Lead Security Engineer

analyticallc

Bethesda (MD)

On-site

USD 140,000 - 210,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Employer paid health care
Training and development funds
401k match
Bonuses

Job summary

Analytica LLC is seeking a Lead Security Engineer to design, implement, and lead cybersecurity efforts for a secure on-premises platform serving federal data and AI services. You will translate federal requirements into practical technical controls and oversee their implementation, testing, and RMF evidence preparation.

The role spans architecture, infrastructure, applications, data, APIs, CI/CD, and AI services, with emphasis on secure software development and risk management.

Qualifications

  • 8+ years of cybersecurity engineering or related field.
  • Experience designing and implementing security controls for Federal information systems (FISMA/RMF).
  • Strong knowledge of FISMA, NIST SP 800-53 Rev. 5, RMF, and secure DevSecOps.

Responsibilities

  • Translate security requirements into controls and evidence.
  • Support RMF activities, planning, assessment readiness, remediation tracking.
  • Engineer access control, logging, authentication, encryption, and data protection.

Skills

Cybersecurity exp
Federal security
FISMA/NIST SP 800-53
DevSecOps
IAM & PKI
Kubernetes
RBAC
Threat modeling
Incident response
Top Secret clearance

Education

BS in CS/IS
Security certifications (CISSP/CISM)

Tools

Jenkins
Azure DevOps
Docker
SIEM

Job description

We are seeking an experienced Lead Security Engineer to design, implement, and lead cybersecurity engineering for a secure, on-premises Federal data, analytics, and AI platform supporting sensitive grants and awards information within a Government-approved security boundary.

This role will serve as a technical security lead across the platform architecture, infrastructure, applications, data, APIs, DevSecOps pipelines, and AI services. The Lead Security Engineer will translate Federal security requirements into practical technical controls and engineering patterns while ensuring those controls are implemented, tested, monitored, and supported with the evidence necessary for Risk Management Framework (RMF) activities and ongoing authorization.

Analytica has been recognized by Inc. Magazine as the fastest-growing private US small business. We work with U.S. government customers in health, civilian, and national security missions. As a core member you'll work with a diverse team of professionals to solve matters, architect nuisances, and come up with alternatives. We offer competitive compensation with opportunities for bonuses, employer paid health care, training and development funds, and 401k match.

Key Responsibilities
  • Translate FISMA Moderate and NIST SP 800-53 Rev. 5 requirements into actionable technical controls and evidence.
  • Support Risk Management Framework activities, security planning, control implementation, assessment readiness, and remediation tracking.
  • Engineer access control, audit logging, authentication, encryption, configuration management, secure communications, and data-protection safeguards.
  • Integrate security scanning and compliance checks into the CI/CD process.
  • Validate read-only interaction with authoritative source systems and safeguards against unauthorized data modification or external action.
  • Support incident response procedures, vulnerability management, secure configuration, and continuous monitoring.
  • Coordinate withsecurity, CIO/CISO stakeholders, platform teams, and program leadership.
Required Qualifications
  • 8+ years of experience in cybersecurity engineering, security architecture, information assurance, or a related field.
  • Demonstrated experience designing and implementing security controls for Federal information systems, preferably in FISMA/RMF environments.
  • Strong knowledge of FISMA, NIST SP 800-53 Rev. 5, RMF, and secure software development/DevSecOps.
  • Experience securing enterprise infrastructure, applications, databases, APIs, networks, and on-premises or hybrid platforms.
  • Hands-on experience with Linux, Docker/containerization, and Kubernetes and/or Rancher.
  • Experience implementing IAM, RBAC, privileged access, authentication, authorization, encryption, certificates, secrets, and key-management controls.
  • Experience with vulnerability management, security scanning, patching, configuration management, and remediation.
  • Experience integrating security into CI/CD pipelines, preferably with Jenkins and/or self-hosted Azure DevOps.
  • Understanding of application security, including SAST/SCA/DAST, dependency management, container security, secrets detection, and secure API design.
  • Experience with security logging, monitoring, alerting, audit trails, and incident response.
  • Experience supporting security assessments, audits, POA&Ms, vulnerability assessments, and continuous monitoring.
  • Ability to conduct threat modeling and evaluate security risks associated with new technologies and architectures.
  • Strong technical documentation, communication, and problem-solving skills.
  • Ability to collaborate across platform, infrastructure, application, data, AI/ML, DevOps, and Government teams.
  • U.S. citizenship and ability to obtain and maintain Top Secret eligibility, as required for contractor personnel supporting the effort. Active Top Secret clearance highly preferred.
Preferred Qualifications
  • Experience supporting Federal financial management, budget execution, grants management, payment systems, award oversight, financial reporting, or financial stewardship.
  • Experience securing Federal grants, payment, financial, or award-oversight platforms.
  • Experience securing AI/ML or open-source LLM workloads in on-premises, restricted, or disconnected environments.
  • Experience with SIEM, SOAR, EDR, security automation, infrastructure-as-code security, or related technologies.
  • Familiarity with FedRAMP-authorized environments, FISMA Moderate, NIST SP 800-53, Section 508, and Federal records/privacy requirements.
  • Relevant security certifications such as CISSP, Security+, SecurityX/CASP+, CCSP, CISM, or GIAC.

About ANALYTICA:Analytica is a leading consulting and information technology solutions provider to public sector organizations supporting health, civilian, and national security missions. Founded in 2009 and headquartered in Bethesda, MD, the company is an establishedSBA small businessthat hasbeen recognized byInc. Magazineeach of the past three years as one of the 250 fastest-growingcompanies in theU.S. Analytica specializes in providing software and systems engineering, information management, analytics & visualization, agile project management, and management consulting services.The companyis appraised by theSoftware Engineering Institute (SEI) atCMMI® Maturity Level 3and is an ISO 9001:2008 certified provider.

Analytica LLC is an Equal Opportunity Employer. We are committed to providing equal employment opportunities to all individuals, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or any other characteristic protected by applicable federal, state, or local law. As a federal contractor, we comply with the Vietnam Era Veterans' Readjustment Assistance Act (VEVRAA) and take affirmative action to employ and advance in employment qualified protected veterans. We ensure that all employment decisions are based on merit, qualifications, and business needs. We prohibit discrimination and harassment of any kind. Analytica LLC also provides reasonable accommodations to applicants and employees with disabilities, in accordance with applicable law.

To enhance efficiency, fairness, and accuracy, Analytica may use AI-assisted tools to support certain aspects of our hiring process.

  • Application Review: AI tools may help identify skills and experiences relevant to the role.
  • Interview Support: AI-powered notetaking tools may be used during interviews to document discussions and summarize key points.

These tools are used to assist our team. All hiring decisions are made by Analytica recruiters and hiring managers.

By submitting an application, you acknowledge that AI-assisted tools may be used to support parts of the application and interview process.

When receiving email communication from Analytica, please ensure that the email domain is analytica.net to verify its authenticity.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Full Stack Engineer
Lead Full Stack Engineer

Analytica • Bethesda (MD)

On-site
USD 140,000 - 190,000
Bonuses
Health insurance
Full Stack Engineer
Full Stack Engineer

analyticallc • Bethesda (MD)

On-site
USD 120,000 - 180,000
Bonuses
Health insurance
Training funds
+1
Platform Architect
Platform Architect

analyticallc • Bethesda (MD)

On-site
USD 150,000 - 190,000
Bonus
Health insurance
Training funds
+1
ML OPS Engineer
ML OPS Engineer

Analytica • Bethesda (MD)

On-site
USD 160,000 - 190,000
MLOps Engineer
MLOps Engineer

analyticallc • Bethesda (MD)

On-site
USD 120,000 - 190,000
Bonuses
Health insurance
Training funds
+1
Data Architect
Data Architect

Analytica • Bethesda (MD)

On-site
USD 130,000 - 180,000
Bonuses
Employer paid health care
Training and development funds
+1
Platform Engineer
Platform Engineer

Analytica • Bethesda (MD)

On-site
USD 120,000 - 155,000
Bonuses
Employer-paid health care
Training funds
+1
Senior Scrum Master — Data, AI & Analytics Delivery
Senior Scrum Master — Data, AI & Analytics Delivery

analyticallc • Bethesda (MD)

On-site
USD 120,000 - 170,000
Employer paid health care
Bonuses
Training funds
+1
MLOps Engineer
MLOps Engineer

Analytica • Bethesda (MD)

On-site
USD 140,000 - 190,000
Bonuses
Health care
Training funds
+1
Cloud Engineer
Cloud Engineer

Analytica • Bethesda (AR)

On-site
USD 95,000 - 140,000
Bonus opportunities
Health care
Training funds
+1