- Own the security posture of environments used to build, test, and deliver advanced AI-cyber capabilities
- Embed with software engineers, reverse engineers, and vulnerability researchers
- Harden infrastructure, software supply chains, and development pipelines
- Guide secure software development and evolution of software vulnerability tooling
- Guide and review build integrity and supply-chain security
- Threat model internal tooling
- Assess API integrations and AI/LLM orchestration
- Maintain tool security posture using continuous ATO review workflows and pipelines
- Support ATO and continuous vulnerability management
- Advise engineering teams on genuine security risks versus noise
- Scale threat detection and response capabilities
Requirements
- 8+ years of professional experience in security engineering, secure software development, or infrastructure security
- Experience securing and using agentic tooling for writing and maintaining production code, managing cloud infrastructure, and release management frameworks
- Experience owning security outcomes for a technical product from ideation to production and influencing engineering teams toward secure design without direct authority
- Experience hardening software deployments, networks, and production infrastructure at scale
- Experience securing software clusters for online/cloud as well as on-prem or air-gapped installations
- Experience with threat modeling, vulnerability management, and secure development practices across first- and third-party code
- Familiarity with NIST RMF, continuous ATO, and control automation
- 15+ years of hands-on experience securing and hardening Linux systems at the OS and network layer
- Expertise in at least one scripting language, Python preferred
- Working knowledge of network protocols, cryptographic fundamentals, and key management
- Experience with infrastructure-as-code and containerization, including Ansible/Terraform and Docker/Kubernetes
- Experience administering or securing a CI/CD system, such as GitLab CI or Jenkins
- Relevant certifications such as CISSP, OSCP, or GCIH are useful but not required
- Experience working in accredited/classified environments, including cross-domain solutions
- Offensive security background, including penetration testing, red team, or serious CTF experience
- Detection engineering or SIEM experience
- Experience with embedded, real-time, or otherwise constrained platforms
- Exposure to reverse engineering or vulnerability research
- Knowledge of non-human/agent identity and secrets management
- Experience with sandboxing and egress control for code-executing agents
- Familiarity with NIST AI RMF
- Experience using LLMs for control narrative drafting, evidence collection, and POA&M triage
Core Competencies
Demonstrates expertise in security engineering, secure software development, and infrastructure security, with a strong focus on threat modeling, vulnerability management, and secure design practices. Proficient in hardening software deployments and managing security outcomes across diverse environments, including cloud and on-premises systems.
Highest-signal resume keywords
- Security Engineering
- Threat Modeling
- Vulnerability Management
- Secure Software Development
- Infrastructure Security
Hard Skills
- Python
- Threat Modeling
- Vulnerability Management
- Infrastructure-As-Code
- Containerization
- CI/CD Administration
- Linux Security
- Network Protocols
- Cryptographic Fundamentals
- Agentic Tooling
Soft Skills
- Influencing Engineering Teams
- Advising on Security Risks
Certifications & Qualifications
Industry Keywords
- NIST RMF
- Continuous Vulnerability Management
- Cross-Domain Solutions
- Embedded Platforms
- Red Teaming
- Penetration Testing
- AI RMF
Tools & Technologies
- Ansible
- Terraform
- Docker
- Kubernetes
- GitLab CI
- Jenkins
- Continuous ATO Workflows
- SIEM