TELECOMMUTE Lead Information Security Engineer

Eliassen Group
United States
2 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$124,800.0 - $145,600.0
Working hours
Shift work
Job source

Tech stack

Agile Methodology Amazon Web Services Cyber Security Linux Github Identity and Access Management Software Engineering Test Execution Engine Software Organization Data Ingestion Large Language Models Software Security
+8 more
Event Driven Architecture Containerization Restful APIs Terraform Splunk Jenkins Static Application Security Testing Vulnerability Analysis

Job description

  • Implement and operate an LLM-based code vulnerability detection capability on AWS Bedrock, including prompt and agent implementation, model invocation patterns, cost and token controls, and result normalization.
  • Build and maintain the evaluation harness to measure scanner quality, including regression corpora, repeatable test execution, and reporting on detection performance over time.
  • Build and maintain scanning pipelines integrated with GitHub and Jenkins, deployed to ECS and provisioned through Terraform.
  • Deliver findings and operational telemetry into Splunk, and build dashboards and alerting for scanner health, coverage, and throughput.
  • Engineer and implement well-architected solutions aligned to software development best practices.
  • Design, test, and implement solutions at the Story and Feature level within an established architecture.
  • Contribute to standards, procedures, runbooks, and guidelines for Information Security operations.
  • Provide ongoing operational support, patching, and defect resolution after go-live.
  • Participate in a four-person rotating 24/7 shift schedule, including nights, weekends, and holidays, averaging 40 hours per week.
  • Monitor scanner health, pipeline execution, and alert queues during assigned shifts. Execute documented runbooks and escalate per procedures.
  • Perform structured shift handoffs, documenting open issues, in-flight changes, and outstanding escalations.
  • Maintain controls and documentation to ensure compliance with company and regulatory requirements.
  • Understand virtualization and containerization technologies.
  • Perform other duties as assigned.

Requirements

  • 2+ years of related engineering experience, including hands-on information security or software development work.
  • Exposure to AWS Bedrock or equivalent hosted LLM platforms, including model invocation and guardrail configuration.
  • Working knowledge of Infrastructure as Code and ability to build and modify Terraform modules.
  • Experience with CI/CD pipelines, preferably Jenkins, integrated with GitHub.
  • Familiarity with application security concepts, common vulnerability classes, and SAST/SCA tooling behavior.
  • Clear written and verbal communication of technical status, risks, and blockers to peers and leadership.
  • Willingness and availability to work an assigned shift within a rotating 24/7 schedule, including nights, weekends, and holidays.
  • Ability to work independently during off-hours shifts with limited direct supervision.
  • Eligible to work in the US without sponsorship now or in the future.
  • Preferred: Hands-on AWS experience including IAM, ECS, and service-to-service authentication. AWS Bedrock model selection and inference optimization.
  • Preferred: Agentic or multi-step LLM workflows, including context management across large repositories.
  • Preferred: RESTful APIs and event-driven architectures.
  • Preferred: Splunk development for data onboarding, search, and dashboarding.
  • Preferred: Containerized workloads and Linux systems.
  • Preferred: Prior 24/7 operational support experience, shift handoff, and runbook execution.
  • Preferred: Agile methodologies and development practices.
  • Preferred: Regulated financial services environment experience.
  • Preferred: Certifications such as AWS Solutions Architect Associate, AWS Security Specialty, or CompTIA Security+.

Benefits & conditions

We can facilitate w2 and corp-to-corp consultants. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.

Rate: $60.00 to $70.00/hr. w2, Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.

W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality. If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:

When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.

About the company

Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients’ capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

2:40 min

Using GitHub primitives for internal documentation and corporate operations

Kyle Daigle · Coffee With Developers

Videos

See all

Related articles

See all