TELECOMMUTE Lead Information Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+8 more
Job description
- Implement and operate an LLM-based code vulnerability detection capability on AWS Bedrock, including prompt and agent implementation, model invocation patterns, cost and token controls, and result normalization.
- Build and maintain the evaluation harness to measure scanner quality, including regression corpora, repeatable test execution, and reporting on detection performance over time.
- Build and maintain scanning pipelines integrated with GitHub and Jenkins, deployed to ECS and provisioned through Terraform.
- Deliver findings and operational telemetry into Splunk, and build dashboards and alerting for scanner health, coverage, and throughput.
- Engineer and implement well-architected solutions aligned to software development best practices.
- Design, test, and implement solutions at the Story and Feature level within an established architecture.
- Contribute to standards, procedures, runbooks, and guidelines for Information Security operations.
- Provide ongoing operational support, patching, and defect resolution after go-live.
- Participate in a four-person rotating 24/7 shift schedule, including nights, weekends, and holidays, averaging 40 hours per week.
- Monitor scanner health, pipeline execution, and alert queues during assigned shifts. Execute documented runbooks and escalate per procedures.
- Perform structured shift handoffs, documenting open issues, in-flight changes, and outstanding escalations.
- Maintain controls and documentation to ensure compliance with company and regulatory requirements.
- Understand virtualization and containerization technologies.
- Perform other duties as assigned.
Requirements
- 2+ years of related engineering experience, including hands-on information security or software development work.
- Exposure to AWS Bedrock or equivalent hosted LLM platforms, including model invocation and guardrail configuration.
- Working knowledge of Infrastructure as Code and ability to build and modify Terraform modules.
- Experience with CI/CD pipelines, preferably Jenkins, integrated with GitHub.
- Familiarity with application security concepts, common vulnerability classes, and SAST/SCA tooling behavior.
- Clear written and verbal communication of technical status, risks, and blockers to peers and leadership.
- Willingness and availability to work an assigned shift within a rotating 24/7 schedule, including nights, weekends, and holidays.
- Ability to work independently during off-hours shifts with limited direct supervision.
- Eligible to work in the US without sponsorship now or in the future.
- Preferred: Hands-on AWS experience including IAM, ECS, and service-to-service authentication. AWS Bedrock model selection and inference optimization.
- Preferred: Agentic or multi-step LLM workflows, including context management across large repositories.
- Preferred: RESTful APIs and event-driven architectures.
- Preferred: Splunk development for data onboarding, search, and dashboarding.
- Preferred: Containerized workloads and Linux systems.
- Preferred: Prior 24/7 operational support experience, shift handoff, and runbook execution.
- Preferred: Agile methodologies and development practices.
- Preferred: Regulated financial services environment experience.
- Preferred: Certifications such as AWS Solutions Architect Associate, AWS Security Specialty, or CompTIA Security+.
Benefits & conditions
We can facilitate w2 and corp-to-corp consultants. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $60.00 to $70.00/hr. w2, Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.
W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality. If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:
When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
About the company
Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients’ capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Dev Digest 134 - Where pixels sing?
Dev Digest 121 - AI goes offline
Dev Digest 138 - Are you secure about this?