Security Engineer

Perfect Sense, Inc

Reston (VA)

Hybrid

USD 125,000 - 130,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Health insurance
Dental insurance
Vision insurance
Paid vacation 3 weeks
Paid sick leave
Paid company holidays
Safe Harbor 401(k)

Job summary

Brightspot is seeking a hands-on Security Engineer in Reston, VA to safeguard our platform and strengthen security posture. This role balances cloud hardening, issue investigation, and cross-team collaboration to embed security across the company.

You’ll work with Terraform and Pulumi, participate in vulnerability management, and help drive security initiatives end-to-end in a fast-paced environment.

Qualifications

  • 7+ years of hands-on security engineering experience in a software development environment.
  • Proven hands-on security engineer in SaaS or cloud-native environments.
  • Experience securing cloud environments (AWS/Azure/GCP) and modern DevOps pipelines.
  • Strong self-direction and ability to drive issues with minimal oversight.
  • Deep understanding of networking, firewalls, TLS, and secure configuration management.
  • Experience with IaC (Terraform, Pulumi) and securing IaC workflows.
  • Coding and scripting skills to investigate issues and contribute tooling.

Responsibilities

  • Drive security projects independently from scoping through completion across teams.
  • Investigate security issues, incidents, and alerts as part of the response effort.
  • Identify security issues and develop remediation plans; contribute code via PRs.
  • Work with CSPM, vulnerability management, and GRC tooling to address risks.
  • Improve security tooling, monitoring, and observability.
  • Conduct external security assessments and operationalize findings.
  • Integrate IaC tools into the development lifecycle.
  • Collaborate with Engineering, Platform, QA, and IT to embed security into workflows.

Skills

Security engineering
Cloud security
DevOps
Scripting
Cross-functional collaboration

Tools

Terraform
Pulumi
SAST
DAST
SIEM
GRC tooling

Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Security Engineer

Full Time Reston, VA, US

4 days ago Requisition ID: 1011

Salary Range: $125,000.00 To $130,000.00 Annually

About the Company

At Brightspot, we help content-driven organizations turn content chaos into momentum. Our flexible, AI-powered content management platform (CMS) enables teams to move faster, collaborate more effectively, and scale with confidence. Since 2008, leading enterprises have partnered with Brightspot to transform fragmented ecosystems into streamlined, high-performing operations that drive growth, strengthen governance, and deliver real business impact.

About the Role

We're looking for a hands-on Security Engineer to help protect our platform and strengthen our overall security posture. This is a highly technical, self-directed role for someone who enjoys getting into the details of infrastructure and application security, can drive projects from idea to completion with minimal oversight, and knows how to use AI tools as a force multiplier to move faster and dig deeper.

You'll split your time between hardening cloud infrastructure, investigating and resolving security issues, and partnering closely with Engineering, Platform, QA, and IT to make security a shared responsibility across the company. If you're someone who values ownership and autonomy and enjoys solving complex security challenges end-to-end, this role will give you room to make a real impact.

Responsibilities

  • Drive security projects independently from scoping through completion, working across teams to see initiatives through rather than handing them off after the design phase.
  • Contribute directly to the investigation of security issues, incidents, and alerts as a hands-on member of the response effort.
  • Identify security issues, develop plans for resolution, and, where appropriate, contribute code through pull requests.
  • Work hands-on with Cloud Security Posture Management, vulnerability management, and GRC tooling to identify risks and drive them to closure.
  • Continuously evaluate and strengthen existing security tools and processes to improve our overall security maturity.
  • Conduct external security assessments and operationalize the findings.
  • Partner with engineering teams to securely integrate Infrastructure as Code tools, such as Terraform and Pulumi, into the development lifecycle.
  • Improve alerting, monitoring, and production observability for security-relevant events.
  • Collaborate closely with Engineering, Platform, QA, and IT to embed security into everyday workflows and help build a culture in which security is everyone's responsibility.
  • Clearly communicate risks and proposed solutions to both technical and non-technical audiences.

Qualifications

  • 7+ years of hands-on security engineering experience within a software development environment.
  • Proven experience as a hands-on security engineer, ideally in a SaaS or cloud-native environment.
  • Experience securing cloud environments, such as AWS, Azure, or GCP, and working within modern DevOps pipelines.
  • Strong self-direction, with the ability to identify problems, prioritize them, and drive them to resolution with minimal oversight.
  • Deep understanding of networking and network security fundamentals, including segmentation, routing, firewalls, VPNs, TLS, and secure configuration management.
  • Experience with Infrastructure as Code, particularly Terraform or Pulumi, and securing IaC workflows.
  • Solid coding and scripting skills sufficient to investigate issues, build tooling, and contribute pull requests that directly address infrastructure vulnerabilities.
  • Proven track record of identifying vulnerabilities and driving remediation through completion in fast-paced environments.
  • Working knowledge of Cloud Security Posture Management platforms, vulnerability management tools, GRC and compliance tools, and Static Application Security Testing tools.
  • Familiarity with application security practices, including secure SDLC, code review, SAST, and DAST.
  • Experience working at a company undergoing or maintaining SOC 2 Type 2 certification.
  • Practical experience applying AI tools to security work, including investigation, code analysis, automation, and detection logic.
  • Excellent cross-functional collaboration skills, with a track record of working effectively alongside Engineering, Platform, QA, and IT teams.
  • Ability to clearly communicate technical risks and remediation plans to both engineering teams and non-technical stakeholders.

Preferred Qualifications

  • Experience operationalizing compliance frameworks, such as SOC 2 Type 2, in real production environments-not just passing an audit, but making the controls meaningful and sustainable.
  • Experience coordinating with third-party vendors for penetration testing and managing findings through remediation.
  • Experience building or tuning security monitoring and alerting pipelines, such as SIEM or cloud-native detection tooling.
  • Relevant certifications, such as AWS or GCP security certifications, OSCP, or CISSP.
  • The starting salary for this role is $125,000 with bonus potential.
  • Benefits include health, dental, and vision insurance, 3 weeks paid vacation, paid sick leave, paid company holidays, Safe Harbor 401(k) with employer matching, continuing education stipend, and a 3-week paid sabbatical after your 5th anniversary.
  • This is a hybrid position. Candidates are expected to work on-site at our Reston office 2-3 days per week.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

ADP, Inc. • Reston (VA)

Hybrid
USD 125,000 - 130,000
Health insurance
Dental insurance
Vision insurance
+6
Security Engineer
Security Engineer

Brightspot • Reston (VA)

Hybrid
USD 113,000 - 138,000
Health insurance
Dental insurance
Vision insurance
+1
Senior Security Engineer – Hybrid (4649)
Senior Security Engineer – Hybrid (4649)

Hireclout • Los Angeles (CA)

On-site
USD 180,000 - 200,000
Competitive compensation package
Equity participation
100% covered medical, dental, and vision coverage
+5
Software Engineer, Security
Software Engineer, Security

XOXO AI Inc. • San Francisco (CA)

On-site
USD 250,000 - 500,000
Health, dental, vision benefits
Equity between 1% and 5%
Sr. Cloud Security Engineer (Remote)
Sr. Cloud Security Engineer (Remote)

Inspira Financial • Oak Brook (IL)

Hybrid
USD 125,000 - 155,000
Healthcare
401(k)
Paid time off
+2
Cybersecurity Engineer
Cybersecurity Engineer

Skyline Technology Solutions, LLC. • Glen Burnie (MD)

On-site
USD 130,000 - 150,000
null
Sr. Security Engineer - Federal Customer
Sr. Security Engineer - Federal Customer

Dell GmbH • Virginia (MN)

On-site
USD 150,000 - 210,000
Sr. Security Engineer - Federal Customer
Sr. Security Engineer - Federal Customer

Dell GmbH • Chantilly (VA), Northern (KY)

Hybrid
USD 150,000 - 200,000
Senior Engineer, Cloud and System Security
Senior Engineer, Cloud and System Security

SES Satellites • McLean (VA)

On-site
USD 140,000 - 180,000
Sr. Security Engineer - Federal Customer
Sr. Security Engineer - Federal Customer

Dell • Virginia (MN)

On-site
USD 150,000 - 190,000