Information Security Engineer - Principal

ASRC Federal Holding Company
United States
18 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Cloud Computing Security Cyber Security Continuous Integration Zero Trust Network Access SC Clearance Information Technology Tenable Nessus Nessus Devsecops Vulnerability Analysis

Job description

  • Conduct container and Kubernetes security assessments
  • Develop hardened configurations and STIG-aligned baselines
  • Build and maintain security controls for container registries, images, and pipelines
  • Perform vulnerability scanning, remediation tracking, and reporting
  • Support RMF accreditation, continuous monitoring, and security engineering tasks
  • Collaborate with DevSecOps and infrastructure teams to integrate security into CI/CD
  • Implement zero-trust security patterns and secure deployment workflows
  • Manage secrets, certificate rotation, and identity enforcement

Requirements

  • 8-10+ years of cybersecurity or security engineering experience
  • Active DoD Secret clearance or higher. Candidates without a minimum of a Secret clearance will not be considered.
  • Expertise with Kubernetes security, container scanning tools, and image hardening
  • Bachelor’s Degree in Computer Science, or other Engineering, or Technical discipline with an Information Security or Cyber Security Concentration, Advanced Degree with concentration in Information Security or Cyber Security are all preferred or 4+ additional years of equivalent professional work experience).
  • Familiarity with DoD STIGs, RMF, ACAS, Nessus, OpenSCAP, etc.
  • Experience supporting secure cloud or platform environments
  • Security certifications preferred (Security+, CEH, CISSP, CCSK, etc.)

Benefits & conditions

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

About the company

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all