ICF logo
ICF

We are not a typical consulting firm and our people are not typical consultants.

Senior Software Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 5,001-10,000Since 1969H1B SponsorCompany SiteLinkedIn

Location

Virginia

Posted

34 days ago

Salary

0

Seniority

Senior

No structured requirement data.

Job Description

Senior Software Security Engineer

ICF

Open this listing to view full details.

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 501-1,000Since 2017H1B No Sponsor

• Lead OT risk assessments and develop a multi-year OT security roadmap • Architect and implement security controls for various environments • Support deployment and maintenance of security tools • Build systems for automation and threat detection • Drive security initiatives and foster a security-first mindset • Collaborate with production teams to ensure secure designs

Washington
$129K - $220K / year
Desjardins logo

Life and Health Insurance Advisor

Desjardins

At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should reflect the diversity of the members, clients and communities we serve. If there's something we can do to help make the recruitment process or the job you're applying for more accessible, let us know. We can provide accommodations at any stage in the recruitment process. Just ask!

Full TimeRemoteTeam 10,001+H1B No Sponsor

• Serve, prospect for, solicit, and develop business relationships with members and clients • Sell life and health insurance products and services through multiple distribution channels • Analyze member/client needs and recommend personalized solutions • Balance sales objectives, risk management, profitability, and member/client satisfaction • Advise and assist current and potential members and clients

Canada
Job Closed
Full TimeRemoteTeam 10,001+H1B Sponsor

• Conduct scans (agent/network), analyze results (CVEs, CVSS), identify systemic issues, and perform risk assessments for complex environments (cloud, mobile, DB, OS) • Define VM policies, improve posture, guide remediation, lead risk reduction initiatives, and serve as the subject matter expert for complex security vulnerability challenges • Develops reports, dashboards, and alerts to automate tasks (Python, PowerShell), and track metrics. • Monitor threat landscape, analyze new vulnerabilities (NVD, MITRE), and provide proactive guidance. • Develops, tests and operates firewalls, intrusion detection systems, enterprise anti-virus systems and software deployment tools. • Provides complex engineering analysis and support for firewalls, routers, networks and operating systems. • Performs and evaluates vulnerability scans within a multi-platform, large enterprise environment. • Reacts to and initiates corrective action regarding security violations, attempts to gain unauthorized access, virus infections that may affect the network or other event affecting security. • Oversees user access process to ensure operational integrity of the system.

Texas
$95.1K - $135.8K / year
Full TimeRemoteTeam 51-200H1B No Sponsor

• You'll be the technical voice of product security across Aalyria, reporting to the Director of Security & IT. • You'll own application security, CI/CD and supply-chain security, our Kubernetes-based product infrastructure, product-side authentication and PKI. • You'll partner closely with hardware engineering on Tightbeam. • Application & software security. SAST/DAST/SCA, secure SDLC, threat modeling, and software vulnerability management across our codebase. • CI/CD and supply-chain security. Hardening our GitLab pipelines, build provenance, dependency integrity, signing, and SLSA-aligned controls. • Product infrastructure security. GKE and Kubernetes hardening, container security, workload identity, network policy, and runtime protection. • Product PKI. Certificate lifecycle, issuance, rotation, and mTLS architecture across distributed services and remote assets. • Vulnerability management. Triage, prioritization, remediation tracking, and exception handling, for both disclosed upstream issues and internal findings. • Product incident response. Leading triage and response for product-side security incidents, coordinating with corporate IR, and driving post-mortems to action. • Product infra hardening. Baseline configurations, secure defaults, and compensating controls across product environments. • Hardware security partnership. Working with the Tightbeam team on firmware security, secure boot, key storage, and hardware supply-chain integrity.

United States