Sr. Security Engineer

HALL, VICKIE L
Alexandria, VA, United States
16 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$155,000.0 - $165,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Mobile Application Development Software as a Service Cloud Computing Security Cyber Security Data Discovery Information Leak Prevention Cursor (Graphical User Interface Elements) Intrusion Detection and Prevention Python (Programming Language)
+10 more
Windows PowerShell Markdown Security Information and Event Management Symantec Data Classification GitHub Copilot Large Language Models Prompt Engineering Information Technology Data Pipelines

Job description

Halvik is seeking a Senior Security Engineer to support a customer’s enterprise initiative that enables secure, compliant adoption of Artificial Intelligence (AI) across their agency’s hybrid environment. This role leads the design, implementation, and operationalization of enterprise-scale data discovery and classification, AI governance and protection controls, and detection capabilities for emerging AI-native development artifacts (e.g., Markdown-based prompt files, cursor rules, GitHub Copilot instructions, and Model Context Protocol configuration files). The Senior Security Engineer will serve as a technical lead on the program, working closely with customer stakeholders, the COR/CO, and Halvik delivery leadership to protect sensitive agency and stakeholder information while enabling the agency’s AI adoption goals. This is a Hybrid position requiring work at the customer location in Alexandria, VA. Core Responsibilities

  • Strategic Execution: Lead the architecture and phased rollout of enterprise data discovery, classification, and AI governance capabilities, prioritizing high-risk repositories and expanding coverage across cloud, on-premises, SaaS, and developer environments.
  • AI Governance & Enforcement: Design and tune policy-based controls (allow, block, alert, redact, route) that monitor AI prompts, responses, and related artifacts in real time or near-real-time to prevent unauthorized disclosure of sensitive information.
  • Emerging AI Artifact Security: Own detection, classification, and protection of AI-native development artifacts, including Markdown prompt files, cursor rules, Copilot instructions, and MCP configuration files, across repositories, shared drives, and developer workspaces.
  • Operational Oversight: Maintain auditable enforcement records, oversee remediation workflows for policy exceptions and exposure events, and ensure timely, traceable resolution of compliance findings.
  • Collaboration: Partner with customer stakeholders, the COR/CO, and cross-functional Halvik teams to align implementation with the agency’s cloud migration timeline, security approvals, and AI expansion roadmap.
  • Technical Performance: Architect integrations with enterprise DLP/CASB platforms, SIEM, and identity/access workflows; support early, automated detection of vulnerabilities in code, containers, and infrastructure-as-code templates, including flaws introduced by AI components or data pipelines feeding AI models.
  • Mentorship & Quality: Provide technical guidance and review for mid-level engineers and contribute to deliverables including the Enterprise Architecture and Deployment Plan, Discovery and Classification Configuration, and AI Governance and Enforcement Configuration.
  • Continued Proficiency: Stays current with emerging AI technologies and cybersecurity trends to ensure best-in-class practices.

Requirements

  • Education: Bachelor’s degree in Computer Science, Information Security, or a related field (Master’s Degree and 8 years of experience; equivalent experience may be considered in lieu of degree, 14+ years).
  • Experience: Minimum of 10 years of professional cybersecurity engineering experience, including at least 3 years focused on data loss prevention (DLP), data classification, or cloud/enterprise security architecture, ideally within a Federal environment.
  • Technical Proficiency: Advanced knowledge of data discovery/classification and DLP platforms (e.g., Microsoft Purview, Symantec DLP, Varonis), cloud security in AWS/Azure/GovCloud, CASB, and SIEM tooling.
  • Compliance: Working knowledge of NIST SP 800-53, FISMA, and the Risk Management Framework (RMF).
  • Certifications: Current CISSP certification is required.
  • Must be able to obtain and maintain a Public Trust security clearance.

Preferred Expertise

  • Demonstrated success supporting Federal contracts.
  • Hands-on experience securing generative AI and LLM-enabled workflows, including prompt engineering artifacts and Model Context Protocol implementations.
  • Familiarity with Agile/Scrum delivery methodologies and enterprise IT service management practices.
  • Scripting and automation experience (e.g., Python, PowerShell) to support policy tuning and reporting.
  • Strong analytical, written, and verbal communication skills, with the ability to translate technical risk into terms suitable for executive and government stakeholders.
  • Ability to work collaboratively with others and contribute to a team environment.

Benefits & conditions

Halvik offers a competitive full benefits package including: Company-supported medical, dental, vision, life, STD, and LTD insurance Benefits include 11 federal holidays and PTO Eligible employees may receive performance-based incentives in recognition of individual and/or team achievements. 401(k) with company matching Flexible Spending Accounts for commuter, medical, and dependent care expenses Tuition Assistance Charitable Contribution matching Halvik Corp is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Halvik’s pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law., Vantor

  • Washington DC
  • $113,000-188,000 per year Vantor is forging the new frontier of spatial intelligence, helping decision makers and operators navigate what’s happening now and shape what’s coming next. Vantor is a place for …

  • 5 days ago +

About the company

Halvik Corp delivers a wide range of services to 13 executive agencies and 15 independent agencies. Halvik is a highly successful WOB business with more than 50 prime contracts and 500+ professionals delivering Digital Services, Advanced Analytics, Artificial Intelligence/Machine Learning, Cyber Security and Cutting-Edge Technology across the US Government. Be a part of something special!, Vantor

  • McLean, VA
  • $161,000-236,500 per year Vantor is forging the new frontier of spatial intelligence, helping decision makers and operators navigate what’s happening now and shape what’s coming next. Vantor is a place for …

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:08 min

Applying software engineering environments and testing to data pipelines

Matthias Niehoff Matthias Niehoff · WWC 2024

1:02 min

Embedding interactive quizzes in Markdown documents

André Dietrich André Dietrich · WWC 2024

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

47 sec

Building modern data pipelines for legacy exports

Dr. Alexander Wachtel Dr. Alexander Wachtel +1 · WWC 2025

44 sec

Rendering AI-generated markdown securely with sanitization libraries

Ramona Schwering Ramona Schwering · WWC Europe 2026

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all