> Markdown version of [/jobs/ext/2546406-staff-security-compliance-engineer-secure-platforms-clearance-required](https://www.wearedevelopers.com/jobs/ext/2546406-staff-security-compliance-engineer-secure-platforms-clearance-required). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Staff Security & Compliance Engineer, Secure Platforms - Clearance Required - **Company:** LMI - **Location:** Newport News, VA, United States - **Experience:** Expert - **Salary:** $121,000.0 - $194,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Cloud Computing Security, Software Vulnerability Management, Policy as Code, Data Logging, Scripting, Delivery Pipeline, SC Clearance, Infrastructure Automation Frameworks, Information Technology, Devsecops - **Published:** August 19, 2026 - **Apply:** https://www.techcareers.com/job.asp?id=3359622208&tx=ZT2625TTD&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Bachelor's degree in cybersecurity, computer science, engineering, or a related field, or equivalent practical experience. * Eight or more years of experience in security engineering, cloud security, DevSecOps, or federal authorization. * Demonstrated experience leading DoD RMF and ATO activities. * Strong knowledge of NIST security controls and federal cybersecurity requirements. * Experience securing cloud-hosted or enterprise platforms. * Experience using automation, scripting, infrastructure as code, or security tooling to implement and validate controls. * Ability to work directly with software, platform, and data engineers. * Active Secret clearance., * Experience supporting the U.S. Army. * Experience with AWS or another secure government cloud environment. * Familiarity with policy as code, automated evidence collection, and continuous authorization. * Experience with container security, vulnerability management, identity, logging, or cloud-security tooling. * CISSP, Security+, or another relevant cybersecurity certification. ## Description * Own the security-engineering and authorization approach for a secure cloud data platform. * Lead Risk Management Framework and Authority to Operate activities. * Translate security requirements into technical controls and executable engineering work. * Automate compliance evidence, control validation, monitoring, and reporting where practical. * Integrate security into infrastructure, software-delivery pipelines, and platform operations. * Partner with engineers to identify risks, resolve findings, and improve the platform's security posture. * Maintain authorization documentation and communicate technical risk to government and program leadership. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)