> Markdown version of [/jobs/ext/2296168-cybersecurity-engineer-i-ii-remote-us](https://www.wearedevelopers.com/jobs/ext/2296168-cybersecurity-engineer-i-ii-remote-us). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer I/II (Remote - US) - **Company:** BNSF Railway - **Location:** Fort Worth, TX, United States (Remote available) - **Experience:** Experienced - **Salary:** $93,750.0 - $175,000.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Application Programming Interfaces (APIs), Amazon Web Services, Application Layers, Software System Penetration Testing, Microsoft Azure, Burp Suite, Cloud Computing, Cyber Security, Data Security, DevOps, Cryptographic Protocols, Intrusion Detection and Prevention, Intrusion Detection Systems, Virtual Private Networks (VPN), Mobile Application Software, Python (Programming Language), Networking Basics, Nmap, Open Source Technology, Zero Trust Network Access, Security Information and Event Management, Software Deployment, Unstructured Data, Scripting, Firewalls (Computer Science), Information Technology, Metasploit, Blue Team (Cyber Security), Vulnerability Analysis, Microservices - **Published:** August 29, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88173180/1 ## About the Role * Authorized to work in the US * Minimum 2 years of experience in cybersecurity engineering or related roles Preferred Qualifications * Bachelor's degree or higher in computer science, cybersecurity, or related field. * Able to work now and in the future without BNSF's assistance (whether monetary, through sponsorship, or otherwise) in obtaining, maintaining, or extending employment authorization (including H-1B, STEM OPT/CPT, or TN nonimmigrant status). * Proficiency in Python or Java for automation, scripting, and tool development * Hands-on experience with penetration testing tools (e.g., Burp Suite, Metasploit, Nmap) * Strong understanding of network security protocols, firewalls, IDS/IPS, and VPNs and an understanding of Zero Trust Networking principles * Knowledge of data security principles including encryption, DLP, and access controls * Experience securing web and mobile applications, APIs, and microservices * Experience security containerized and ephemeral application deployments * Familiarity with infrastructure security across on-prem, cloud (AWS/Azure/GCP), and hybrid environments * Solid grasp of Security Operations Center (SOC) workflows, SIEM platforms, and incident response * Certifications such as OSCP, CEH, CISSP, or GIAC are a plus * Strong analytical and problem-solving skills * Excellent communication and documentation abilities * Ability to work independently and collaboratively in cross-functional teams * Passion for continuous learning and staying ahead of the threat landscape * Experience with secure access frameworks (SASE, ZTNA). * Contributions to open-source security tools or research. ## Description Design, implement, and maintain security controls across network, infrastructure, data, and application layers Assist in the creation of security policies and standards for adherence. Perform risk assessments and contribute to data protection strategies across structured and unstructured data Assist in penetration testing and vulnerability assessments to identify and remediate risks Develop and maintain tooling to aid in automation for threat detection, response, and reporting Collaborate with DevOps and IT teams to embed security into CI/CD pipelines and cloud environments Monitor and respond to security incidents, working closely with SOC and IR teams Support compliance initiatives (e.g., NIST, SOX) through technical enforcement and documentation Participate in red/blue team exercises and threat modeling activities Continuously evaluate emerging threats and recommend proactive security measures Contribute to the development of playbooks, runbooks, and operational procedures for security operations ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Countries for Software Engineers](https://www.wearedevelopers.com/magazine/267-best-countries-for-software-engineers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [How Much Does a Software Engineer Make? Realistic Software Engineering Salaries](https://www.wearedevelopers.com/magazine/425-how-much-does-a-software-engineer-make-realistic-software-engineering-salaries)