> Markdown version of [/jobs/ext/524681-security-engineer](https://www.wearedevelopers.com/jobs/ext/524681-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Cogent Inc - **Location:** Columbia, MD, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Agile Methodology, Cyber Security, System Configuration, Software Vulnerability Management, Information Technology, Devsecops, Vulnerability Analysis - **Published:** June 10, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c36f2fafe8c509eb ## About the Role Do you have experience in Vulnerability management?, Do you have a Bachelor's degree?, To comply with government contracting requirements, candidates must meet all of the following: * Must be a U.S. Citizen, Permanent Resident, or valid EAD holder * Must have lived in the United States for at least 3 of the past 5 years * Must be currently authorized to work in the U.S. without sponsorship, The ideal candidate will bring strong hands-on security engineering experience in enterprise or regulated environments, with familiarity in DevSecOps practices and federal security frameworks., * Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent experience). * 8+ years of experience in information security, cybersecurity engineering, or related roles. * Experience implementing security controls in enterprise or regulated environments. * Strong understanding of FISMA, FedRAMP, and federal security standards. * Experience with vulnerability management and remediation processes. * Strong analytical, communication, and problem-solving skills. * Ability to collaborate across technical and security-focused teams. What Will Set You Apart * Relevant certifications * Experience supporting federal programs * Knowledge of Agile and DevSecOps * Experience with CMS or healthcare environments ## Description This role is responsible for supporting secure system configurations, vulnerability management, and compliance activities aligned with FISMA, FedRAMP, and CMS standards. The Security Engineer works closely with the ISSO and other security stakeholders to ensure continuous monitoring and compliance readiness., Security Controls Implementation & Validation * Implement and validate security controls across applications and environments. * Ensure alignment with CMS, FISMA, FedRAMP, and federal security standards. * Support secure configuration practices across systems and infrastructure. Vulnerability Management & Remediation * Identify, track, and support remediation of security vulnerabilities. * Participate in vulnerability assessments and security reviews. * Support risk reduction efforts through timely remediation coordination. DevSecOps & Continuous Monitoring * Integrate security practices into DevSecOps pipelines and delivery workflows. * Support continuous monitoring and compliance readiness activities. * Collaborate with engineering teams to embed security into development processes. Collaboration & Compliance Support * Work closely with the ISSO and security stakeholders on compliance activities. * Support security documentation and reporting requirements. * Contribute to maintaining system authorization and audit readiness. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [ShapeShift: Reinventing Agile for a B2B SaaS Scale-Up](https://www.wearedevelopers.com/videos/1655-shapeshift-reinventing-agile-for-a-b2b-saas-scale-up) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)