Get more replies from employers
Send a job-specific resume in minutes.
Air Space Intelligence seeks a Security Engineer to harden and maintain cloud and software environments, ensuring compliance with U.S. government security standards.
You will work on AWS GovCloud and GCC High, supporting NIST 800-171/CMMC and 800-53, and collaborate with product, platform, and compliance teams in a Boston-based office. Ideal candidates have strong Python or Rust skills, container security experience, and familiarity with SBOM, threat modeling, and IaC tools like Terraform.
ASI's mission-critical technology powers decision-making across aviation, defense, energy, and other critical infrastructure domains. Backed by top-tier investors including Andreessen Horowitz, Spark Capital, and Renegade Partners, ASI delivers operational decision superiority—compressing days of analysis into seconds of action. ASI is leading the way and pushing the boundaries of what’s possible.
Air Space Intelligence is building mission-critical, secure infrastructure for defense and intelligence applications. We are seeking a Security Engineer to harden and maintain cloud and software environments, ensuring compliance with U.S. government security standards. As a Security Engineer, you will help harden and maintain ASI’s cloud and endpoint environment (AWS GovCloud and Microsoft GCC High) while supporting compliance with U.S. government security standards (e.g., NIST 800-171/CMMC and NIST 800-53).
Demonstrated coding skills in Python/Rust
Knowledge of container and CI/CD security (Kubernetes, image hardening, vulnerability scanning)
Investigate & remediate vulnerabilities, escalating complex issues when needed
Supply chain security experience (SBOM, artifact generation, dependency management)
Lead threat modeling sessions using established industry methodologies (e.g., STRIDE, PASTA, etc.)
Demonstrated skills in Infrastructure as a code (Terragrunt/Terraform).
Practical exposure to federal security frameworks (CMMC, NIST 800-53, FedRAMP).
Experience securing government cloud environments (AWS GovCloud), ensuring compliance with federal security requirements.
Hands-on experience with cloud-native incident alerting services (e.g., AWS GuardDuty/Security Hub, Azure Defender, etc.)
Automate configuration management, patching, and policy enforcement for networks, servers, and endpoints
Monitor security events using SIEM tools (Microsoft Sentinel, Splunk)
Collaborate with product, Platform, and compliance teams to embed security in the SDLC
Support incident response and post-incident review, growing toward leading these efforts over time
We view the interview process not as a screening or test, but rather as an opportunity to simulate what it would be like working together. We build the interview process around you.
Security Clearance: Must be eligible to obtain DoD clearance.
Citizenship: U.S. citizenship is required for this position.
On-Site Presence: Ability to work in our Boston (BOS) office at least three days per week