> Markdown version of [/jobs/ext/2640270-information-security-engineer](https://www.wearedevelopers.com/jobs/ext/2640270-information-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Engineer - **Company:** Everforth Apex - **Location:** United States (Remote available) - **Contract:** Temporary contract - **Skills:** Agile Methodology, Artificial Intelligence, Amazon Web Services, CompTIA Security+, Cyber Security, Linux, Github, Identity and Access Management, Python (Programming Language), Software Engineering, Test Execution Engine, Data Ingestion, Large Language Models, Software Security, Event Driven Architecture, Containerization, Restful APIs, Terraform, Splunk, Jenkins, Static Application Security Testing, Vulnerability Analysis - **Published:** August 28, 2026 - **Apply:** https://www.dice.com/job-detail/f37994ac-3091-4b72-80b1-b3581997cde1 ## About the Role Experience: 4+ years of related engineering experience, including hands-on information security or software development work. 1+ year(s) of Gen AI related development is required. Technical Skills: Hands-on experience with AWS Bedrock or equivalent hosted LLM platforms. Demonstrated understanding of Infrastructure as Code best practices and strong experience building Terraform modules. Experience building and maintaining CI/CD pipelines, preferably Jenkins, integrated with GitHub. Working knowledge of application security concepts, common vulnerability classes, and SAST/SCA tooling behavior. Ability to communicate ideas both verbally and in writing to various audiences., * Demonstrated experience building on AWS, including IAM, ECS, and service-to-service authentication patterns. * Experience with agentic or multi-step LLM workflows, including context management across large repositories. * Experience with RESTful APIs and event-driven architectures. * Splunk development experience, including data onboarding, search, and dashboarding. * Experience with containerized workloads, Linux systems, and Python. * Experience working in Agile methodologies and development. * Prior experience in a regulated financial services environment. * Industry standard certifications such as AWS Security Specialty, AWS Solutions Architect Associate, CompTIA Security+, ISC2 CISSP, or SANS. ## Description This position is for an Information Security Engineer who will define, deliver, and support enterprise security tools. This role is responsible for building, operating, and continuously improving an LLM-based code vulnerability detection and reporting capability. The initial phase is focused on building the scanner, evaluation harness, and CI/CD pipelines, after which the role will transition to operational support., * Build and operate an LLM-based code vulnerability detection capability on AWS Bedrock, including prompt/agent design, model invocation patterns, cost and token controls, and result normalization. * Develop and maintain the evaluation harness used to measure scanner quality, including regression corpora, repeatable test execution, and reporting on detection performance over time. * Build and maintain scanning pipelines integrated with GitHub and Jenkins, deployed to ECS and provisioned through Terraform. * Deliver findings and operational telemetry into Splunk; build dashboards and alerting for scanner health, coverage, and throughput. * Engineer and implement well-architected solutions while adhering to software development best practices. * Advise Principal Engineers and Product Owners on the operations and evolution of their product. * Design, test, and implement solutions at the Feature level. * Provide ongoing operational support, patching, and defect resolution for the deployed scanner after go-live. * Participate in a four-person rotating shift schedule providing 24/7 coverage, including nights, weekends, and holidays. * Participate in an operational on-call rotation during normal working hours. * Maintain appropriate controls and documentation to ensure compliance with all company and regulatory requirements. ## Related Videos - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Bringing AI Model Testing and Prompt Management to Your Codebase with GitHub Models](https://www.wearedevelopers.com/videos/1536-bringing-ai-model-testing-and-prompt-management-to-your-codebase-with-github-models) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)