
Automation Engineer, Tester
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Illinois.
• Assist with ISSO/ISSE security compliance, testing, and automation of continuous monitoring
• Create automation solutions for an IL5 multi-cloud infrastructure
• Streamline DISA SCAP benchmark scanning utilizing ACAS/Tenable SC and Nessus
• Confirm the validity of XCCDF, ARF, and CKL artifacts using SCAP Compliance Checker
• Automate compliance scanning for Trellix Policy Auditor STIG
• Conduct regression testing for SAP and Mendix using Tricentis
• Embed SonarQube quality gates into CI/CD workflows
• Produce software bill of materials with Fortify SAST, CycloneDX, and SPDX
• Create GitLab CI/CD pipelines and establish security gates
• Validate infrastructure as code through Terraform and CloudFormation
• Incorporate security scanning results into AWS Security Hub
• Develop Splunk ES queries and set up automated alerts
• Create Splunk SOAR playbooks aimed at achieving 30–90 second automated responses
• Connect eMASS APIs for automated evidence uploads
• Design AWS Config conformance packs and automate AWS Audit Manager controls
• Automate CORA evidence pipelines
• Minimum of Interim Secret clearance
• DoD 8140 – Foundational Intermediate – 671 System Testing & Evaluation Specialist certification required, with acceptable certifications including CEH, CFR, Cloud+, GSEC, PenTest+, Security+, or SSCP
• Over 4 years of experience in security automation, compliance testing, or DevSecOps
• Proficient in STIG/SCAP automation
• Experienced with automation of ACAS (Tenable SC) and Nessus
• Knowledgeable in SCAP Compliance Checker (SCC) for validating XCCDF/ARF/CKL
• Familiar with automating Trellix Policy Auditor STIG compliance scanning
• Skilled in Tricentis test automation for SAP and Mendix regression testing
• Experience with SonarQube quality gates and CI/CD pipeline integration
• Understanding of Fortify SAST and SBOM generation with CycloneDX/SPDX
• Capable of developing GitLab CI/CD pipelines and implementing security gates
• Proficient in IaC testing using Terraform/CloudFormation validation
• Experienced in integrating security scanning results into AWS Security Hub
• Competent in developing Splunk ES queries and automating alerts
• Familiar with creating Splunk SOAR playbooks
• Knowledge of ESCU detection rules
• Experience with eMASS API integration
• Skilled in AWS Config conformance-pack development
• Proficient in automating AWS Audit Manager controls
• Experienced in automating CORA evidence pipelines
• Flexible time-off policy
• Comprehensive learning resources
• Healthcare coverage
• Wellness programs
• Financial benefits
• Retirement plans
• Family support options
• Continuing education assistance
• Time off benefits
• Opportunities for learning and development
CACI International Inc
Spacedome Media GmbH
Koniag Government Services
Quid Solutions
Get handpicked remote jobs straight to your inbox weekly.