Security Engineer
Quick Overview
Job Description
Position Summary
The Security Engineer is responsible for implementing, operating, and supporting security controls for a cloud-native federal platform hosted on AWS. This role performs vulnerability scanning and security testing, tracks remediation activities, supports security authorization and continuous-monitoring requirements, and helps maintain the platform’s overall security and compliance posture.
Working closely with DevSecOps engineers, application teams, security leadership, and other technical stakeholders, the Security Engineer supports Authority to Operate evidence collection, threat detection, incident response, and security automation. The role also leverages AI-assisted security tools to improve threat identification, analysis, and triage across the operating environment.
Key Responsibilities
Implement, configure, and maintain security controls across the AWS cloud environment.
Perform vulnerability scanning, security testing, and technical security assessments.
Analyze security findings and coordinate vulnerability remediation and closure activities.
Track identified vulnerabilities, remediation plans, risk acceptance decisions, and supporting evidence.
Support the collection, organization, and maintenance of Authority to Operate evidence.
Assist with documenting security-control implementation aligned with NIST SP 800-53 and FedRAMP requirements.
Operate and support continuous-monitoring, threat-detection, and security-analysis tools.
Review security alerts and events to identify potential threats, vulnerabilities, or unauthorized activity.
Collaborate with DevSecOps engineers to integrate security controls and automated testing into CI/CD pipelines.
Support incident-response investigations, evidence collection, and basic forensic-analysis activities.
Develop or maintain scripts and automation that improve security monitoring, testing, reporting, and remediation.
Leverage AI-assisted security tools to support threat detection, alert analysis, investigation, and triage.
Work with application, infrastructure, cloud, and security teams to resolve security issues and strengthen the platform’s security posture.
Maintain security documentation, test results, remediation records, and continuous-monitoring evidence.
Communicate security findings, risks, remediation status, and technical recommendations to relevant stakeholders.
Minimum Experience
3+ years of professional security engineering experience.
Experience implementing or operating security controls within cloud environments.
Hands-on experience with AWS security concepts and services.
Experience with vulnerability management, security testing, and remediation tracking.
Working knowledge of NIST SP 800-53 or FedRAMP security controls.
Skills
Similar jobs
Cyber Systems Engineer - Level 3 or 4 (AHT) with Security Clearance
Northrop Grumman · Aurora, United States
11 minutes ago$125.3k - $187.9k/yrInformation Systems Security Engineer (isse) with Security Clearance
Markon · Chantilly, United States
11 minutes ago$170k - $195k/yrPrincipal Cyber Systems Engineer (S) with Security Clearance
Northrop Grumman · Jessup, United States
11 minutes ago$125.3k - $187.9k/yrSecurity Engineer WITH GCP
Shree Narayani Networking Solutions LLC · Jersey City, United States
15 minutes agoCyber Systems Security Engineer (Embedded) with Security Clearance
Lockheed Martin · Orlando, United States
15 minutes agoSecurity Engineer
Rivago infotech inc · Independence Township, United States
15 minutes ago