← Back to jobs

Security Engineer

Location
Remote
Work type
Full Time
Posted
2026-08-05

Job description

What you’ll be doing:

Partner with application development teams to integrate security requirements into design, development, and deployment workflows
Support ATO efforts including development of System Security Plans (SSPs), POA&Ms, and control documentation
Conduct risk assessments, vulnerability scans, and threat modeling aligned with NIST SP 800-53 and VA security standards
Participate in Agile/DevSecOps pipelines to ensure security is applied throughout the CI/CD lifecycle
Monitor and respond to security incidents, anomalies, and findings in coordination with stakeholders
Implement and maintain monitoring tools such as Splunk, ACAS, or Nessus
Ensure systems comply with FISMA, HIPAA, FedRAMP, and VA-specific security requirements

What you’ll bring:

Experience supporting ATO and RMF processes including documentation and continuous monitoring
Solid understanding of NIST SP 800-53, FISMA, and FedRAMP frameworks
Experience securing cloud environments such as AWS GovCloud or Azure Government
Familiarity with vulnerability scanning tools such as Nessus or ACAS
Familiarity with SIEM platforms such as Splunk or ELK Stack
Some scripting or automation experience in Python, Bash, or PowerShell is a plus
CISSP, CAP, CEH, CISM, or DoD 8570 certification is a plus
Thrives in a remote, collaborative Agile environment and genuinely enjoys working closely with a cross-functional team
Communicates clearly and openly, whether writing compliance documentation or coordinating with engineering teams
Performs other related duties as assigned.

Requirements:

Applicants must be authorized to work in the United States. In alignment with federal contract requirements, certain roles may also require U.S. citizenship and the ability to obtain and maintain a federal background investigation and/or a security clearance.

Education:

Bachelor’s Degree

Original source