Senior Security Engineer

Zermount, Inc.

United States Virgin Islands

On-site

USD 100,000 - 150,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Zermount, Inc. is seeking a skilled Senior Security Engineer to safeguard digital assets through innovative security strategies. This role requires extensive knowledge in cloud security as well as proficiency in network defenses against cyber threats.

The successful candidate will design and deploy security measures in AWS and Azure while ensuring compliance with relevant frameworks. Candidates should have a Bachelor’s degree in a relevant field and certifications like CISSP.

Qualifications

  • 5+ years of experience with networks, systems, and applications.
  • Hands-on knowledge of AWS services like IAM, KMS, S3.
  • Understanding of DevSecOps implementation.

Responsibilities

  • Develop and integrate security workflows.
  • Conduct security reviews based on compliance.
  • Design and deploy cloud security measures.

Skills

Attention to detail
Strategic planning
Cloud security
Network security
DevSecOps strategy

Education

Bachelor of Science in Computer Engineering or related field

Tools

AWS
Azure
Google Cloud

Job description

Summary

We are looking for a highly talented, technical hands‑on Senior Security Engineer to develop and implement strategies to protect computer systems, networks, and other digital assets from malicious attacks. The role involves working with a team of IT professionals to design and deploy new security measures, update existing ones, and lead the development of solutions that patch holes and keep sensitive data safe.

Duties and Responsibilities
  • Develop and integrate with other cybersecurity workflows, including ATO intake, assessment, and vulnerability scanning.
  • Perform security reviews based on RMF controls compliance, client needs, and security best practices.
  • Provide security input on Cloud Center of Excellence (CCOE) and Cloud Advisory Council (CAC) agenda items by participating in technical working groups, providing analysis, and recommendations.
  • Conduct architecture design reviews, configuration and log reviews, and network traffic analyses.
  • Produce a SAR report detailing the architecture strengths and findings.
  • Design and deploy native cloud security services in AWS, Microsoft Azure, and Google Cloud.
  • Validate the proof of value of cloud‑native, COTS, third‑party, or open‑source security capabilities through hands‑on deployment and evaluation against security requirements.
  • Develop scripts or code to perform cloud security assessments using cloud‑native APIs or SDKs.
  • Create enterprise‑cloud security blueprints that embed security within Infrastructure as Code (IaC) templates.
  • Analyze the impact of emerging technologies on existing security systems and identify potential risks.
  • Research new and emerging security practices and capabilities such as AI/ML to address compliance and mitigate risk.
  • Improve cloud security monitoring by ingesting logs (API, application/database, flow logs) into a SIEM.
  • Increase cloud vulnerability coverage in OS, application code, and infrastructure layers.
  • Develop architecture for integrating findings into a centralized dashboard that provides product owners direct access to specific systems or cloud account findings.
Work With Cybersecurity Authorizations and Compliance Branch (CACB)
  • Conduct studies and analysis of proposed operations modifications.
  • Provide end‑to‑end architecture trade‑off assessments.
  • Develop strategic and tactical plans.
  • Conduct evaluation of new program requirements.
  • Investigate and develop new technologies for possible operations modifications.
  • Develop standards and solutions to meet client requirements.
Required Skills
  • High level of attention to detail, needs minimal guidance, effective verbal and written communication.
  • Equally adept at strategic planning and operational/technical level.
  • Able to adapt to new and changing requirements or priorities and manage work and resources accordingly.
  • At least 5 years (preferred 10 years) of experience with networks, systems, and applications: LAN/WAN, WAF/CDN/DDOS, network firewalls, IDS/IPS.
  • Experience with virtualization, hypervisor security, and container security.
  • Experience with application development, serverless security, microservices, and CI/CD.
  • At least 5 years of designing and/or implementing security in the cloud (AWS required, Azure or GCP optional).
  • Experience with multi‑cloud, hybrid cloud, IaaS, PaaS, SaaS, and shared responsibility model.
  • Hands‑on knowledge of AWS services: IAM, KMS, S3, RDS, SNS/SQS, Organization, GuardDuty, SecurityHub, Detective, Config, CloudTrail, CloudWatch, Lambda.
  • Hands‑on knowledge of Azure services: E3/E5, Active Directory, Blob, Azure Security Center, Key Vault, SSE, Monitor, Log Analytics, Policy.
  • Experience with DevSecOps strategy and implementation and designing architecture per RMF, CSF, FISMA, and FedRAMP.
  • Familiarity with ZTNA, SASE framework, ICAM (OKTA), CWPP, SOC operations, vulnerability threat management, and compliance.
  • At least 2 years managing Agile, DevOps, Scrum, or Kanban.
  • Cloud architecture, networking, and cybersecurity experience.
Education

Candidate must have a Bachelor of Science (or higher) in computer engineering, computer science, information technology, or cybersecurity. The résumé may reference another major, so long as the degree addresses at least one of the following: cybersecurity engineering, systems administration, information systems security, software development security, systems engineering, information systems, or IT.

Certifications

Certified Information Systems Security Professional (CISSP) is required. Candidates may also hold one or more of the following: Certified Cloud Security Professional, AWS Certified Solutions Architect – Associate, AWS Certified Security – Specialty, Microsoft Azure Solutions Architect, Google Professional Cloud Architect.

Clearance

Public Trust

Work Location & Core Hours

Washington, D.C. – Metro area, Full‑time

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Peyton Resource Group • Bethesda (MD)

On-site
USD 150,000 - 210,000
Security Operations Engineer – Senior
Security Operations Engineer – Senior

C3EL • Washington

On-site
USD 100,000 - 130,000
Cloud Security Engineer
Cloud Security Engineer

DANASTAR Professional Services, LLC • Washington

On-site
USD 140,000 - 190,000
Senior Engineer, Cloud and System Security
Senior Engineer, Cloud and System Security

SES Satellites • McLean (VA)

On-site
USD 140,000 - 180,000
Security Engineer
Security Engineer

Gravity IT Resources • Salt Lake City (UT)

On-site
USD 120,000 - 160,000
Cloud Security Engineer
Cloud Security Engineer

Booz Allen Hamilton • Alexandria (VA)

On-site
USD 99,000 - 225,000
Health, life, and disability insurance
Retirement plans
Paid leave
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000
Cyber Security Engineer
Cyber Security Engineer

Elevexa Career LLC • United States

On-site
USD 110,000 - 175,000