
Senior Security Engineer, FedRAMP
Posted Jul 18

Posted Jul 18
This is a fully remote position, open to applicants in United States.
• Oversee and enhance CI/CD pipelines to facilitate secure deployments and infrastructure workflows.
• Administer infrastructure-as-code (IaC) PR and Change Control Board evaluations, ensuring modifications are tested, authorized, and secure prior to deployment.
• Conduct security impact assessments (SIAs) for system/application modifications and offer recommendations.
• Execute OS and infrastructure patch cycles; manage hardened images and patch workflows for FedRAMP environments.
• Regulate access management, encompassing account provisioning, RBAC module upkeep, and routine reviews.
• Oversee logging and monitoring pipelines; optimize SIEM ingestion and alerting for comprehensive coverage and precision.
• Address and manage security incidents, from investigating alerts to containment, recovery, and after-action reporting.
• Update and enhance runbooks, SOPs, and documentation to guarantee consistent operations and audit preparedness.
• Partner with DevInfra, FedOps, Product, and Compliance teams to integrate secure practices into operational and development processes.
• 5 - 7 years of experience in security engineering or infrastructure operations within federal or regulated cloud environments.
• Solid understanding of NIST 800-53 controls and continuous monitoring methodologies.
• Demonstrated success in implementing AWS/SaaS security best practices.
• Practical experience with CI/CD, infrastructure automation, and IaC security measures.
• Background in patch management, secure image pipelines, and hardened baselines.
• Extensive knowledge of identity and access management (IAM) design and enforcement in large-scale environments.
• Proven track record in managing SIEM pipelines and leading Tier 1/Tier 2 incident response efforts.
• Exceptional skills in technical documentation, collaboration, and incident/project management.
• Actual compensation will be determined based on a variety of non-discriminatory factors including skills, experience, qualifications, and geographic location.
• In addition to the base salary, this role may qualify for bonus or incentive compensation, equity, and a comprehensive benefits package.
Lime
Threatscape
GFT Technologies
BeyondTrust
Get handpicked remote jobs straight to your inbox weekly.