Security Engineer

Cogent Inc
Columbia, MD, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Agile Methodology Cyber Security System Configuration Software Vulnerability Management Information Technology Devsecops Vulnerability Analysis

Job description

This role is responsible for supporting secure system configurations, vulnerability management, and compliance activities aligned with FISMA, FedRAMP, and CMS standards. The Security Engineer works closely with the ISSO and other security stakeholders to ensure continuous monitoring and compliance readiness., Security Controls Implementation & Validation

  • Implement and validate security controls across applications and environments.
  • Ensure alignment with CMS, FISMA, FedRAMP, and federal security standards.
  • Support secure configuration practices across systems and infrastructure.

Vulnerability Management & Remediation

  • Identify, track, and support remediation of security vulnerabilities.
  • Participate in vulnerability assessments and security reviews.
  • Support risk reduction efforts through timely remediation coordination.

DevSecOps & Continuous Monitoring

  • Integrate security practices into DevSecOps pipelines and delivery workflows.
  • Support continuous monitoring and compliance readiness activities.
  • Collaborate with engineering teams to embed security into development processes.

Collaboration & Compliance Support

  • Work closely with the ISSO and security stakeholders on compliance activities.
  • Support security documentation and reporting requirements.
  • Contribute to maintaining system authorization and audit readiness.

Requirements

Do you have experience in Vulnerability management?, Do you have a Bachelor’s degree?, To comply with government contracting requirements, candidates must meet all of the following:

  • Must be a U.S. Citizen, Permanent Resident, or valid EAD holder
  • Must have lived in the United States for at least 3 of the past 5 years
  • Must be currently authorized to work in the U.S. without sponsorship, The ideal candidate will bring strong hands-on security engineering experience in enterprise or regulated environments, with familiarity in DevSecOps practices and federal security frameworks., * Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent experience).
  • 8+ years of experience in information security, cybersecurity engineering, or related roles.
  • Experience implementing security controls in enterprise or regulated environments.
  • Strong understanding of FISMA, FedRAMP, and federal security standards.
  • Experience with vulnerability management and remediation processes.
  • Strong analytical, communication, and problem-solving skills.
  • Ability to collaborate across technical and security-focused teams.

What Will Set You Apart

  • Relevant certifications
  • Experience supporting federal programs
  • Knowledge of Agile and DevSecOps
  • Experience with CMS or healthcare environments

Benefits & conditions

Pulled from the full job description

  • Health insurance
  • 401(k) matching
  • Paid time off
  • Vision insurance
  • Dental insurance
  • Life insurance
  • Employee assistance program, * Competitive compensation
  • Career growth and professional development opportunities
  • Exposure to complex, mission-critical systems
  • A collaborative and supportive team environment
  • Long-term client engagements with stability and continuity

We are a Certified Great Place to Work, committed to building an inclusive and high-performance culture., * Medical, Dental, and Vision Insurance (comprehensive coverage)

  • 401(k) with company match
  • Company-paid life insurance
  • Short-term and long-term disability coverage
  • Paid Time Off: 3 weeks annually + 10 paid holidays
  • Employee assistance and wellness resources (as applicable)

Compliance Notice

Cogent People Inc. conducts employment verification for all candidates. Misrepresentation of work authorization, residency history, or professional experience will result in disqualification.

We are an Equal Opportunity Employer (EEO) and evaluate all applicants based on qualifications, experience, and role requirements.

We do not engage third-party recruiters for this role unless explicitly stated.

About the company

Cogent People Inc. is a government consulting and technology services firm supporting mission-critical federal and commercial programs. We deliver secure, scalable, and modern digital solutions across complex IT environments.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:58 min

Applying agile software methodologies to corporate operational challenges

Kyle Daigle · Coffee With Developers

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all