Senior Security Engineer

DecisionPoint Corporation
Reston, VA, United States
13 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours

Tech stack

Kubernetes Security Amazon Web Services Component-Based Software Engineering Cloud Computing Security Code Review Cyber Security Software Design Documents Identity and Access Management Log Analysis Public Key Infrastructure Zero Trust Network Access Security Information and Event Management
+12 more
Single Sign-On Systems Architecture Systems Integration SSL Certificate Management Software Security Kubernetes Information Technology Tenable Nessus CIS Benchmarks Devsecops Security Orchestration, Automation & Response Vulnerability Analysis

Job description

The Senior Security Engineer supports system modernization, secure cloud adoption, continuous monitoring improvements, and enterprise cybersecurity strategy through engineering rigor, security testing, and expert technical guidance. This role ensures system confidentiality, integrity, and availability through proactive design and implementation of robust security controls and architectures., The Senior Security Engineer will: Design secure system architectures and cloud configurations in alignment with federal and DoD security requirements.

  • Implement IL5 controls, security baselines, and environment hardening across systems, applications, and cloud resources.

  • Apply STIG requirements and secure configuration checklists to cloud, OS, network, and application components.

  • Support secure single sign-on (SSO) integration, identity federation, certificate management, and authentication workflows.

  • Develop and maintain secure configuration baselines, encryption standards, and boundary protection controls.

  • Conduct security assessments, security testing, and vulnerability analysis to identify and remediate risks.

  • Review code, configurations, and deployment patterns for secure implementation.

  • Collaborate with cloud engineers, DevSecOps teams, and system owners to ensure secure deployment practices and change controls.

  • Participate in continuous monitoring activities including log review, alert triage, scanning, and compliance updates.

  • Provide detailed technical recommendations for remediation and mitigation strategies.

  • Support audit activities, authorization testing, and security documentation updates.

  • Produce architecture diagrams, security implementation plans, and technical design documentation.

  • Mentor junior engineers and contribute to organizational security engineering standards.

Requirements

Clearance Requirement

Must hold an active Top Secret clearance, supported by a Tier 5 background investigation.

Education (Required)

Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or a related field.

Experience (Required)

  • Minimum 10 years of experience in security engineering, cybersecurity, or secure systems design.

  • Experience implementing IL5 or equivalent high-impact cloud security controls.

  • Experience applying STIGs, secure configuration baselines, and hardening guidelines.

  • Experience designing secure SSO, certificate management, and authentication integrations.

  • Experience performing security testing, vulnerability assessments, and remediation planning.

  • Experience supporting secure cloud deployments and modern enterprise architectures.

Technical Knowledge (Required)

  • Strong knowledge of cloud security architectures, particularly in AWS.

  • Deep understanding of DoD cybersecurity requirements, NIST SP 800-53, and RMF-aligned controls.

  • Proficiency in STIG application, hardening techniques, and secure configuration standards.

  • Knowledge of identity and access management, certificate management, and PKI.

  • Experience with SIEM tools, log analysis, scanning tools, and continuous monitoring programs.

Technical Knowledge (Preferred)

  • Experience with AWS cloud-native security services and AWS security certifications.

  • Familiarity with Zero Trust architectures and modern boundary protection strategies.

  • Experience with container security, Kubernetes hardening, or cloud-native app security.

  • Understanding of DevSecOps pipelines, IaC scanning, and security automation tools.

Certifications

Required:

  • CISSP or CCSP or Security+

Preferred:

  • AWS Security Specialty

  • CISM

  • GIAC security engineering or cloud certifications

Skills

  • Strong problem-solving and technical analysis skills for diagnosing complex security issues.

  • Excellent communication skills for conveying technical concepts to stakeholders.

  • Ability to design and document secure architectures, baselines, and implementation plans.

  • Strong attention to detail and precision in applying security controls and reviewing configurations.
  • Ability to balance mission needs with rigorous cybersecurity requirements.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · WWC 2022

3:39 min

Addressing code review surrender and process exploitation

Laura Tacho Laura Tacho · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

56 sec

The hidden costs of delayed peer code reviews

Tim Gilboy Tim Gilboy

Videos

See all

Related articles

See all