Principal Information Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+15 more
Job description
The Security/AI Assurance Engineer will ensure that all capabilities developed by the team comply with security requirements, classification boundaries, IC security policies, and applicable RMF/cATO processes. Security will be incorporated throughout architecture, development, testing, deployment, and sustainment rather than treated as a final approval activity.
The engineer will conduct security architecture reviews, threat modeling, vulnerability assessment, security testing, AI-specific risk assessment, and compliance documentation. The position will also support the Government’’s software approval process and work closely with the platform and software engineers to automate security controls wherever practical.
Requirements
- RMF
- cATO/DevSecOps security practices
- Security architecture
- Threat modeling
- Vulnerability management
- Security testing
- Application security
- API security
- Container security
- Kubernetes security
- Cloud security
- Identity and access management
- Authentication/authorization
- Encryption and key management
- Logging and security monitoring
- Linux security
- Network segmentation
- Data classification and handling
- Secure SDLC
- SBOM and software supply-chain security
- NIST cybersecurity frameworks
- STIGs and/or applicable government security controls
- AI/ML security and AI assurance, Artificial Intelligence (AI), Authentication, Cloud Computing, Computer Security, Continuous Deployment/Delivery, Continuous Integration, Cryptography, Cyber Warfare, Documentation, Government, Identity Data Management, Information Warfare (IW), Information/Data Security (InfoSec), Integrated Circuits (ICs), Intelligence Community, Internet Security, Linux Operating System, Model Review, Operations Security (OPSEC), Risk Analysis, Security Architecture, Security Compliance, Security Monitoring, Security Software, Software Development Lifecycle (SDLC), Software Engineering, Test Plan/Schedule, Testing, Threat Modeling, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD)
About the company
Clarity Innovations is a trusted national security partner, dedicated to safeguarding our nation’s interests and delivering innovative solutions that empower the Intelligence Community (IC) and Department of Defense (DoD) to transform data into actionable intelligence, ensuring mission success in an evolving world.
Our mission-first software and data engineering platform modernizes data operations, utilizing advanced workflows, CI/CD, and secure DevSecOps practices. We focus on challenges in Information Warfare, Cyber Operations, Operational Security, and Data Structuring, enabling end-to-end solutions that drive operational impact.
We are committed to delivering cutting-edge tools and capabilities that address the most complex national security challenges, empowering our partners to stay ahead of emerging threats and ensuring the success of their critical missions. At Clarity, we are people-focused and set on being a destination employer for top talent, offering an environment where innovation thrives, careers grow, and individuals are valued. Join us as we continue to lead innovation and tackle the most pressing challenges in national security.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
The Overflow: Security and Privacy
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Understanding and Mitigating Common Web Vulnerabilities