Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

ECS ยท 10 hours ago

Security Engineer

ECS is a leading mid-sized provider of technology services to the United States Federal Government, and they are seeking a Security Engineer to support the modernization of federal information technology systems. The role involves implementing security architectures, conducting risk analyses, and ensuring compliance with federal cybersecurity standards while collaborating with cross-functional teams.

Artificial Intelligence (AI)Cloud InfrastructureComplianceConsultingCyber SecurityInformation TechnologyMachine LearningSecuritySoftware
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Design and implement security architectures for modernized federal IT systems, including cloud-native and hybrid environments
Conduct security assessments and risk analyses for existing legacy systems and proposed modernization approaches
Develop security controls and safeguards that meet federal compliance requirements (FISMA, FedRAMP, NIST frameworks)
Create and maintain security documentation including System Security Plans (SSPs), security control assessments, and Authority to Operate (ATO) packages
Ensure adherence to federal cybersecurity standards including NIST 800-53, FIPS 140-2, and agency-specific security requirements
Support continuous monitoring and ongoing authorization processes for modernized systems
Collaborate with federal Authorizing Officials and security teams throughout the ATO process
Identify, assess, and develop mitigation strategies for security risks associated with system modernization
Implement security tools and technologies including SIEM, vulnerability management, identity and access management, and encryption solutions
Configure and manage security controls for cloud platforms (AWS GovCloud, Azure Government, Google Cloud for Government)
Develop and maintain security automation scripts and Infrastructure as Code (IaC) security configurations
Integrate security testing and scanning tools into CI/CD pipelines and DevSecOps processes
Work with development teams to implement secure coding practices and conduct security code reviews
Provide security guidance and consultation to project teams throughout the modernization process
Coordinate with federal agency security personnel, compliance officers, and technical teams
Present security findings, recommendations, and status updates to both technical and executive stakeholders

Qualification

Security ArchitectureNIST 800-53AWS SecuritySecurity+ certificationCISSPVulnerability ManagementDevSecOpsInfrastructure as CodePythonAnalytical SkillsCommunication SkillsAttention to DetailCollaboration

Required

U.S. Citizen
Ability to obtain and maintain a DHS Public Trust suitability designation
Bachelor's degree in Computer Science, Engineering, Information Systems, or related discipline (or equivalent experience)
5+ years in systems engineering for large-scale IT environments (federal experience preferred)
Ability to obtain and maintain a DHS Public Trust suitability designation

Preferred

Current Security+ certification
Experience with federal cybersecurity frameworks (NIST 800-53, FISMA, FedRAMP)
Hands-on experience with cloud security in AWS
Knowledge of network security, encryption technologies, and identity management systems
Experience with security assessment tools and vulnerability management platforms
Understanding of DevSecOps principles and security integration in CI/CD pipelines
Advanced security certifications (CISSP, CISM, GSEC, AWS Security Specialty, Azure Security Engineer)
Experience supporting federal ATO processes and working with government security teams
Knowledge of containerization security (Docker, Kubernetes) and microservices architectures
Experience with infrastructure as code tools (Terraform, CloudFormation, Ansible)
Familiarity with agile development methodologies and project management frameworks
Previous experience on federal IT modernization or digital transformation initiatives
Proficiency with security scanning tools (Nessus, Qualys, Rapid7, etc.)
Experience with SIEM platforms (Splunk, ELK Stack, AWS Security Hub)
Knowledge of scripting languages (Python, PowerShell, Bash)
Understanding of network protocols, firewalls, and intrusion detection/prevention systems
Familiarity with compliance automation tools and security orchestration platforms
Strong analytical and problem-solving abilities
Excellent written and verbal communication skills
Ability to work effectively in cross-functional, collaborative environments
Strong attention to detail and ability to manage multiple priorities
Adaptability and willingness to learn new technologies and frameworks
Professional demeanor suitable for interaction with federal personnel and stakeholders

Company

ECS is a fast-growing 4,000-person, $1.2B provider of advanced technology solutions for federal civilian, defense, intelligence, and commercial customers.

Funding

Current Stage
Late Stage
Total Funding
unknown
2018-01-31Acquired
2015-04-10Private Equity

Leadership Team

leader-logo
Keith McCloskey
VP / Chief Technology Officer
linkedin
leader-logo
Ryan Garner
Chief Financial Officer
linkedin
Company data provided by crunchbase