Security Engineer
Location
United States
Posted
8 days ago
Salary
0
Seniority
Mid Level
Job Description
Security Engineer
Foresite
Role Description Foresite is seeking a highly motivated and passionate Security Engineer with a specialized focus on Google Security Operations (SecOps) to join our growing team. In this client-facing role, you will be instrumental in helping our clients leverage the full potential of Google's security offerings to enhance their security posture. If you have a strong foundation in security operations, a drive to continuously learn, and a desire to provide expert guidance, we encourage you to apply! What You'll Do: - Infrastructure Provisioning: - Design, configure, and deploy Google security tools and platforms for clients, ensuring seamless integration with their existing environments. - This may include configuring Google Cloud Security Command Center, Chronicle Security Operations, BeyondCorp Enterprise, and other relevant Google security services. - General Support & Troubleshooting: - Provide expert-level support for client inquiries and issues related to Google SecOps tools and configurations. - Diagnose and resolve technical challenges efficiently and effectively. - Security Guidance & Best Practices: - Offer proactive security guidance and recommendations to clients based on Google's security best practices and industry standards. - Help clients understand and mitigate potential risks within their Google Cloud environments. - Product Strategy & Optimization: - Collaborate with clients to understand their security objectives and develop tailored Google SecOps strategies. - Advise on product selection, feature utilization, and roadmap planning to maximize their security investments. - Client Relationship Management: - Build and maintain strong, positive relationships with clients, acting as a primary technical point of contact for Google SecOps initiatives. - Documentation & Knowledge Sharing: - Create and maintain comprehensive documentation for client environments, configurations, and best practices. - Share knowledge and expertise with internal teams. - Stay Current: - Continuously research and stay up-to-date with the latest Google security product updates, features, and threat landscape trends. Qualifications - Passion for Security: You possess a genuine enthusiasm for cybersecurity and a strong desire to protect organizations from evolving threats. - Experience: 3-5 years of experience in security operations, with a solid understanding of common security frameworks, incident response processes, and threat detection methodologies. - Google SecOps Focus: Demonstrated experience with and understanding of Google Cloud security services, including but not limited to: - Google Cloud Security Command Center (SCC) - Google Security Operations - Google Threat Intelligence - Cloud Logging and Monitoring for security - Google Cloud Identity and Access Management (IAM) - Google Cloud Armor - Certifications: Possess one or more security certifications such as: - CompTIA Security+ - (ISC)² SSCP or CISSP (Associate of (ISC)²) - Google Cloud Professional Cloud Security Engineer (highly preferred) - Other relevant cloud security certifications - Client-Facing Skills: Excellent communication, presentation, and interpersonal skills with the ability to articulate complex technical concepts clearly to both technical and non-technical audiences. - Problem-Solver: Strong analytical and problem-solving skills with a meticulous attention to detail. - Self-Starter: Ability to work independently and as part of a team in a fast-paced, dynamic environment. - Proactive Learner: A continuous learner who stays ahead of industry trends and new technologies. Benefits - Comprehensive Health & Wellness: Robust medical insurance options to keep you and your family healthy. - Employer-Covered Insurance: We fully provide employer paid Dental coverage, as well as Short-Term (STD) and Long-Term Disability (LTD) to ensure you are protected financially if life takes an unexpected turn. - Generous Time Off: We believe in a true work-life balance. You’ll start with 3 weeks of paid vacation, plus additional sick leave and paid company holidays to ensure you have time to recharge. - Growth & Mentorship: Access to world-class training and mentorship. We support your career trajectory, whether you’re looking to deepen your technical skills or move into leadership. - Impactful Work: Help protect global clients using the latest AI-enhanced security tools and GCP native technologies.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior Software Security Engineer
GitLabBuild software faster. The One DevOps Platform enables your entire org to collaborate around your code. We're hiring.
• Maintain core abuse prevention systems and build new abuse detection rules to identify and prevent evolving platform abuse such as spam, AI/token, SEO optimization/redirects and other financially motivated abuse campaigns. • Become a core maintainer for our in-house abuse platform (Ruby on Rails monolith) and be comfortable supporting and building new features for the platform. • Improve and expand agentic AI capabilities in our abuse mitigation tools, including improving multi agent reasoning decision patterns with a target to reduce HITL operational load. • Lead collaboration with peer engineering teams to deliver safety improvements for the GitLab product • Resolve automation gaps and create efficient, automated processes • Create and maintain documentation such as runbooks and procedures
Network Security Engineer
NoblisAn independent nonprofit organization, Noblis provides U.S. federal government clients with science, technology, and engineering services to solve challenging p
Role Description We are looking for highly technical professionals with a strong foundation in network architecture, design, and security — individuals who are ready to step up from traditional network engineering roles to take ownership of strategic, architecture-level responsibilities. Ideal candidates will have a deep understanding of networking, security architecture and design, and experience applying Federal security guidelines (e.g., NIST 800-53, FISMA, etc.) to harden and secure systems. The TIS Security Engineer will support the FAA Telecommunications and Integrated Services (TIS) Group and provide expert-level security engineering across the FAA’s FTI environment. This includes: - Analyzing and guiding network architecture to ensure cybersecurity is built-in from the ground up. - Performing hands-on reviews of system configurations, firewall rules, and network paths to align with FAA Orders, NIST 800-53, and federal cybersecurity standards. - Leading efforts in transitioning technologies (e.g., IPv4 to IPv6, microwave radio refreshes) from a cybersecurity and network architecture perspective. - Supporting the integration of Zero Trust, Software-Defined Networking (SDN), and defense-in-depth strategies into enterprise-level solutions. - Acting as a technical bridge between FAA cyber stakeholders and infrastructure providers (network, security, cloud). - Evaluating vendor-proposed architectures and making expert-level recommendations based on federal policy, security principles, and industry best practices. Qualifications - Experience supporting federal government programs, ideally within the FAA or transportation sector. - Proven experience with hands-on network engineering or architecture and understanding of network design, configurations, firewalls, VPNs, IDS/IPS, and load balancing. - Knowledge of telecommunications infrastructure, including IPv4/IPv6, and WAN/LAN environments. - Understanding of federal cybersecurity frameworks (NIST RMF, FISMA, NIST SP 800-53 rev 5). - Ability to evaluate network and system security concepts for large-scale, safety-critical systems like those in the National Airspace System (NAS). - Comfortable advising on defense-in-depth architectures, Zero Trust CONOPS, SD-WANs, and emerging tech. - Experience collaborating with engineers, PMs, and cybersecurity stakeholders to support ATO packages and continuous monitoring. - Ability to develop system security plans, risk assessments, and related security documentation. - U.S Citizen or Green Card Permanent Resident (3+ years U.S. Residency). - Ability to obtain FAA Public Trust. - Mid-level. - Bachelor’s degree in Cybersecurity, Information Technology, Telecommunications, or a related field. - 9+ years of experience in cybersecurity or network security roles. - Substitutions: Associates degree and additional 2 years experience would be acceptable (minimum 11 years total required), or High school degree and an additional 6 years experience would be acceptable (minimum 15 years total required), or Masters Degree from an accredited college in a related discipline with 6 years of professional experience. Requirements - Compensation Ranges for D.C., NJ, Remote: $105,100 - $160,125. Desired Qualifications - CISSP, Security+, CCNA, or similar certification. - FAA or transportation sector experience preferred. - Familiarity with Zero Trust Architecture, Security Orchestration, and network virtualization (e.g., NFV). - Strong written, verbal, and interpersonal skills. Benefits - Health, life, disability, financial, and retirement benefits. - Paid leave, professional development, tuition assistance, and work-life programs. - Acknowledgment of exceptional performance through award programs. - Eligibility for benefit programs for full-time and part-time employees working at least 20 hours a week on a regular basis.
Role Description The Cyber Security Engineer will provide security engineering, compliance, and risk management support for cloud-based systems aligned with NIST SP 800-53, FedRAMP, and DoD IL4–6 requirements. The role will advise partners and customers navigating government security requirements while supporting authorization, audit readiness, and continuous monitoring activities. A key focus will be improving compliance efficiency through GRC platforms, APIs, scripts, cloud-native services, and automation for evidence collection, control validation, documentation, reporting, and remediation tracking. This position is remote supporting a Herndon, VA based team. - Provide cybersecurity engineering and compliance support for FedRAMP and DoD-authorized cloud environments, including IL4–6. - Advise partners and customers on federal and DoD security requirements, authorization strategies, control implementation, and audit readiness. - Develop, review, and maintain authorization documentation, including SSPs, SAPs, SARs, POA&Ms, FedRAMP appendices, policies, and supporting evidence. - Support system authorization and reauthorization activities across FedRAMP/RMF, including gap assessments, control validation, evidence development, and remediation planning. - Leverage GRC platforms, APIs, scripts, and automation to streamline compliance workflows, evidence collection, documentation updates, control testing, and reporting. - Develop repeatable and auditable processes that reduce manual compliance effort and improve the accuracy and consistency of authorization artifacts. - Collaborate with cloud engineering and DevOps teams to design, implement, and validate security controls across AWS, Azure, and hybrid environments. - Review system changes and significant change requests to assess security impact, identify documentation updates, and maintain authorization boundaries. - Coordinate with system owners, engineers, 3PAOs, Authorizing Officials, and government stakeholders to address findings and support authorization outcomes. - Support continuous monitoring, vulnerability management, POA&M updates, remediation tracking, and recurring compliance deliverables. - Evaluate security tooling and data sources to identify opportunities for automated control validation and compliance reporting. - Track evolving federal cybersecurity requirements and translate them into practical technical and operational actions. Qualifications - Strong analytical, documentation, and problem-solving skills with a focus on secure and compliant outcomes. - Excellent communication and stakeholder-management skills, including the ability to advise partners, customers, engineers, and government stakeholders. - Ability to translate federal security requirements into practical technical controls and operational processes. - U.S. citizenship with the ability to obtain and maintain a Secret or higher security clearance. - Bachelor’s degree in Information Security, Cybersecurity, Computer Science, or a related field, or equivalent practical experience. - Five or more years of cybersecurity experience, including at least three years supporting federal cloud security engineering, information assurance, RMF, or ISSO functions. - Knowledge of NIST SP 800-53 Rev. 5, FedRAMP Moderate and High, DoD IL4–6 overlays, RMF, and related federal compliance frameworks. - Experience developing and maintaining SSPs, POA&Ms, SARs, policies, control evidence, and other authorization artifacts. - Experience supporting authorization planning, gap assessments, audit readiness, control implementation, and remediation activities. - Hands-on experience with AWS, Azure, or hybrid cloud environments, including IAM, encryption, logging, configuration management, and security monitoring. - Experience using GRC platforms, APIs, scripting, or automation to improve compliance and security workflows. - Familiarity with tools such as eMASS, Paramify, Nessus/Tenable, Splunk, Prisma Cloud, or comparable solutions. Requirements - Experience supporting FedRAMP, DoD, DISA, or federal agency ATO activities. - CISSP, CGRC/CAP, CISM, Security+, or similar cybersecurity certification. - Experience developing automation with Python, PowerShell, REST APIs, infrastructure-as-code, or cloud-native services. - Experience integrating vulnerability, configuration, and cloud-security data into GRC (Paramify) and POA&M workflows. - Familiarity with DevSecOps pipelines, automated security testing, policy-as-code, and continuous control validation. - Knowledge of FISMA, the Privacy Act, and agency-specific security requirements. Benefits - Health insurance. - Paid leave. - Retirement. Company Description At SMX®, we are a team of technical and domain experts dedicated to enabling your mission. From priority national security initiatives for the DoD to highly assured and compliant solutions for healthcare, we understand that digital transformation is key to your future success. We share your vision for the future and strive to accelerate your impact on the world. We bring both cutting edge technology and an expansive view of what’s possible to every engagement. Our delivery model and unique approaches harness our deep technical and domain knowledge, providing forward-looking insights and practical solutions to power secure mission acceleration. SMX is an Equal Opportunity employer including disabilities and veterans. Selected applicant may be subject to a background investigation and/or education verification. SMX does not sponsor a new applicant for employment authorization or immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-2, E-3, L-1 and O-1, or any EADs or other forms of work authorization that require immigration support from an employer).
Senior IT Security Manager
CosunoManage your entire planning cycle with the Cosuno platform and benefit from our one-size-fits-all solution
• Take full ownership of information security, compliance, and IT governance at Cosuno. • Build and run our ISMS, lead us through ISO 27001 certification, and become the face of Cosuno's security posture toward enterprise customers and auditors. • Lead our ISO 27001 certification from gap analysis through audit, and run the ISMS afterwards. • Own responses to enterprise security questionnaires and RFIs, helping Sales close deals faster. • Own the operational side of GDPR: drafting and negotiating DPAs, managing our subprocessor list. • Own our identity and access management via JumpCloud, including joiner/mover/leaver processes.




