
Security Automation Engineer
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Design and implement automated security controls, scanning processes, compliance checks, and evidence management in the customer's DevSecOps environment.
• Integrate and manage various security tools including SAST, DAST, IAST, software composition analysis, SBOM, secrets and dependency scanning, and infrastructure-as-code security reviews.
• Automate the gathering, normalization, correlation, and distribution of security findings and evidence into established workflows and repositories.
• Create security gates, policy verification processes, dashboards, notifications, and exception management workflows within platforms approved by the customer.
• Assist in ongoing penetration testing efforts and integrate the results into development and remediation processes.
• Execute security automation practices in accordance with NIST SP 800-218, relevant OMB/CISA guidelines, STIGs, CIS benchmarks, and customer specifications.
• Work collaboratively with developers and platform engineers to address findings and enhance secure coding, pipeline controls, and release preparedness.
• Manage security automation code, configurations, procedures, evidence, and technical documentation.
• A Bachelor’s degree in Cybersecurity, Computer Science, Software Engineering, Information Systems, Engineering, or a related discipline with over 8 years of experience.
• Practical experience in application security, DevSecOps security tools, security scanning, vulnerability management, or compliance automation.
• Proficiency in scripting or developing integrations to automate security checks, evidence collection, reporting, and remediation workflows.
• Familiarity with secure software development practices and cloud/security control frameworks.
• Capability to obtain a 6c Public Trust clearance.
• U.S. Citizenship is mandatory.
• An active Secret clearance is strongly preferred.
• Preferred qualifications include experience with SAST/DAST/IAST tools; SCA/SBOM generation and analysis; knowledge of NIST SP 800-218 / SSDF; STIG/CIS automation; AWS security services; proficiency in Python or similar scripting languages; GitLab security integration; and support for continuous penetration testing.
• Certification incentive program.
• Paid Time Off (PTO).
• Options for floating federal holidays.
• Health insurance plans including HMO and High Deductible options.
• Health Savings Accounts (HSAs).
• Flexible Spending Accounts (FSAs).
• Comprehensive dental plans.
• Vision insurance coverage.
• Short-term and long-term disability insurance.
• Life insurance policy.
• 401(k) matching contributions.
• A flexible work environment.
• Recognition and rewards for professional development, including obtaining new certifications.
• Work flexibility to maintain a balance between professional responsibilities and personal life.
FNF Family of Companies - Agency Division
munerio consulting GmbH
munerio consulting GmbH
CACI International Inc
Get handpicked remote jobs straight to your inbox weekly.