collaborating with development, operations, and compliance teams to integrate security best practices into applications and infrastructure. The Cybersecurity Engineer will also develop security documentation, deliver security awareness training, and evaluate new security technologies to enhance the team's security posture. Additionally, they will monitor security alerts and respond to incidents in coordination with the compliance team.

Requirements
  • Build and maintain an automated security tool suite that captures security findings in a transparent and discoverable fashion.
  • Ensure that all required security scans (SAST, DAST, SCA, etc.) are discoverable by all team members.
  • Work with team to ensure applicable STIGs are properly implemented in the target applications. Provide evidence of STIG compliance to Cybersecurity Analyst.
  • Work with development and operations teams to integrate security into applications and infrastructure.
  • Provide technical guidance and training on security best practices. Promote a culture of security within the team.
  • Evaluate new security tools, trends, and technologies to enhance the organization's security posture.
  • Recommend upgrades or changes to existing security systems.
  • Use the tools established by the organization to monitor the security posture of the project's applications and infrastructure.
  • Collaborate with development teams to respond to and resolve security alerts.
  • Collaborate with compliance teams to ensure adherence to legal and regulatory requirements.
  • Coordinate with Cybersecurity Analyst to maintain required security documentation.
  • Create reports on security performance, incidents, and improvements.
  • Maintain records of security testing and compliance audits.
Qualifications
  • Bachelor’s degree in computer science/Cybersecurity or relevant field
  • 3+ years of experience in a security field
  • Proficiency in cloud and container security with a strong understanding of foundational web application security concepts such as OWASP Top 10
  • Experience with DISA STIGs, NIST 800-53, and RMF
  • Familiarity with securing CI/CD pipelines and DevSecOps software factories
  • CompTIA Security+
Skills
  • Threat modeling
  • Web application penetration testing (SAST, DAST, SCA, etc.)
  • Authoring and maintaining scripts to enable testing and automation
  • Vulnerability management and analysis
Preferred Skills
  • Amazon Web Services (AWS)
  • GitHub
  • Familiarity with Agile development (Scrum/Large-Scale Scrum)
  • Experience with a SIEM to monitor application and infrastructure security
  • Experience with Linux

This is a remote position.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

Batten Asset Management Company (BAMCo.) • Omaha (NE)

Hybrid
USD 85,000 - 120,000
Health/Dental/Life
Paid time off
Birthday holiday
+6
Senior Cybersecurity Software Engineer
Senior Cybersecurity Software Engineer

Jobtailor • Town of Texas (WI)

On-site
USD 110,000 - 170,000
Cyber Security Engineer
Cyber Security Engineer

Getbamco • Omaha (NE)

Hybrid
USD 80,000 - 100,000
Tuition reimbursement
Competitive salary with growth potential
Flexible work options
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

Jobtailor • Washington

On-site
USD 120,000 - 160,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

Attractivate Consulting Solutions • Houston (TX)

On-site
USD 140,000 - 175,000
Cyber Security Engineer
Cyber Security Engineer

Jobtailor • Pittsburgh

On-site
USD 120,000 - 180,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States

On-site
USD 120,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

electro soft • Fort Belvoir (VA)

On-site
USD 120,000 - 180,000