> Markdown version of [/jobs/ext/1894946-security-engineer](https://www.wearedevelopers.com/jobs/ext/1894946-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** DAT Freight Solutions - **Location:** Seattle, WA, United States - **Experience:** Experienced - **Salary:** $113,841.0 - $148,580.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Cloud Computing Security, Cyber Security, Identity and Access Management, Network Security, Systems Development Life Cycle, Zero Trust Network Access, Runbook, Systems Integration, Data Logging, Cloud Platform System, Mitre Att&ck, Cloudformation, Containerization, Kubernetes, Information Technology, CIS Benchmarks, Terraform, Devsecops, Docker, Static Application Security Testing, Dynamic Application Security Testing - **Published:** August 2, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/17792368?backUrl=%2Fcareer%2F17792368%2FSecurity-Engineer-Washington-Seattle ## About the Role * Team player who effectively collaborates across teams and adapts communication style to both technical and non-technical audiences. * Self-motivated with a growth mindset, applying structured thinking to diagnose problems rather than jumping to solutions. * Solid organizational skills to manage defined workstreams, coordinate dependencies, and proactively flag risks or blockers to delivery. * Ability to independently author clear technical documentation and identify gaps in existing processes. * Ability to handle sensitive and confidential information. * Working knowledge across multiple security domains, including cloud environments (IAM, network security, posture alignment) and automation via Terraform, CloudFormation, or similar. * Understanding of frameworks such as NIST 800-53, SOC 2, CIS Benchmarks, and Zero Trust Network Architecture. * Familiarity with DevSecOps pipelines, containerization (Docker, Kubernetes), and CI/CD security tooling. * Experience tuning rules to reduce false positives and maintaining cloud-native logging and monitoring frameworks. * Proven experience (typically 2-4 years) in cybersecurity engineering or infrastructure/cloud security roles. * B.S. degree in cybersecurity, computer science or related technical field is a plus. * Relevant foundational or intermediate certifications are a plus (e.g., Security+, AWS Certified Security - Specialty, or equivalent). ## Description * Apply security architecture principles to defined problems, evaluating design tradeoffs considering security, usability, and operational impact to support secure product innovation. * Build and maintain automation workflows within the team's toolset, integrating with CI/CD pipelines, logging platforms, and cloud security architecture. * Independently author runbooks, architecture diagrams, and technical specifications for secure cloud deployments, container hardening, and access management. * Engage constructively with engineering and product partners to embed security into SDLC and production systems (DevSecOps, IaC scanning, SAST/DAST/SCA, etc.). * Apply NIST control families and CIA principles to evaluate control coverage, identify gaps within your scope, and apply risk prioritization frameworks consistently. * Resolve routine security problems independently and assist in incident response, escalating complex issues with relevant context and developing detections for known threat patterns (e.g., MITRE ATT&CK). ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)