We are seeking a highly skilled Senior Security Engineer to join a multi-disciplinary cybersecurity team supporting mission-critical systems in a regulated federal environment. This hands-on role focuses on implementing and optimizing security controls across on-premises and multi-cloud environments while ensuring compliance with federal cybersecurity frameworks, including FISMA, NIST 800-53, FedRAMP, and RMF.
The ideal candidate brings deep security engineering expertise built upon a strong systems administration background and has experience with cloud security, vulnerability management, SIEM operations, application security, and emerging AI-driven security technologies. This position works closely with infrastructure, network, and enterprise security teams to strengthen the organization's overall security posture and support secure cloud adoption initiatives.
Key Responsibilities
- Implement and maintain security controls across on-premises and cloud platforms, including AWS, Azure, and GCP.
- Support compliance initiatives related to FISMA, NIST 800-53, FedRAMP, RMF, ATOs, and POA&M management.
- Enhance and automate security assessments, compliance monitoring, and remediation activities through scripting and available security tools.
- Evaluate and integrate AI/ML and LLM-based capabilities to improve threat detection, assessment, remediation, and operational efficiency.
- Administer and optimize security technologies such as SIEM, vulnerability management, application security, and centralized logging platforms.
- Support security monitoring, event correlation, incident investigation, and continuous compliance reporting using tools such as Splunk and Tenable.
- Conduct cloud security reviews, threat modeling, and vulnerability assessments to support secure deployments and cloud migrations.
- Collaborate with system administrators, developers, and infrastructure teams to identify and remediate security risks.
- Provide security guidance, best practices, and technical recommendations across server, workstation, network, and cloud environments.
- Develop and maintain security documentation, procedures, standards, and operational guidance.
Required Qualifications
- 10+ years of information security experience, including 7+ years in hands-on security engineering roles.
- Minimum 3 years of experience securing cloud environments (AWS, Azure, and/or GCP).
- Strong background in Linux and Windows administration with a foundation in systems engineering or systems administration.
- Experience implementing security controls in hybrid cloud and on-premises environments.
- Working knowledge of federal security frameworks including FISMA, NIST 800-53, FedRAMP, RMF, ATO, and POA&M processes.
- Experience with enterprise security tools such as Splunk, Tenable, Checkmarx, or similar technologies.
- Understanding of vulnerability management, application security testing, remediation workflows, identity and access management, encryption, and centralized logging.
- Experience utilizing scripting or automation tools such as PowerShell, Python, Bash, or APIs.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience).
- CISSP certification or ability to obtain within six months of hire.
- Excellent communication and collaboration skills with both technical and non-technical stakeholders.
Preferred Qualifications
- Experience integrating AI/ML capabilities into cybersecurity operations and automation workflows.
- Hands-on experience with Splunk engineering, SIEM administration, security analytics, and event correlation.
- Cloud security certifications such as AWS Security Specialty, Azure Security Engineer Associate, or Google Professional Cloud Security Engineer.
- Experience securing containerized environments, including Docker and Kubernetes.
- Advanced Linux and Windows administration expertise.
- Master's degree in Cybersecurity, Computer Science, Information Technology, or a related technical discipline.
What You'll Bring
- A proactive, hands-on approach to solving complex security challenges.
- Ability to balance security, compliance, and operational requirements in fast-paced environments.
- Strong analytical skills with the ability to identify systemic risks and drive practical remediation strategies.
- Passion for leveraging emerging technologies, including AI-driven security solutions, to enhance organizational security.
Join us in protecting critical systems, enabling secure cloud adoption, and advancing cybersecurity capabilities through innovation, automation, and continuous improvement.