Security Engineer

Acuity, Inc.

Maryland

On-site

USD 108,000 - 221,000

Full time

5 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Training & certification budget (up to
Degree-seeking support (up to $3,000)

Job summary

Acuity, Inc. is seeking a Security Engineer to protect government missions by securing enterprise infrastructure and cloud environments. You will engage in continuous monitoring, vulnerability management, STIG enforcement, and ATO sustainment, collaborating with admins, engineers, and stakeholders.

The role emphasizes infrastructure security with some application-security awareness, and requires strong experience with RMF, NIST standards, IAM, and Zero Trust in federal environments.

Qualifications

  • Bachelor's degree or equivalent experience in a related field.
  • Minimum of five years of cybersecurity engineering, infrastructure security, cloud security, security operations, or information assurance.
  • Hands-on experience with enterprise infrastructure and security monitoring tools.
  • Experience with RMF, NIST SP 800-53, FISMA, and DoS/federal policies.
  • Experience with IAM, AD, Windows Server, VMware, and hardening.
  • Knowledge of Zero Trust, cloud security across Azure/AWS/hybrid, and security incident response.

Responsibilities

  • Administer and support infrastructure and cloud security technologies.
  • Support continuous monitoring and vulnerability management across servers, VMs, and cloud platforms.
  • Perform risk assessments and security control validation per NIST RMF and DoS guidance.
  • Support ATO sustainment, documentation, and audit readiness.
  • Collaborate with admins, engineers, analysts, and stakeholders to improve security posture.
  • Maintain security configurations, STIGs, and least-privilege access controls.
  • Prepare technical documentation and remediation plans.

Skills

Cybersecurity engineering
RMF/NIST
Cloud security
IAM / Active Directory
Zero Trust
Security monitoring
SAST/DAST knowledge
Automation (PowerShell, Python)
Documentation & risk assessment
Analytical & collaboration skills

Education

Bachelor's degree in Computer Science/Cybersecurity/IT

Tools

Microsoft Defender for Cloud
Microsoft Purview
SCUBA
Rapid7
Tenable
ScienceLogic
Splunk
Microsoft Sentinel

Job description

Overview

Looking to make a difference and help protect critical government missions? Join Acuity's team of cybersecurity professionals supporting the U.S. Department of State. As a Security Engineer you will help secure enterprise infrastructure and cloud environments through continuous monitoring, vulnerability management, secure configuration and STIG enforcement, ATO sustainment, cloud security posture management, Zero Trust implementation, incident response, and compliance with federal cybersecurity standards. This role partners closely with system administrators, cloud and infrastructure engineers, security analysts, and government stakeholders to strengthen the organization's security posture while supporting modernization initiatives. The position is centered on infrastructure and cloud security rather than application-development security, while maintaining enough application security awareness to collaborate effectively across the broader Department of State security ecosystem.

Why Acuity?

Are you ready to use your expertise in the areas of IT Modernization, Data Enablement, and Hyperautomation to make a real difference? Join Acuity, Inc., a technology consulting firm that supports federal agencies. We combine industry partnerships and long-term federal experience with innovative technical leadership to support our customers’ critical missions.

Responsibilities
  • Administer and support infrastructure and cloud security technologies, including Microsoft Defender for Cloud, Microsoft Purview, SCUBA, Rapid7, Tenable, ScienceLogic, and comparable enterprise security platforms.
  • Support continuous monitoring and infrastructure security operations across servers, virtual machines, cloud platforms, networked systems, and enterprise services; identify security findings and coordinate remediation with infrastructure and operations teams.
  • Perform security assessments, vulnerability analysis, risk assessments, and security control validation in accordance with NIST RMF and Department of State security requirements.
  • Support continuous monitoring, iPost activities, security compliance, documentation, audit readiness, and ATO sustainment for enterprise systems.
  • Administer and support security technologies for vulnerability management, cloud security posture management, identity and access management (IAM), configuration management, system hardening, and security monitoring.
  • Conduct and support enterprise vulnerability management using tools such as Tenable, Rapid7, Microsoft Defender for Cloud, and comparable platforms; track findings through remediation and validation.
  • Support security incident response and remediation activities in accordance with NIST SP 800-61 and applicable Department of State guidance, coordinating with Security Operations Center (SOC) personnel as needed.
  • Review system configurations, STIGs, security baselines, and access controls to ensure compliance with least-privilege principles, Department of State requirements, and federal cybersecurity standards.
  • Support security monitoring of enterprise environments including Windows Server, VMware ESXi, VMware vCenter, Active Directory, cloud platforms, virtualized infrastructure, and associated enterprise services using tools such as ScienceLogic and other monitoring platforms.
  • Maintain working familiarity with Department of State application security and code‑scanning capabilities, including Fortify and comparable SAST/DAST/SCA tools, to understand application‑related findings, dependencies, and interfaces with infrastructure security; hands‑on administration of these tools is not the primary focus of this role.
  • Assist with implementation and monitoring of security controls across cloud, network, and infrastructure environments, including cloud security posture management and Zero Trust initiatives.
  • Collaborate with system administrators, cloud and infrastructure engineers, security analysts, project teams, and business stakeholders to identify risks, recommend security improvements, and resolve technical issues.
  • Prepare and maintain technical documentation, security procedures, risk assessments, remediation plans, Plan of Action and Milestones (POA&Ms), ATO/compliance artifacts, and continuous monitoring documentation.
  • Perform additional duties as assigned in support of customer mission objectives.
Qualifications
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field (or equivalent experience).
  • Minimum of five (5) years of experience in cybersecurity engineering, infrastructure security, cloud security, security operations, or information assurance.
  • Hands‑on experience with enterprise infrastructure, vulnerability management, cloud security, or security monitoring tools such as Microsoft Defender for Cloud, Microsoft Purview, SCUBA, Rapid7, Tenable, ScienceLogic, Splunk, Microsoft Sentinel, or comparable technologies.
  • Experience supporting enterprise vulnerability management, continuous monitoring, system hardening, STIG enforcement, security finding remediation, and infrastructure security operations.
  • Experience working with NIST SP 800‑53, Risk Management Framework (RMF), FISMA, and Department of State or comparable federal cybersecurity policies and requirements.
  • Experience supporting vulnerability management and security monitoring solutions such as Tenable, Rapid7, Microsoft Defender for Cloud, ScienceLogic, Splunk, Microsoft Sentinel, or comparable enterprise platforms.
  • Experience with Identity and Access Management (IAM), Active Directory, Windows Server, VMware or other virtualized infrastructure, and enterprise system hardening.
  • Experience supporting security incident response, continuous monitoring, ATO sustainment, compliance initiatives, and remediation tracking.
  • Working knowledge of cloud security principles and cloud security posture management across Azure, AWS, or hybrid cloud environments.
  • Experience implementing or supporting Zero Trust security principles across enterprise infrastructure and cloud environments.
  • Working knowledge of application security concepts and tools such as Fortify, OWASP ZAP, Veracode, Checkmarx, Sonatype, or comparable technologies sufficient to collaborate with application security and development teams; deep application security engineering or code‑scanning specialization is not required.
  • Familiarity with automation and infrastructure technologies such as PowerShell, Python, Ansible, Terraform, Azure DevOps, or comparable tools used to support secure infrastructure operations.
  • Understanding of network security, endpoint/server security, vulnerability remediation, configuration compliance, and security monitoring in enterprise environments.
  • Strong analytical, troubleshooting, communication, documentation, and customer service skills.
  • Ability to work independently while collaborating effectively across technical and non‑technical teams.
Preferred Qualifications
  • Active cybersecurity certification such as CISSP, CCSP, Security+, CISM, CISA, CEH, Cloud+, or comparable DoD 8140‑approved certification.
  • Experience supporting the U.S. Department of State or other federal civilian agencies.
  • Experience implementing Zero Trust architecture, cloud security posture management, and secure‑by‑design principles in federal or enterprise environments.
  • Familiarity with Fortify or other application security testing platforms used within Department of State environments is a plus, particularly where application findings intersect with infrastructure, cloud, configuration, or vulnerability remediation activities.
  • Familiarity with Department of State iPost, STIG compliance, ATO sustainment, F5, Palo Alto, or other enterprise network and infrastructure security technologies.
Clearance Requirement
  • Active Secret or Top Secret security clearance required.
About Acuity

At Acuity, your work matters—and so does your experience. We’re a management and technology consulting firm supporting critical federal missions, where you’ll have the opportunity to solve meaningful challenges, work alongside high‑performing teams, and make a real impact from day one.

Why You’ll Love Working Here
Grow Your Career, Your Way

We invest in you with personalized development plans, mentorship, and up to $3,000 annually for training and certifications and up to $3,000 for degree‑seeking programs—so you can keep building the career you want.

Be Part of Something Innovative

You’ll work on cutting‑edge solutions that support important government missions, in an environment that encourages new ideas and continuous improvement.

Thrive in a People‑First Culture

Collaboration, respect, and support aren’t just values— they’re how we operate . Your voice is heard, your contributions are recognized, and your success is shared.

Feel Valued and Rewarded

We offer competitive compensation, comprehensive benefits, and a strong focus on work‑life balance so you can perform at your best—at work and at home.

Join an Award‑Winning Team

Our employees consistently rank us among the best—earning honors like Best Places to Work (Washington Business Journal, 9+ years) and Top Workplaces (The Washington Post, 2022‑2025).

Bring Your Whole Self To Work

We’re committed to building a diverse, inclusive environment where everyone feels respected, supported, and empowered to succeed.

Make Your Impact

Join Acuity and be part of a team where your ideas are valued, your growth is supported, and your work drives meaningful outcomes.

Learn more: www.myacuity.com

Acuity is an Equal Opportunity Employer committed to fostering a diverse and inclusive workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, sexual orientation, gender identity, or gender expression), national origin, age, disability, protected veteran status, genetic information, or any other status protected by applicable law.

Min

USD $108,000.00/Yr.

Max

USD $221,000.00/Yr.

Salary Range

The salary range for this position represents Acuity's good faith estimate of the compensation for this job title at the time of posting. Final compensation will be determined based on factors including, but not limited to, the candidate's qualifications, experience, education, certifications, skills, geographic location, contract requirements, applicable labor categories, and, where applicable, contract award and funding.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst
Security Analyst

Acuity, Inc. • Maryland

On-site
USD 87,000 - 194,000
Training & certifications stipend
Degree-seeking program support
Cloud Engineer
Cloud Engineer

Acuity, Inc. • Maryland

On-site
USD 108,000 - 221,000
Training & Certifications
Work-life balance
Competitive compensation
Security Analyst
Security Analyst

Socket.dev • Washington

On-site
USD 87,000 - 194,000
Training and certification stipend
Degree program support
Cloud Engineer
Cloud Engineer

Socket.dev • Washington

On-site
USD 108,000 - 221,000
Senior Infrastructure & Cloud Engineer (IaaS)
Senior Infrastructure & Cloud Engineer (IaaS)

Acuity, Inc. • Maryland

On-site
USD 108,000 - 221,000
Cloud Business Analyst
Cloud Business Analyst

Acuity, Inc. • Maryland

On-site
USD 87,000 - 194,000
Cybersecurity Manager
Cybersecurity Manager

Acuity, Inc. • Washington

On-site
USD 170,000 - 220,000
Senior IT Project Manager
Senior IT Project Manager

Socket.dev • Washington

On-site
USD 183,000 - 230,000
Cloud Business Analyst
Cloud Business Analyst

Socket.dev • Washington

On-site
USD 87,000 - 194,000
Training budget
Degree programs funding
Scrum Master / Business Analyst
Scrum Master / Business Analyst

Socket.dev • Washington

On-site
USD 108,000 - 221,000