> Markdown version of [/jobs/ext/1402988-security-engineer-api-integrations](https://www.wearedevelopers.com/jobs/ext/1402988-security-engineer-api-integrations). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer (API Integrations) - **Company:** MARCELLE CONNEX LLC - **Location:** Fairfax, VA, United States - **Salary:** $90,000.0 - $125,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Bash Shell, Border Gateway Protocol, Ubuntu (Operating System), CentOS, Cisco PIX, Cloud Computing, Cloud Computing Security, Configuration Management, Control Objectives for Information and Related Technology (COBIT), Computer Networks, Dynamic Host Configuration Protocol, Debian Linux, Linux, Digital Assets, Domain Name System (DNS), Federal Information Processing Standards (FIPS), Identity and Access Management, Internet Protocol Security (IP SEC), Interoperability, Intrusion Detection and Prevention, Intrusion Detection Systems, Virtual Private Networks (VPN), Python (Programming Language), Local Area Networks, Network Security, Network Architecture, Network Protocols, Open Shortest Path First (OSPF), Open Source Technology, PCI Data Security Standards, Ansible, Security Software, Security Information and Event Management, TCP/IP, Software Vulnerability Management, Network Routing, Scripting, Identity Services Engine, Google Cloud, Load Balancing, Firewalls (Computer Science), Selinux, Information Technology, SolarWinds (Software), Network Support, Cybercrime, Splunk, New Relic (SaaS), Api Management, Vulnerability Analysis, Web Api - **Published:** July 23, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=dfd1e34c10fbafa7 ## About the Role * Proven experience in security engineering with a focus on API integrations within complex IT environments. * Strong knowledge of computer networking concepts including TCP/IP, DNS, DHCP, IPsec VPNs, load balancing, and network architecture design. * Hands-on expertise with cybersecurity tools such as SIEM platforms (Splunk), IDS/IPS systems, endpoint detection and response (EDR), and threat detection & response methodologies. * Familiarity with cloud security engineering principles across AWS, Azure, or Google Cloud Platform environments. * Working knowledge of security standards including ISO 27001/27000 series, FIPS compliance requirements, NIST frameworks (RMF), and ITIL best practices. * Experience managing firewalls (Cisco ASA), network support tools (SolarWinds), configuration management (Ansible), scripting languages (Python, Bash), and system administration tasks on Linux/Unix-based OS like Ubuntu or openSUSE. * Strong analytical skills for vulnerability assessment investigations and security risk analysis; ability to communicate complex technical issues clearly. Join us if you're passionate about protecting digital assets through innovative security solutions-where your expertise directly impacts our organization's resilience against evolving cyber threats! ## Description We are seeking a dynamic and detail-oriented Security Engineer specializing in API integrations to join our cybersecurity team. In this role, you will be at the forefront of safeguarding our digital infrastructure by designing, implementing, and maintaining robust security solutions that integrate seamlessly with various APIs. Your expertise will help ensure the integrity, confidentiality, and availability of our systems while supporting compliance with industry standards such as ISO 27001, ISO 27000 series, NIST, and FIPS. This position offers an exciting opportunity to work on cutting-edge security projects within a fast-paced environment dedicated to advancing cybersecurity resilience across cloud and on-premises infrastructures., * Develop and implement secure API integration strategies to enhance system interoperability while maintaining high security standards. * Conduct comprehensive security risk assessments and vulnerability management for API endpoints, ensuring adherence to best practices aligned with NIST standards and ISO frameworks. * Collaborate with cross-functional teams to design secure network architectures utilizing WAN, LAN, VPNs, and cloud infrastructure such as AWS and Google Cloud Platform. * Monitor security event management systems like SIEM tools (e.g., Splunk, New Relic) to detect, analyze, and respond to potential threats related to network protocols, IDS/IPS systems, and cybersecurity tools. * Perform regular security assessments including vulnerability research, penetration testing, system hardening (e.g., SELinux), and incident response planning for IT infrastructure components like Cisco ASA firewalls, Cisco ISE for identity management, and network routing protocols (OSPF, BGP). * Maintain comprehensive documentation of system security plans (SSPs), incident management procedures, and compliance reports aligned with standards such as PCI DSS, FedRAMP, FISMA, and COBIT. * Support incident recovery efforts by investigating security breaches involving encryption failures or unauthorized access via VPNs or open-source operating systems like Debian or CentOS. ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)