> Markdown version of [/jobs/ext/2219498-security-engineer-fedramp](https://www.wearedevelopers.com/jobs/ext/2219498-security-engineer-fedramp). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer (FedRAMP) - **Company:** Valiant Solutions, LLC - **Location:** United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, CompTIA Security+, Cyber Security, Information Systems, Cloud Services, Systems Architecture, Software Technical Review, Information Technology, Vulnerability Analysis - **Published:** August 25, 2026 - **Apply:** https://www.dice.com/job-detail/1240ff93-6184-43d4-ae64-5b42f3e8773f ## About the Role * Five (5) years of experience in the IT Security field * Bachelor's degree in Computer Science, Information Systems, Mathematics, Engineering or a related field, OR an additional three years of IT experience required * Direct experience as a Security Engineer or System Architect performing analysis on FedRAMP Cloud Service Providers (CSP) architectures and control implementations (ie. 3PAO, FedRAMP program at another federal agency, etc) * Four (4) years of hands-on technical experience as a System Architect or Security Engineer * Four (4) years of experience supporting FedRAMP as an Engineer or Architect * Security+, CISSP, CISM, CISA, or equivalent Security certification * Confidence and depth of understanding to lead meetings with potential Vendors * Current experience in reviewing 3rd party security assessment reports * Have detailed knowledge and experience with NIST Policies, Governance, Security Planning and Architecture, FISMA Compliance, RMF, Incident Analysis, and General Security Best Practices. * Possess strong written and oral communication skills to support customers, internal stakeholders, peers, and public audiences. * Ability to communicate, both written and oral, to both technical and non-technical stakeholders. * Strong communication skills to interact with senior managers, junior staff, and business unit (non-technical) customers, learn to think quickly on your feet and expand your own personal and professional skill set. Our management team will inspire you to consider new perspectives and challenge you to become a better practitioner in the fast-paced industry of IT security. We hire people we respect - and we trust them to deliver results leveraging their expertise. If you would enjoy working in a dynamic environment as part of a stellar team of professionals, then we invite you to apply online today. ## Description * Perform detailed architecture and technical design reviews on the full stack for vendor solutions * Conduct architecture reviews of Cloud Service Providers (CSPs) authorization packages to validate secure design, alignment to FedRAMP and agency requirements, identify gaps, and advise the FedRAMP Government Lead overall risk posture and compliance * Lead and conduct architecture interviews with CSPs to ensure all critical control areas throughout the architecture are designed to meet program requirements * Develop architecture briefing documents to inform the Government FedRAMP program manager and CISO of CSP compliance with FedRAMP program requirements, technical capabilities, and any concerns noted from material review * Complete comprehensive review and comment documents of CSPs FedRAMP documentation including but not limited to system security plans, policies and procedures, supplemental agency guidance documents, alternative implementation and risk acceptance documents, etc. Work with CSPs to reconcile and address any documentation and technology gaps discovered during the review * Complete a comprehensive review of CSPs'' assessments and package submissions after 3PAO audits and prepare a package briefing for the Government FedRAMP program manager and agency CISO. Artifacts include, but are not limited to, vendor security assessment plans, security assessment reports, vulnerability scans, penetration tests, etc * Work alongside agency FedRAMP Lead and provide security engineering services * Provide support for Continuous Monitoring activities including but not limited to items such as reviewing annual package submissions, reviewing and scoping significant change proposals, reviewing risk acceptance documents, etc * Interpret FedRAMP and other agency requirements and provide vendors with guidance regarding expectations, technical requirements, and processes * Stay informed of updated FedRAMP guidance, industry best practices, emerging technologies, and Government cybersecurity directives, and provide recommendations to FedRAMP Government lead regarding impacts * Conduct security reviews of technologies for use base consideration within CSPs authorization boundary * Oversee and manage relationships for assigned systems that may be contractor-owned or contractor-operated, ensuring vendors comply with agency security and privacy requirements * Assist stakeholders with IT security-related activities to ensure project deadlines are met * Ensure all systems are operated, maintained, and disposed of IAW documented security policies and procedures including but not limited to Assessment & Authorization (A&A) * Research assigned IT security systems to provide insight into IT security architectures and IT security recommendations for assigned systems About Valiant Solutions Valiant Solutions is a security-focused IT solutions provider with public clients nationwide. We are a HUBZone small business and we encourage all candidates who live in a HUBZone to apply. Named one of the fastest growing privately held companies by Inc. 5000, Washington Technology's Fast 50, and Washington Business Journal's Best Places to Work in the D.C. area, Valiant Solutions prides itself on providing its employees with great benefits and career development opportunities. As a company, we are just as committed to growing careers as we are to building world-class IT solutions, all while enjoying an unparalleled work-life balance. We are in a phase of tremendous growth and building the team that will take us to the next level. We seek people whose talents and accomplishments will contribute to a thriving company, who have the character to support their capacity, and can make a positive impact on our culture. Alongside our talented team, you'll ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [ZEISS & Microsoft - Building the Next Generation Medical Ecosystem in the Cloud](https://www.wearedevelopers.com/videos/424-zeiss-microsoft-building-the-next-generation-medical-ecosystem-in-the-cloud) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)