CyberSecurity Operations Engineer

Location

United States

Posted

13 days ago

Salary

$80K - $120K / year

Seniority

Mid Level

Job Description

CyberSecurity Operations Engineer

RedTech Recruitment Ltd.

Role Description A fantastic opportunity for a CyberSecurity Operations Engineer to join a fast-growing, technology-led security company delivering managed security and managed IT services to a global client base. This role sits firmly within the Operations and Service Delivery function, working closely with clients post-sale to support, implement and improve their security and IT environments. This is a hands-on, client-facing operational role focused on technical support, troubleshooting, account ownership and project delivery. Location: Fully remote, anywhere in the US Salary: $80,000 – $120,000 per annum (lower end for a recent Graduate) Qualifications - Outstanding academic background with a minimum GPA of 3.6 - Bachelor’s degree in Computer Science, Cyber Security, Engineering, Mathematics or Physics - Degree obtained from a highly ranked academic institution (typically Top 100 US universities or equivalent globally) - Hands-on technical experience through internships, commercial roles, homelabs, open-source projects or real-world environments - Strong technical understanding across operating systems, networking, security protocols, scripting and cloud infrastructure - Excellent problem-solving skills with a practical, solutions-focused mindset - Strong communication skills with the ability to explain technical issues clearly to non-technical stakeholders - A proactive, self-motivated individual who thrives in a fast-paced, high-responsibility environment - Curiosity, ambition and a genuine passion for technology and continuous learning - Exposure to SOC or offensive security is beneficial but not required Requirements - Deliver 1st and 2nd line technical support across security and IT environments - Take ownership of client issues from detection through to resolution - Act as a key technical point of contact for clients, managing ongoing relationships - Conduct regular client catch-ups and service reviews, discussing security and IT challenges - Guide clients through security and IT roadmaps, advising on best practice and improvements - Troubleshoot and support security software, agents and bespoke security controls - Triage and respond to security incidents raised by internal monitoring teams, advising on remediation - Design, implement and manage IT and cloud infrastructure across SaaS, PaaS and IaaS environments - Support device provisioning, hardening, monitoring and IT asset procurement - Assist with firewall management, compliance activities, reporting and documentation - Support pre-sales activity including demos and proof-of-concepts when required - Deliver and manage ad hoc security and IT projects involving multiple internal and external stakeholders - Support and mentor more junior team members as you progress within the team Benefits - A highly varied operations role spanning security, IT support, projects and client delivery - Rapid technical development through real-world exposure to security and IT challenges - Clear progression into senior operations, account ownership or specialist technical roles - Structured training and support towards professional certifications - Opportunities to present internally and externally as your expertise develops - A collaborative, high-calibre team with strong technical standards - Fully remote working anywhere in the US Applications If you would like to apply for this CyberSecurity Operations Engineer role, please submit an up-to-date CV via the relevant link. For your application to be progressed, academic results must be clearly listed, including GPA and university attended. Please note you will hear back within 5 working days if your application is being progressed. Due to an extremely high level of applications for this specific role we are unable to provide individual feedback. We’re committed to creating an inclusive and accessible recruitment process. If you require reasonable adjustments for your application or during the review process, please highlight this by separately emailing applications@redtech-recruit.com.

Related Categories

Related Job Pages

More Security Engineer Jobs

Role Description We are hiring a Founding AI Engineer to help lead RemoteThreat's AI strategy, architecture, and engineering direction across the platform. This is a role for someone who understands not only how modern AI systems behave, but how to design, build, evaluate, and operationalize them in demanding real-world environments. You will define how AI is architected inside RemoteThreat: how models, agents, tools, memory, orchestration, evaluation, and user-facing workflows fit together to create durable advantage for operators. You will work across research, engineering, product, and leadership to build AI-native capabilities that improve mission speed, workflow quality, decision support, task decomposition, and continuous adversary simulation. This is not a pure research role and it is not a generic innovation role. We are looking for someone who can set technical direction for AI systems end to end, from model selection and agent design to backend architecture, evaluation pipelines, and production-grade integration into security workflows. What You'll Do - Own AI strategy and technical direction across RemoteThreat, including architecture, research priorities, capability roadmap, evaluation standards, and production integration. - Design the core AI architecture for the platform, including model routing, agent orchestration, tool use, memory patterns, retrieval layers, context management, and security boundaries. - Lead development of AI-enabled capabilities across the platform, including operator assistance, reasoning support, workflow automation, mission planning support, and knowledge capture. - Define how AI systems should interact with the rest of the RemoteThreat platform, including exposure discovery, adversary simulation, detection engineering, and team training workflows. - Establish engineering standards for building reliable AI systems, including observability, prompt and context versioning, evaluation harnesses, latency/performance tradeoffs, fallback behavior, and human-in-the-loop controls. - Drive internal research into the strengths and limits of state-of-the-art models across tasks such as vulnerability discovery, tool use, multi-step reasoning, chained operations, and security-relevant decision support. - Build repeatable evaluation systems for model quality, operational usefulness, misuse resistance, reliability, and failure-mode discovery in offensive and adversarial workflows. - Partner closely with engineering to turn prototypes into robust product capabilities rather than one-off demos or disconnected experiments. - Work with offensive operators and customer-facing teams to ensure the architecture reflects actual mission constraints, not just idealized AI workflows. - Build and lead a small, elite AI engineering and research function capable of shipping differentiated systems quickly and rigorously. Qualifications - Deep experience leading applied AI, LLM, or agent-based initiatives in security, cyber, safety, or similarly technical domains. - Strong architectural judgment for AI systems, including experience designing production-grade workflows involving models, agents, tools, retrieval, memory, orchestration, and evaluation. - Experience building or overseeing the engineering of AI-enabled platforms, not just prompting or experimentation layers. - Strong understanding of modern foundation models, agentic systems, tool use, model evaluation, prompt strategies, and the practical limits of current systems. - Experience designing evaluation pipelines for model behavior in adversarial, ambiguous, or high-consequence settings. - Strong technical fluency across at least some of the following: offensive security, red teaming, vulnerability research, AI security, agent systems, model benchmarking, backend systems, or workflow automation. - Experience making hard system tradeoffs across speed, cost, reliability, transparency, and operator trust. - Proven ability to set technical direction, mentor senior engineers and researchers, and align research with product and platform outcomes. - Excellent written and verbal communication skills, especially around architecture decisions, technical tradeoffs, and executive-level technical strategy. - Citizenship in a NATO country, or a citizen of Taiwan, Australia, New Zealand, South Korea, Japan, UAE, Israel, Latin America, South America (excluding Venezuela). Strongly Preferred - Experience building agent frameworks or AI orchestration layers for complex technical tasks. - Experience with production AI infrastructure, including inference patterns, model gateways, evaluation services, telemetry, and backend-heavy AI systems. - Experience evaluating or building AI systems for offensive cyber, red teaming, security testing, or capability assessment. - Familiarity with model behavior in areas such as tool use, multi-turn attack flows, prompt injection, sandbox escape risk, agent reliability, and operational misuse. - Experience developing internal benchmarks, taxonomies, or structured evaluation methods for cyber capability, safety, or operational uplift. - Hands-on coding fluency in Python and comfort working across notebooks, services, APIs, and engineering-heavy research environments. - Experience working in high-trust, mission-oriented, or sensitive technical environments where reliability and discretion matter. Environment You Will Work In - AI-native systems embedded in offensive cyber and adversary simulation workflows. - Architectures involving model routing, tool invocation, agent loops, retrieval layers, memory management, and workflow instrumentation. - Evaluation pipelines designed to measure not only benchmark performance, but real-world utility, robustness, and failure behavior. - Backend-heavy platforms where orchestration, logging, observability, security, and reliability are as important as model quality. - Sensitive enterprise and mission environments where AI systems must perform under operational constraints rather than ideal lab conditions. What Success Looks Like - RemoteThreat develops a differentiated AI architecture that is purpose-built for offensive cyber and adversary simulation rather than copied from generic enterprise AI patterns. - AI systems across the platform are reliable, measurable, and deeply integrated into real operator workflows. - The company builds a strong internal capability around AI engineering, orchestration, and evaluation, not just experimentation. - RemoteThreat is able to ship AI features that improve operator speed, reasoning quality, and scale without sacrificing trust, control, or technical rigor. - AI becomes a durable part of the platform's technical advantage and not a thin layer on top of existing products. Benefits - Fully Remote - Competitive salary and equity stock options - Unlimited paid time off (PTO) - Company-paid holidays - Employer subsidized medical/vision and dental coverage - HSA and FSA account options - 24/7 Virtual medical and behavioral health consultations - Company paid mental healthcare sessions - Eligibility to participate in the company's incentive bonus program - Company paid life insurance - Company paid short- and long-term disability - Travel assistance program (emergency assistance, medical services, identity protection) - Parental leave - Employee discount program - Financial well-being platform - Unlimited AI token usage

United States + 9 moreAll locations: United States | Brazil | Australia | Japan | Colombia | Argentina | New Zealand | Israel | United Arab Emirates | South Korea
ServiceNow logo

Staff Software Engineer - Product Security

ServiceNow

As the AI platform for business transformation, we're putting AI to work across organizations — freeing people for work that matters. Making old tech work with new tech. Reaching across departments, from the front office to the back office and every office in between. Our ambition? To become the AI defining enterprise software company of the 21st century (or "AI DESCO21C," as we like to call it). With more than 8,400+ customers, we serve approximately 90% of the Fortune 500®, and we're proud to be a Fortune 100 Best Companies to Work For® and World's Most Admired Companies™. Explore your future career with us, visit www.careers.servicenow.com From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.

Full TimeRemoteTeam 10,001+Since 2004H1B Sponsor

Company Description It all started when engineer Fred Luddy wrote code that automated a tedious task for his coworker, Phyllis. She cried tears of joy. That moment inspired Fred to build a company that could do that for everyone-freeing people from busywork so they could focus on meaningful work. Today, ServiceNow is the AI control tower for business reinvention. Our ServiceNow AI platform brings together any AI, any data, and any workflow- helping 85% of the Fortune 500® work smarter, faster, and better. We're building an AI-native culture where technology and talent are unstoppable together. And we're just getting started. Join us to put AI to work for people. Job Description ServiceNow's Product Security organisation is building a dedicated Security R&D function - a software engineering team that builds security capabilities with the same engineering rigour as ServiceNow's product organisation. We are looking for a Staff Security Engineer to be a core contributor on this team. Security R&D operates in two complementary modes: open contribution to product engineering - writing code alongside product teams where security expertise adds value - and developing its own security capabilities, including internal tooling, externally facing product features, AI-powered security automation, and third-party integrations. This is a new team being stood up in Petah Tikva, Israel, co-located with ServiceNow's AI Security Research team. You will help shape the team's engineering practices and technical foundation from day one. This role reports to the Sr. Engineering Manager, Security R&D. What You Will Do Build Security Capabilities - Design and develop security tooling, automation, and platform services that operate at ServiceNow's enterprise scale. - Contribute code directly into ServiceNow product engineering codebases, embedding security capabilities where they have the highest impact. - Build AI-powered security automation by integrating in-house models and third-party services into production workflows. - Leverage ServiceNow's platform - Agent Framework runtime, ACL enforcement, data layer, and workflow engine - to create security capabilities that external vendors cannot match. Collaborate Across Teams - Work closely with the AI Security Research team on tooling for AI agent security, translating research insights into production-grade engineering. - Partner with product engineering teams during open contribution engagements, earning trust through code quality, reliability, and delivery. - Participate in design reviews, code reviews, and architecture discussions, contributing to the team's technical standards and engineering culture. Grow with the Team - Help define engineering best practices as a founding member of the Security R&D team. - Contribute to hiring and onboarding as the team scales, helping maintain the engineering bar. - Stay current on emerging AI/ML technologies and security threats, bringing new ideas into the team's roadmap. What Makes This Role Unique - Builder-led culture: Security R&D is defined by engineering output, not advisory reviews. We build production security capabilities with the same discipline as product engineering. - Dual operating model: The team both contributes directly to product engineering and develops its own security products and services. - Platform advantage: ServiceNow owns the entire stack - runtime, ACLs, data layer, workflow engine. You will build security capabilities that no external vendor can replicate. - Founding team: This is a new team being built from scratch. You will shape its engineering culture, technical standards, and identity from day one. - AI intersection: The role sits alongside the AI Security Research team, placing you at the frontier of securing AI systems at enterprise scale. Qualifications To be successful in this role, you have: - 8+ years of professional software engineering experience building production systems at scale. - Bachelor's degree in Computer Science, Engineering, or a related technical field. - Strong hands-on proficiency in Python and Java. You write production code daily and take pride in software craftsmanship. - Solid foundation in distributed systems, cloud-native architectures, and building services that meet enterprise requirements for scalability, reliability, and performance. - Experience working in collaborative engineering environments, contributing to shared codebases with high code quality standards. - Interest in or exposure to security engineering concepts - application security, infrastructure security, identity systems, or trust & safety. A security mindset is valued; deep security expertise can be developed on the team. - Curiosity about AI/ML and next-generation AI technologies. You don't need to be an AI expert, but you should be excited about building at the intersection of security and AI. Preferred - Experience with security tooling development, SSDLC automation, or building security features into a product. - Familiarity with container/Kubernetes environments, cloud security, or infrastructure-as-code. - Exposure to AI/ML pipelines, LLM integration, or agentic frameworks. - Experience in a SaaS or platform company building multi-tenant enterprise software. - Experience working in a globally distributed engineering team. Additional Information Work Personas We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here . To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service. Equal Opportunity Employer ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. Accommodations We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact globaltalentss@servicenow.com for assistance. Export Control Regulations For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license. .

Israel
Full TimeRemoteTeam 11-50

Role Description Dynamic Solutions Technology, LLC, a premier strategic services firm that meets IT and Service needs for commercial and government clients, is seeking a full-time IT Asset Management Program Manager. This is an exempt remote position in support of a government customer in NJ. Must Be U.S. Citizen. - Lead the planning, execution, governance, and continuous improvement of the IT Asset Management (ITAM) Program, ensuring alignment with organizational objectives, federal regulations, and industry best practices. - Develop, maintain, and manage the ITAM Program Management Plan (PMP), establishing program governance, performance measures, resource requirements, and operational priorities. - Create and maintain detailed Work Breakdown Structures (WBS), Integrated Master Schedules, and program roadmaps to effectively manage scope, schedule, deliverables, and dependencies across Hardware Asset Management (HAM) and Software Asset Management (SAM) initiatives. - Direct program planning activities, including milestone development, resource allocation, budget forecasting, cost estimation, and financial tracking to ensure efficient use of program resources. - Monitor and evaluate program performance against established goals, objectives, key performance indicators (KPIs), and service-level expectations, providing recommendations for corrective actions and continuous improvement. - Develop and maintain HAM and SAM Strategic Roadmaps that support long-term modernization efforts, operational efficiency, compliance objectives, and lifecycle management strategies. - Lead enterprise risk and issue management activities by developing Risk and Issue Management Plans, maintaining Risk Registers, assessing program impacts, and implementing mitigation strategies. - Prepare and deliver executive-level program status reports, briefings, dashboards, and performance analyses that communicate progress, risks, issues, accomplishments, and strategic recommendations. - Coordinate stakeholder engagement activities, including governance meetings, working groups, executive briefings, and collaborative planning sessions to ensure transparency, communication, and alignment among stakeholders. - Support audit readiness and compliance initiatives by maintaining program documentation, preparing audit evidence, and ensuring adherence to federal regulations, VA policies, and ITAM governance requirements. - Manage program documentation repositories, action item trackers, meeting minutes, lessons learned, and knowledge management activities to promote organizational continuity and effective decision-making. - Collaborate with government leadership, technical teams, financial managers, acquisition personnel, and external oversight organizations, including GAO and Congressional stakeholders, to address inquiries, support reporting requirements, and advance strategic ITAM program objectives. Qualifications - BA in IT Management or Program/Project Management - 8+ years of IT program management - Minimum 5 years with Agile methodologies and project management - Public Trust Level Requirements - Serving as the Contractor's main point of contact and overall performance - Responsible for all aspects of the development and implementation of assigned projects and provides a single point of contact for those projects - Takes projects from original concept through final implementation. - Interfaces with all areas affected by the project including end users, computer services, and client services. - Defines project scope and objectives. Develops detailed work plans, schedules, project estimates, resource plans, and status reports. - Conducts project meetings and is responsible for project tracking and analysis. - Ensures adherence to quality standards and reviews project deliverables. - Manages the integration of vendor tasks and tracks and reviews vendor deliverables. - Provides strategic, technical and analytical guidance to project team. - Recommends and takes action to direct the analysis and solutions of problems from experience advising senior leadership on IT strategic work. Desired Qualifications - PMP/PMI certification - Excellent communication - Solid relationship builder - Quality Certification (ITIL, or other)

United States
LED FastStart logo

AWS Cloud Security and ICAM Specialist

LED FastStart

We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.

Full TimeRemoteTeam 51-200

Role Description The AWS Cloud Security and ICAM Specialist supports the Case Management Modernization (CMM) Program for the Administrative Office of the U.S. Courts (AO) by designing, implementing, and managing secure authentication and authorization frameworks across modernized cloud-based applications. This role ensures compliance with federal identity governance, FedRAMP, and Zero Trust Architecture (ZTA) principles within an AWS environment. The ICAM Specialist collaborates with architecture, security, and DevSecOps teams to ensure access control, identity federation, and credential management are integrated seamlessly across all layers of the CMM application ecosystem. - Design and maintain the ICAM architecture for identity, access, and authentication management across AWS-hosted CMM applications and other legacy ICAM. - Implement federated identity and single sign-on (SSO) solutions using modern protocols (SAML, OAuth2.0, OIDC). - Collaborate with Cloud and Security Architects to enforce Zero Trust Architecture (ZTA) across microservices and APIs. - Configure and maintain directory services and identity providers (e.g., AWS Cognito, AWS IAM Identity Center, Azure AD, IBM Verify, Key Cloak). - Deep experience integrating KeyCloak as a broker IdP federating upstream enterprise IdPs while issuing downstream OIDC token to application. - Design ICAM brokerage solutions and support compliance assessments, ensuring adherence to FISMA, NIST 800-63, and FedRAMP security controls. - Develop and document identity lifecycle management processes — provisioning, deprovisioning, and access reviews. - Design and implement least privileged roles, groups, functionalities based on ZTA for both privileged and non-privileged users for a FedRAMP High system. - Experience defining workflow, rules, policies within ICAM tools particularly IBM Verify and Key Cloak. - Conduct access audits, user entitlement reviews, and anomaly detection to ensure least-privilege compliance. - Provide subject matter expertise in identity federation, PKI, certificate management, and secure API authorization. - Design strategies for logging, monitoring and auditing authentication and authorization related events in combination with other AWS event logs. - Design and implement storage level, microservice level Authentication and Authorization. - Support ATO process by providing solutions to all security controls, document implementation plan, maintain Visio diagrams. - Participate in design sessions and work closely with the security lead. - Collaborate with DevSecOps teams to embed ICAM policies within CI/CD pipelines and Infrastructure-as-Code (IaC) templates. - Direct and lead Pen testing, Review architecture diagrams produced by different teams. - Independently lead design and implement of vulnerability management. - Heavily participate in ATO activity. - Lead and direct engineering team. Deliverable Alignment & Performance Outcomes - Architecture Diagrams: Depicting identity flow, federation, and integration points with AWS and CMM systems. - Access Control Documentation: Policies, RBAC models, and credential management workflows. - Compliance Verification Reports: Audit results aligned to NIST 800-63, FedRAMP, and FISMA standards. - Zero Trust Implementation Artifacts: Documentation and verification of ZTA enforcement within system components. - Performance Outcomes: - 100% of CMM applications integrated with SSO and MFA. - Zero unauthorized access incidents attributable to configuration error. - 100% compliance with NIST and FedRAMP ICAM control requirements. - Reduced account provisioning time by ≥30% through automation. Tools & Technologies - IAM & Federation: Key Cloak, Okta. - Access & Compliance: SailPoint, CyberArk, HashiCorp Vault. - Cloud: AWS IAM, KMS, CloudTrail, Lambda. - Protocols: SAML, OAuth2.0, OIDC, SCIM. - Monitoring & Audit: Splunk. - Collaboration: Jira, Confluence, SharePoint, MS Teams. Qualifications - Bachelor’s Degree in Cybersecurity, Information Systems, or related discipline required; Master's Degree preferred. - 10+ years of experience in identity and access management, including 8+ years in cloud-based federal environments required; 12+ years of experience in information systems preferred. - Hands-on experience with Key Cloak and AWS IAM Identity Center for SSO and MFA implementations. (IBM Verify a plus). - Strong knowledge of identity federation protocols (SAML, OAuth2.0, OIDC, SCIM) and modern authentication flows. - Expertise with RBAC/ABAC frameworks, policy-based access control, and least-privilege enforcement. - Familiarity with NIST 800-63, FISMA, FedRAMP, and ZTA standards and compliance frameworks. - Experience implementing ICAM solutions in Agile and DevSecOps environments. - Working knowledge of PKI, digital certificates, and encryption technologies. - Strong analytical and troubleshooting skills with ability to resolve identity integration issues. - Experience with AWS Container Security and Network Security (preferred, not required). - Expert in designing logging and monitoring system by correlating events from several AWS and ICAM system. - Experience supporting federal digital modernization or judiciary IT programs. - Familiarity with Zero Trust Architecture and micro segmentation principles. - Exposure to API gateway authentication (Kong, Apigee, AWS API Gateway). - Experience integrating identity governance tools (SailPoint, Saviynt). - Excellent presentation and communication skills. - Consultant mindset with the ability to work with high level customer stakeholders and build excellent customer relationship. - Experience identifying and applying industry tools, solutions, methods best practices, and emerging technologies. - Strong analytical skills and problem-solving skills with the ability to formulate and communicate recommendations for improvement. - Demonstrated ability to work effectively, independently, and as part of a team. Certification(s) - Certified Information Systems Security Professional (CISSP) - preferred. - AWS Certified Security – Specialty or Azure Identity & Access Administrator – preferred. - Certified Identity and Access Manager (CIAM) or Certified Identity Professional (CIP) – beneficial. - SAFe Practitioner (SPC/SSM) – a plus. Location - Remote. Salary Information The likely salary range for this position is $153,000 - $207,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Benefits - Medical plan options, some with Health Savings Accounts. - Dental plan options. - Vision plan. - 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. - Full flex work weeks where possible. - Variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. - 15 days of paid leave per calendar year to be used for vacations, personal business, and illness. - 10 paid holidays per year. - GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. - Short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance.

United States
$153K - $207K / year