> Markdown version of [/jobs/ext/2419351-mid-security-engineer](https://www.wearedevelopers.com/jobs/ext/2419351-mid-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Mid Security Engineer - **Company:** Propertyvalue Electronic Consulting Services, Inc (ecs Federal - **Location:** Washington, DC, United States - **Experience:** Experienced - **Salary:** $108,000.0 - $125,000.0 - **Contract:** Permanent contract - **Skills:** C (Programming Language), Java (Programming Language), Microsoft Windows, Software Applications, Systems Engineering, Bash Shell, Unix, Data Compression, Cyber Security, Information Systems, Linux, Domain Name System (DNS), Perl (Programming Language), Hardware Design, Identity and Access Management, Information Theory, Intrusion Detection Systems, Python (Programming Language), Network Security, Network Architecture, Network Protocols, Security Information and Event Management, Software Engineering, Software Systems, System Testing, TCP/IP, Scripting, Firewalls (Computer Science), Information Technology, Performance Monitor, Restful APIs - **Published:** August 28, 2026 - **Apply:** https://www.dice.com/job-detail/7fb8cd84-f87c-4bd4-9b99-069fa180fbde ## About the Role * Strong written and verbal communication skills. * Knowledge of secure configuration management techniques. (e.g., Security Technical Implementation Guides (STIGs), cybersecurity best practices on cisecurity.org). * Knowledge of CRIBL. * Knowledge of software development models (e.g., Waterfall Model, Spiral Model). * Knowledge of software engineering. * Knowledge of structured analysis principles and methods. * Experience designing architectures and frameworks. * Knowledge of system design tools, methods, and techniques, including automated systems analysis and design tools. * Knowledge of the systems engineering process. * Knowledge of Supply Chain Risk Management Practices (NIST SP 800-161) * Knowledge of critical infrastructure systems with information communication technology that were designed without system security considerations. * Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth). * Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools. * Experience with Windows, Linux, UNIX, any other major operating systems * Experience with programming in Python, C, Java, Perl, Shell and/or bash shell scripting. * Familiarity with REST API best practices and usage * Familiarity with security technologies (firewalls, IDS/IPS, AV, etc.) and other SIEM products Certifications/Licenses: * Bachelor's degree or higher * 5+ years' experience security engineering experience and SIEM (security incident and event monitoring) administration, deployment, and/or architectural design * Certifications addressing security and risk management, asset security, security engineering, communications and network security, identity and access management, security assessment and testing, security operations, software development security, system security, network infrastructure * Active Public Trust clearance or eligible to obtain a Public Trust clearance Desired Skills * In-depth knowledge of Information Theory (e.g., source coding, channel coding, algorithm complexity theory, and data compression). * Ability to apply system design tools, methods, and techniques, including automated systems analysis and design tools. * SIEM deployment, administration, and architecture design * SOAR experience in deployment and architecture design preferred * Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services. * Ability to apply network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth). * Experience designing the integration of hardware and software solutions. * Skill in discerning the protection needs (i.e., security controls) of information systems and networks. * Skill in evaluating the adequacy of security designs and conducting reviews of technical systems. #EverforthECS1 (if funded or Indirect) ## Description * Design hardware, operating systems, and software applications to adequately address cybersecurity requirements. * Design and develop cybersecurity or cybersecurity-enabled products. * Develop and direct system testing and validation procedures and documentation. * Develop dashboarding capabilities, utilizing the enterprise SIEM and Enterprise Governance Risk and Compliance ( eGRC ) solution, for the ISSO's to perform real time monitoring of Agency information systems * Develop detailed security design documentation for component and interface specifications to support system design and development. * Implement security designs for new or existing system(s) . * Incorporate cybersecurity vulnerability solutions into system designs (e.g., Cybersecurity Vulnerability Alerts). * Create and track metrics using the dashboard in the SIEM/ eGRC solution * Design, implement, test, and evaluate secure interfaces between information systems, physical systems, and/or embedded technologies. * Design, develop, integrate, and update system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation. * Perform security reviews and identify security gaps in architecture. ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)