Security Infrastructure & Exposure Engineer

AnaVation, LLC
Reston, VA, United States
17 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours

Tech stack

Comptia Cloud+ Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Security Cloud Engineering CompTIA Security+ Cyber Security Continuous Integration DevOps Network Topologies Inventory Management Software
+10 more
Python (Programming Language) Azure Active Directory Signalling Connection Control Part (SCCP) Scripting Okta Infrastructure Automation Frameworks Enterprise Integration Terraform GPT Programming Languages

Job description

  • Attack Surface Management: Architect and maintain Continuous Asset Attack Surface Management (CAASM) solutions for real-time asset discovery.
  • Attack Path Modeling: Map network topologies, analyze segmentation, and build automated attack path graphs to identify choke points.
  • Telemetry & Correlation: Integrate active/passive scanning data with Identity Provider (IdP) telemetry to pinpoint exposed or unmanaged infrastructure.
  • Pipeline Integration: Embed automated vulnerability and exposure testing into Infrastructure-as-Code (IaC) and CI/CD deployment pipelines.
  • Cloud Architecture Defense: Evaluate and harden complex cloud architectures against emerging exposure techniques.

Primary Languages & Technical Stack

  • Go, Rust, and Python (at least one required)

Requirements

  • Clearance: Active TS/SCI Clearance with CI Polygraph
  • Education & Years of Experience: Bachelor’s degree and 8 years of experience related to specific functional area.
  • Certifications: Active certifications for both IAT Level II (e.g. CompTIA Security+) and Cyber Security Service Provider (CSSP) Infrastructure Support (e.g. CompTIA Cloud+) by program onboarding date.
  • The following individual certifications cover both certification requirements for this program: CompTIA Cybersecurity Analyst, CySA+; EC-Council Certified Network Defender (CND); GlAC Global Industrial Cyber Security Professional, GICSP; (ISC)2 System Security Certified Practitioner (SCCP).
  • Hands-on experience and knowledge with the following:
  • Asset Discovery: Proven experience with CAASM tooling and building inventory systems.
  • Network & Graph Modeling: Deep understanding of network topology, segmentation verification, and graph-based attack path analysis.
  • Scanning & Identity: Hands-on experience with active/passive network scanning and correlating data with identity registries (e.g., Okta, Azure AD).
  • Cloud & DevOps: Strong background in cloud security architecture (AWS, GCP, or Azure), IaC (Terraform, OpenTofu), and CI/CD security validation.

Preferred Qualifications:

  • Experience leveraging advanced AI models (e.g., ChatGPT, Grok, Claude) to automate security workflows: (ChatGPT, Grok, Claude, Claude Code, Codex)
  • Multiple scripting and development languages
  • Familiarity with developer-focused AI tools like Claude Code or OpenAI Codex to accelerate engineering velocity

Benefits & conditions

  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short-term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance

About the company

In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture., AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team. If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you! AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. EEO Statement AnaVation is an Equal Employment/Affirmative Action employer. We do not discriminate in hiring on the basis of sex, gender identity, sexual orientation, race, color, religious creed, national origin, physical or mental disability, protected Veteran status, or any other characteristic protected by federal, state, or local law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

40 sec

Generative pre-trained transformer models powering code completions

lgonta lgonta +1 · WWC 2024

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · WWC 2023

Videos

See all

Related articles

See all