618 Cybersecurity Engineer jobs in Washington
Cybersecurity Engineer
Posted today
Job Viewed
Job Description
Position Overview:
Ralliant is seeking a motivated and technically broad Cybersecurity Engineer to support and secure our Microsoft Cloud and collaboration platforms. This engineer will play a critical role in implementing, managing, and optimizing security across Microsoft 365, Azure, Entra ID , and Microsoft Defender environments, with a strong emphasis on collaboration security and endpoint protection. This role offers the opportunity to work hands-on in a fast-moving, enterprise-scale environment with exposure to both cloud and endpoint technologies.
Key Responsibilities:
-
Secure and support Microsoft 365 collaboration platforms including Teams, SharePoint, OneDrive, and Exchange Online.
-
Deploy and manage Microsoft Defender for Endpoint, Office, Identity , and Entra ID security features (PIM, MFA, SSPR).
-
Operate and refine Proofpoint configurations for advanced email security, impersonation defense, and DLP.
-
Support Azure cloud security architecture, including policy controls, role-based access, and network segmentation.
-
Implement and manage endpoint security configurations through SCCM, Intune , and Microsoft Defender solutions.
-
Collaborate with IT and engineering teams to integrate security into device management and cloud infrastructure workflows.
-
Participate in incident response investigations, detection tuning, and threat remediation as needed.
-
Stay current with Microsoft product changes, threat intelligence, and platform capabilities to continuously improve Ralliant's security posture.
Qualifications:
-
5+ years of hands-on cybersecurity experience with focus on Microsoft 365 and Azure security .
-
Strong working knowledge of Entra ID (formerly Azure AD) , including PIM, conditional access, and MFA.
-
Practical experience configuring and managing Proofpoint Email Security .
-
Familiarity with endpoint management and protection using SCCM, Intune, and Defender .
-
Understanding of modern identity security, collaboration tool hardening, and cloud-first security controls.
-
Solid grasp of network and security fundamentals in hybrid or cloud-native environments.
Preferred Qualifications:
-
Experience with CrowdStrike, Palo Alto Networks, or Zscaler platforms a plus.
-
Microsoft certifications (e.g., SC-200, MS-500, AZ-500 ).
-
Exposure to detection and response workflows and security operations center processes.
-
Strong problem-solving ability, curiosity, and willingness to learn new tools and techniques.
-
Excellent verbal and written communication skills, with attention to detail in documentation.
-
API integrations, PowerShell, and/or Python competency highly desirable.
#LI-RG1
#LI-Hybrid
Ralliant Corporation Overview
Ralliant, originally part of Fortive, now stands as a bold, independent public company driving innovation at the forefront of precision technology. With a global footprint and a legacy of excellence, we empower engineers to bring next-generation breakthroughs to life - faster, smarter, and more reliably. Our high-performance instruments, sensors, and subsystems fuel mission-critical advancements across industries, enabling real-world impact where it matters most. At Ralliant we're building the future, together with those driven to push boundaries, solve complex problems, and leave a lasting mark on the world.
Bonus or Equity
This position is also eligible for bonus and equity as part of the total compensation package.
Pay Range
The salary range for this position (in local currency) is 101,500.00 - 188,500.00
CyberSecurity Engineer
Posted 9 days ago
Job Viewed
Job Description
Amex GBT is a place where colleagues find inspiration in travel as a force for good and - through their work - can make an impact on our industry. We're here to help our colleagues achieve success and offer an inclusive and collaborative culture where your voice is valued.
Amex GBT is seeking a Cyber Security Engineer with an analytical mind and a detailed understanding of cyber security methodologies. Cyber Security Engineers are expected to provide meticulous attention to detail, outstanding problem-solving skills, work comfortably under pressure and deliver on tight deadlines.
To ensure success, a Cyber Security Engineer must display an excellent understanding of technology infrastructures which include but are not limited to Encryption, Certificates, Security governance and oversight, Security Controls, Security tooling, and Security policies and procedures. Top candidates must be comfortable working with a variety of technologies, large scale deployments, security problems and troubleshooting and providing CyberSecurity engineering deliverables in a secure/compliant manner.
What You'll Do:
-
Working with CyberSecurity Architects team for the planning, proposal and implementation of security controls and platforms.
-
Working knowledge in the field of CyberSecurity, including but not limited to Cloud deployments, application integration, and APIs.
-
Project level experience working in a team environment with multiple parallel workflows, team members, Project Managers, and defined deliverables.
-
Identify and define system security requirements including requirements for achieving audit requirements.
-
Preparing and documenting standard operating procedures and protocols for the Projects and workflows that the Engineer is participating in for the team.
-
Configure and troubleshoot security infrastructure devices as necessary for a smooth and highly available set of controls.
-
In a team environment, develop technical solutions and deploy security tools to help mitigate security vulnerabilities and automate repeatable tasks
-
Troubleshooting and diagnostic skills for the purpose of providing long term actionable solutions and remediation of issues.
-
Responding to and participating in incidents as a representative of the CyberSecurity Engineering team.
-
Ensuring that the organization's data and infrastructure are protected by enabling and maintaining security controls. This includes Gap Analysis as necessary.
-
Participating in the change management process
-
Daily administrative tasks, reporting and communication with the relevant stakeholders, managers and directors.
-
Delivering comprehensive reports including assessment-based findings, outcomes and solutions for increased system security enhancements
-
Working as part of a team with similarly tasked Engineers and Analysts in a diverse, engaging, supportive and respectful manner
What We're Looking For:
-
Knowledge of risk assessment tools, technologies and methods
-
Experience designing secure networks, systems and application architectures
-
Use and deployment of encryption for data protection at rest and in transit for contractual, regulatory and audit requirements
-
Direct experience with implementation of security tools such as WAF, DAM, IPS/IDS, Anti-DDoS, Bot Detection, SIEM, Data Leakage Prevention, Proxy, Automation & Orchestration, etc.
-
Experience working in a team environment for planning, researching and developing security policies, standards and procedures
-
Ability to communicate security issues to peers and management
-
Detailed technical knowledge of database and operating system security
-
Experience with network security and networking technologies and with system, security, and network monitoring tools
-
Thorough understanding of the latest security principles, techniques, and protocols
-
Maintaining current knowledge of technology capabilities and trends
-
Problem solving skills and ability to work under pressure
-
Understanding of the OSI (Open Systems Interconnection) model and well-known ports and services
-
BS degree in Computer Science, Cyber Security or related field or equivalent work experience
-
Industry certifications in cyber security such as but not limited to, CISSP, GSEC, CSSP, CEH highly desired
-
5+ years working experience as a Cyber Security Engineer
Location
United States
The US national annual base salary range for this position is from $110,000 to $220,000. The national range provided includes the base salary that GBT expects to pay for the role. Actual base salary will be based on factors including the scope and complexity of the role and the successful candidate's relevant experience, skills, knowledge, and work location.
In addition to base salary, this role is eligible for our Annual Incentive Award plan, which rewards participants based on company and individual performance. For information about our comprehensive US benefits programs and eligibility, please review our Benefits-at-a-Glance document.
Benefits at a glance (
The #TeamGBT Experience
Work and life: Find your happy medium at Amex GBT.
-
Flexible benefits are tailored to each country and start the day you do. These include health and welfare insurance plans, retirement programs, parental leave, adoption assistance, and wellbeing resources to support you and your immediate family.
-
Travel perks: get a choice of deals each week from major travel providers on everything from flights to hotels to cruises and car rentals.
-
Develop the skills you want when the time is right for you, with access to over 20,000 courses on our learning platform, leadership courses, and new job openings available to internal candidates first.
-
We strive to champion Inclusion in every aspect of our business at Amex GBT. You can connect with colleagues through our global INclusion Groups, centered around common identities or initiatives, to discuss challenges, obstacles, achievements, and drive company awareness and action.
-
And much more!
All applicants will receive equal consideration for employment without regard to age, sex, gender (and characteristics related to sex and gender), pregnancy (and related medical conditions), race, color, citizenship, religion, disability, or any other class or characteristic protected by law.
Click Here ( for Additional Disclosures in Accordance with the LA County Fair Chance Ordinance.
Furthermore, we are committed to providing reasonable accommodation to qualified individuals with disabilities. Please let your recruiter know if you need an accommodation at any point during the hiring process. For details regarding how we protect your data, please consult the Amex GBT Recruitment Privacy Statement ( .
What if I don't meet every requirement? If you're passionate about our mission and believe you'd be a phenomenal addition to our team, don't worry about "checking every box;" please apply anyway. You may be exactly the person we're looking for!
Click Here to Learn More (
Cybersecurity Engineer
Posted today
Job Viewed
Job Description
Join to apply for the Cybersecurity Engineer role at Trupanion Join to apply for the Cybersecurity Engineer role at Trupanion Get AI-powered advice on this job and more exclusive features. Job Description We are seeking a highly skilled and experienced Cybersecurity Engineer to join our dynamic team in the United States. The ideal candidate will have a comprehensive understanding of cybersecurity principles, practices, and technologies and will play a vital role in safeguarding our organization’s digital assets. This position requires a proactive and detail-oriented professional who can navigate the complexities of modern cybersecurity threats and develop robust security solutions. Job Description We are seeking a highly skilled and experienced Cybersecurity Engineer to join our dynamic team in the United States. The ideal candidate will have a comprehensive understanding of cybersecurity principles, practices, and technologies and will play a vital role in safeguarding our organization’s digital assets. This position requires a proactive and detail-oriented professional who can navigate the complexities of modern cybersecurity threats and develop robust security solutions. This position is open to candidates in the Seattle area . You will have a hybrid remote/in-office schedule where you will work from our casual, pet-friendly office at least 3 days a week. What You Will Do Oversee the implementation and management of CyberArk PAM solutions, ensuring they meet the organization's security requirements. Work closely with the Technology and security teams to integrate CyberArk solutions with other security tools and systems. Continuously examine security systems and seek improvements. Provide expert input on cloud security and DevSecOps tooling. Conduct regular security assessments and vulnerability tests to identify potential risks and implement appropriate mitigation strategies. Work closely with IT, operations, and development teams to integrate security into all phases of the software development lifecycle. Implement and manage advanced security monitoring tools to detect and respond to threats in real-time. Stay current with emerging cybersecurity trends, threats, and technologies, and continuously improve the security posture of the organization. Manage and maintain security tooling and infrastructure, including health, license, capacity, performance, support roadmap, and upgrade decisions. Foster a culture of security awareness and best practices. Produce and maintain clear, accurate and up-to-date procedural documentation Identify current and emerging security threats. Work with other security and technology team members to ensure that security vulnerabilities are mitigated in a timely manner. Design, deploy and maintain scalable and reliable enterprise security tools and services Support audit and regulatory exams Conduct tabletop exercises and recovery tests to validate the effectiveness of backup and recovery processes. Drive continuous improvement in cyber resiliency practices and processes. Work with other security team members to conduct threat modelling to identify vulnerabilities and potential attack vectors. Collaborate with other staff to ensure Cyber requirements are understood and clear during all phases of a project. Experience You Have Bachelor’s or Master’s degree in Computer Science, Information Technology, Cybersecurity, or a related field. A minimum of 5-7 years of experience in cybersecurity, with at least 3 years in an engineering role. What You’ll Bring Relevant certifications such as CISSP, CISM, CEH, or equivalent Extensive experience with CyberArk solutions, including hands-on implementation and management. Proven experience with security technologies such as firewalls, email security IDS/IPS, SIEM, endpoint protection, and encryption tools. Strong knowledge of network protocols, operating systems, and software development practices. Experience with cloud security solutions and platforms such as AWS, Azure, or Google Cloud. Proficiency in scripting and automation tools (e.g., Python, PowerShell). Strong knowledge of security principles applied during the software development lifecycle SDLC), and secure coding practices. Knowledge of best practices in the Cyber Security industry, including remediations for OWASP Top 10, CWE/SANS Top 25, CIS Critical Security controls, and NIST Cloud Security guidelines. Hands-on experience in implementing and testing new security features, planning security tooling upgrades, troubleshooting, and responding to security incidents. Experience with supporting IAM in a Cloud and on-prem environments. Familiarity with key security frameworks such as NIST, CIS and ISO Strong communication skills and the ability to explain security issues to technical and non-technical stakeholders. Excellent problem-solving and analytical skills Excellent time management skills to appropriately prioritise multiple concurrent projects. Experience developing and documenting security guidelines, security best practices, and reference architectures. Compensation The pay range for this position is $140,000 - $60,000 on a full-time schedule. Along with base salary, Trupanion employees may be eligible for monthly bonuses. We want all employees to be invested in Trupanion’s success, so we grant Restricted Stock Units to all new team members. Our new hire grants vest over 4 years. Additional Information Benefits and Perks: Full medical, dental, and vision benefits at no cost to the employee Four weeks of paid time off and 9 paid float holidays (you can decide which days are most important to you!) Five-week sabbatical after five years of employment Open, casual, pet-friendly, and fun office environment Free medical health insurance for your pet (1 dog or cat) Paid time off to volunteer at nonprofit organizations Seattle Office Amenities: Free on-site gym, free dog walking services for office pets during business hours, free parking, and paid ORCA cards. For more information about Trupanion, visit Learn more about how Trupanion has revolutionized our industry and the reimbursement model: Trupanion is an equal-opportunity employer and embraces diversity. We are committed to building a team that represents a variety of backgrounds, abilities, perspectives, and skills. We will ensure that individuals are provided reasonable accommodation to participate in the job application or interview process, perform essential job functions, and receive other benefits and privileges of employment. Please contact us to request accommodations. Seniority level Seniority level Mid-Senior level Employment type Employment type Full-time Job function Job function Information Technology Industries Manufacturing Referrals increase your chances of interviewing at Trupanion by 2x Sign in to set job alerts for “Cyber Security Engineer” roles. Seattle, WA $112,4 0.00- 211,800.00 1 week ago Seattle, WA 6,667.00- 8,530.00 1 week ago Seattle, WA 95,000.00- 165,000.00 2 days ago Seattle, WA 117,900.00- 222,000.00 1 week ago Seattle, WA 95,000.00- 165,000.00 2 days ago Seattle, WA 70,000.00- 96,000.00 1 day ago Product Security Engineer (University Grad) Bellevue, WA 117,000.00- 137,000.00 6 days ago Security Engineer 2 - ( Staff | Cybersecurity | req2682 ) Seattle, WA 80,000.00- 90,500.00 1 week ago Kitsap County, WA 90,000.00- 105,000.00 1 week ago Network Security Engineer 1 (Hybrid - Seattle, WA) Seattle, WA 255,000.00- 405,000.00 1 day ago Seattle, WA 135,000.00- 200,000.00 4 months ago Anti-Abuse Security Developer, Google Ads Seattle, WA 90,000.00- 115,008.00 1 hour ago Seattle, WA 154,100.00- 256,800.00 1 week ago Greater Seattle Area 99,461.00- 128,329.00 1 week ago cybersecurity engineer senior, Identity Lifecycle and Authentication Services Seattle, WA 112,400.00- 211,800.00 3 weeks ago Security Engineer - Application/Product Security Seattle, WA 137,750.00- 237,500.00 2 weeks ago Security Engineer - Application/Product Security Seattle, WA 184,300.00- 337,250.00 2 weeks ago Seattle, WA 81,000.00- 90,000.00 2 days ago Staff Security Analyst, Threat Intelligence and Investigations Bellevue, WA 79,900.00- 144,100.00 2 weeks ago Seattle, WA 120,000.00- 150,000.00 1 month ago Cybersecurity Engineer, Identity Resiliency Seattle, WA 100,000.00- 180,000.00 2 weeks ago Sr Cybersecurity Engineer, Threat Hunting Bellevue, WA 103,400.00- 186,400.00 2 days ago Bellevue, WA 200,528.64- 224,900.00 1 week ago Bellevue, WA 177,000.00- 251,000.00 1 week ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI. #J-18808-Ljbffr
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
Ralliant is seeking a motivated and technically broad **Cybersecurity Engineer** to support and secure our Microsoft Cloud and collaboration platforms. This engineer will play a critical role in implementing, managing, and optimizing security across **Microsoft 365, Azure, Entra ID** , and **Microsoft Defender** environments, with a strong emphasis on collaboration security and endpoint protection. This role offers the opportunity to work hands-on in a fast-moving, enterprise-scale environment with exposure to both cloud and endpoint technologies.
**Key Responsibilities:**
+ Secure and support **Microsoft 365** collaboration platforms including Teams, SharePoint, OneDrive, and Exchange Online.
+ Deploy and manage **Microsoft Defender for Endpoint, Office, Identity** , and **Entra ID** security features (PIM, MFA, SSPR).
+ Operate and refine **Proofpoint** configurations for advanced email security, impersonation defense, and DLP.
+ Support **Azure** cloud security architecture, including policy controls, role-based access, and network segmentation.
+ Implement and manage endpoint security configurations through **SCCM, Intune** , and Microsoft Defender solutions.
+ Collaborate with IT and engineering teams to integrate security into device management and cloud infrastructure workflows.
+ Participate in incident response investigations, detection tuning, and threat remediation as needed.
+ Stay current with Microsoft product changes, threat intelligence, and platform capabilities to continuously improve Ralliant's security posture.
**Qualifications:**
+ 5+ years of hands-on cybersecurity experience with focus on **Microsoft 365 and Azure security** .
+ Strong working knowledge of **Entra ID (formerly Azure AD)** , including PIM, conditional access, and MFA.
+ Practical experience configuring and managing **Proofpoint Email Security** .
+ Familiarity with endpoint management and protection using **SCCM, Intune, and Defender** .
+ Understanding of modern identity security, collaboration tool hardening, and cloud-first security controls.
+ Solid grasp of network and security fundamentals in hybrid or cloud-native environments.
**Preferred Qualifications:**
+ Experience with **CrowdStrike, Palo Alto Networks, or Zscaler** platforms a plus.
+ Microsoft certifications (e.g., **SC-200, MS-500, AZ-500** ).
+ Exposure to detection and response workflows and security operations center processes.
+ Strong problem-solving ability, curiosity, and willingness to learn new tools and techniques.
+ Excellent verbal and written communication skills, with attention to detail in documentation.
+ API integrations, PowerShell, and/or Python competency highly desirable.
#LI-RG1
#LI-Hybrid
**Ralliant Corporation Overview**
Ralliant, originally part of Fortive, now stands as a bold, independent public company driving innovation at the forefront of precision technology. With a global footprint and a legacy of excellence, we empower engineers to bring next-generation breakthroughs to life - faster, smarter, and more reliably. Our high-performance instruments, sensors, and subsystems fuel mission-critical advancements across industries, enabling real-world impact where it matters most. At Ralliant we're building the future, together with those driven to push boundaries, solve complex problems, and leave a lasting mark on the world.
**Bonus or Equity**
This position is also eligible for bonus and equity as part of the total compensation package.
**Pay Range**
The salary range for this position (in local currency) is 101,500.00 - 188,500.00
CyberSecurity Engineer

Posted 1 day ago
Job Viewed
Job Description
Amex GBT is seeking a Cyber Security Engineer with an analytical mind and a detailed understanding of cyber security methodologies. Cyber Security Engineers are expected to provide meticulous attention to detail, outstanding problem-solving skills, work comfortably under pressure and deliver on tight deadlines.
To ensure success, a Cyber Security Engineer must display an excellent understanding of technology infrastructures which include but are not limited to Encryption, Certificates, Security governance and oversight, Security Controls, Security tooling, and Security policies and procedures. Top candidates must be comfortable working with a variety of technologies, large scale deployments, security problems and troubleshooting and providing CyberSecurity engineering deliverables in a secure/compliant manner.
**What You'll Do:**
+ Working with CyberSecurity Architects team for the planning, proposal and implementation of security controls and platforms.
+ Working knowledge in the field of CyberSecurity, including but not limited to Cloud deployments, application integration, and APIs.
+ Project level experience working in a team environment with multiple parallel workflows, team members, Project Managers, and defined deliverables.
+ Identify and define system security requirements including requirements for achieving audit requirements.
+ Preparing and documenting standard operating procedures and protocols for the Projects and workflows that the Engineer is participating in for the team.
+ Configure and troubleshoot security infrastructure devices as necessary for a smooth and highly available set of controls.
+ In a team environment, develop technical solutions and deploy security tools to help mitigate security vulnerabilities and automate repeatable tasks
+ Troubleshooting and diagnostic skills for the purpose of providing long term actionable solutions and remediation of issues.
+ Responding to and participating in incidents as a representative of the CyberSecurity Engineering team.
+ Ensuring that the organization's data and infrastructure are protected by enabling and maintaining security controls. This includes Gap Analysis as necessary.
+ Participating in the change management process
+ Daily administrative tasks, reporting and communication with the relevant stakeholders, managers and directors.
+ Delivering comprehensive reports including assessment-based findings, outcomes and solutions for increased system security enhancements
+ Working as part of a team with similarly tasked Engineers and Analysts in a diverse, engaging, supportive and respectful manner
**What We're Looking For:**
+ Knowledge of risk assessment tools, technologies and methods
+ Experience designing secure networks, systems and application architectures
+ Use and deployment of encryption for data protection at rest and in transit for contractual, regulatory and audit requirements
+ Direct experience with implementation of security tools such as WAF, DAM, IPS/IDS, Anti-DDoS, Bot Detection, SIEM, Data Leakage Prevention, Proxy, Automation & Orchestration, etc.
+ Experience working in a team environment for planning, researching and developing security policies, standards and procedures
+ Ability to communicate security issues to peers and management
+ Detailed technical knowledge of database and operating system security
+ Experience with network security and networking technologies and with system, security, and network monitoring tools
+ Thorough understanding of the latest security principles, techniques, and protocols
+ Maintaining current knowledge of technology capabilities and trends
+ Problem solving skills and ability to work under pressure
+ Understanding of the OSI (Open Systems Interconnection) model and well-known ports and services
+ BS degree in Computer Science, Cyber Security or related field or equivalent work experience
+ Industry certifications in cyber security such as but not limited to, CISSP, GSEC, CSSP, CEH highly desired
+ 5+ years working experience as a Cyber Security Engineer
**Location**
United States
The US national annual base salary range for this position is from $110,000 to $220,000. The national range provided includes the base salary that GBT expects to pay for the role. Actual base salary will be based on factors including the scope and complexity of the role and the successful candidate's relevant experience, skills, knowledge, and work location.
In addition to base salary, this role is eligible for our Annual Incentive Award plan, which rewards participants based on company and individual performance. For information about our comprehensive US benefits programs and eligibility, please review our Benefits-at-a-Glance document.
Benefits at a glance ( #TeamGBT Experience**
Work and life: Find your happy medium at Amex GBT.
+ **Flexible benefits** are tailored to each country and start the day you do. These include health and welfare insurance plans, retirement programs, parental leave, adoption assistance, and wellbeing resources to support you and your immediate family.
+ **Travel perks:** get a choice of deals each week from major travel providers on everything from flights to hotels to cruises and car rentals.
+ **Develop the skills you want** when the time is right for you, with access to over 20,000 courses on our learning platform, leadership courses, and new job openings available to internal candidates first.
+ **We strive to champion Inclusion** in every aspect of our business at Amex GBT. You can connect with colleagues through our global INclusion Groups, centered around common identities or initiatives, to discuss challenges, obstacles, achievements, and drive company awareness and action.
+ And much more!
All applicants will receive equal consideration for employment without regard to age, sex, gender (and characteristics related to sex and gender), pregnancy (and related medical conditions), race, color, citizenship, religion, disability, or any other class or characteristic protected by law.
Click Here ( for Additional Disclosures in Accordance with the LA County Fair Chance Ordinance.
Furthermore, we are committed to providing reasonable accommodation to qualified individuals with disabilities. Please let your recruiter know if you need an accommodation at any point during the hiring process. For details regarding how we protect your data, please consult the Amex GBT Recruitment Privacy Statement ( .
**What if I don't meet every requirement?** If you're passionate about our mission and believe you'd be a phenomenal addition to our team, don't worry about "checking every box;" please apply anyway. You may be exactly the person we're looking for!
Click Here to Learn More (
Senior Cybersecurity Engineer
Posted 10 days ago
Job Viewed
Job Description
LTS provides trusted consulting, and solutions in an increasingly complex and growing world. Our deep expertise in technology and analytics helps us serve a broad constituency of clients that range from cabinet-level departments of the U.S. Government to the largest Federal IT contractors in the world.
LTS is a leading information technology (IT) provider for mission critical systems leveraging the latest technologies to deliver cutting edge solutions from small mobile applications to large, complex enterprise applications. Our professionals specialize in multiple disciplines including program management, system integration, system design, system development, cybersecurity, infrastructure and data analytics.
Responsibilities:
- Ensure security and privacy considerations and requirements are embedded in all relevant phases and aspects of the SDLC lifecycle. The SDLC consists of, but may not be limited to, threat modeling, requirements, design, development, integration, testing (unit, integration, functional, regression, and security), deployment, operations & maintenance (O&M), and configuration management (CM);
- Responsible for the design, development, integration, testing, implementation, deployment and operations & maintenance of tools for the automation of security testing in support of Assessment and Authorization (A&A);
- Provide direct security engineering support to OCIO and program office IT projects to ensure secure, modern, and effective delivery of business goals and objectives;
- Responsible for liaising with the Chief Technology Office (CTO) to incorporate security into the enterprise architectural design;
- Create enterprise benchmarks for technologies utilized within the enterprise by utilizing DOC approved hardening standards (Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG), Center for Internet Security (CIS) Benchmark);
- Create the configuration audit file to scan technologies for compliance with the defined enterprise benchmarks;
- Define and automate security test methodologies for systems to ensure all security controls are properly tested;
- Test methodologies may consist of automated tools and manual test procedures.
- Coordination with all stakeholders is required to ensure the security test methodology is in accordance with tile appropriate policy, standards, guidance, and best security practices.
- Perform design reviews for new technologies and services for DOC customers. New technologies may include, but are not limited to, Cloud technologies, micro-services, micro-segmentation, DevSecOps, Hardware, Operating System, Web technologies, SQL Databases and Big Data/NoSQL databases;
- Provide Security Engineering expertise, on an as needed basis, to support to the Security Control Assessments (SCAs);
- Define, map, tailor, and advise projects/programs on implementation of security controls IAW with NIST 800-53 for systems, as applicable;
- Provide technical support and expertise to the Information System Security Officer (ISSO) in the development of all security documentation in preparation for A&A.
- Provide guidance and recommendations to System Owner (SO), Service Manager, the IT Security Community Manager, and IT Security working groups regarding the Cybersecurity Posture of the IT capabilities;
- Participate as a member of project Teams to ensure IT projects account for security design and assessment requirements and evaluate self-assessment results and evidence to streamline assessment;
- Ensure real time monitoring requirements are implemented during the SDLC to minimize manual assessment efforts;
- Determine the Independent Verification & Validation (IV&V) test level of effort for each planned system or enclave;
- Participate in all test execution and planning activities, including meetings, and working groups;
- Review the RMF documentation prior to IV&V to determine security readiness of system, site, or enclave.
- Collaborate with the ISSO to conduct in-depth analysis of IV7V, A&A, and functional/operations test results for accuracy, compliance, and adherence to DOC and Federal Information Assurance technical and operations security requirements.
- Collaborate with the ISSO to document residual risks by conducting a thorough review of all vulnerabilities, architecture and providing the information assurance risk analysis and mitigation determination results for any required test or risk reports.
- Assist the ISSO with producing the risk assessment artifacts describing residual risks identified during testing or analysis.
Required Skills, Experience & Qualifications:
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field is required.
- A minimum of 7 years of experience in cybersecurity or a related field.
- Must be a U.S. citizen.
- Active TS/SCI clearance or TS with SCI eligibility
- Relevant network engineer certification and/or industry standard certifications (i.e., CompTIA Security , CISSP, CISM, CEH, GSEC, CAP or equivalent) is required.
- Demonstrated experience in system development and engineering, assessment and authorization, maintenance of tools for the automation of security testing in support of Assessment and Authorization (A&A);
- In-depth knowledge of cybersecurity frameworks and standards, such as NIST, FISMA, and ISO 27001.
- Familiarity with risk management frameworks and the ability to develop and implement effective risk mitigation strategies.
Lead Cybersecurity Engineer
Posted 10 days ago
Job Viewed
Job Description
LTS provides trusted consulting and solutions in an increasingly complex and growing world. Our deep expertise in technology and analytics helps us serve a broad constituency of clients that range from cabinet-level departments of the U.S. Government to the largest Federal IT contractors in the world.
LTS is a leading information technology (IT) provider for mission critical systems leveraging the latest technologies to deliver cutting edge solutions from small mobile applications to large, complex enterprise applications. Our professionals specialize in multiple disciplines including program management, system integration, system design, system development, cybersecurity, infrastructure and data analytics.
Responsibilities:
- Oversee the integration of security and privacy requirements throughout all phases of the Secure SDLC, including threat modeling, design, development, integration, testing, deployment, O&M, and configuration management.
- Conduct Privacy Impact Assessments (PIAs) to ensure adequate security controls protect Personally Identifiable Information (PII).
- Design, develop, and implement cybersecurity-enabled systems, applications, and infrastructure components, including secure configurations for hardware, operating systems, and software applications.
- Lead the design and validation of secure data backup solutions and recovery procedures, and develop and test Disaster Recovery (DR) and Continuity of Operations (COOP) plans.
- Engineer and implement security architectures for new and existing systems, ensuring compliance with NIST SP 800-53, FISMA, and FedRAMP requirements.
- Identify, assess, and recommend cybersecurity products and countermeasures aligned with evolving compliance standards.
- Develop and trace security requirements throughout the system lifecycle, identify architectural security gaps, and recommend corrective actions.
- Perform system architecture evaluations to verify scalability, interoperability, and resilience under cyber-attack scenarios.
- Conduct technical risk analyses on system changes, including vulnerability assessments, threat modeling, and mitigation planning.
- Support 24x7x365 SOC operations, ensuring proactive monitoring, threat detection, analysis, and rapid response to cybersecurity incidents in compliance with NIST SP 800-61 and Federal Incident Notification Guidelines.
- Assist in developing and maintaining the Cyber Defense Playbook and SOC Communication Plan, Collaborate with the CTI and Threat Hunt teams to develop cyber hunt hypotheses and identify internal indicators of compromise using the MITRE ATT&CK framework.
- Lead continuous penetration testing initiatives, including Red Team exercises, phishing simulations, and validation of security control effectiveness.
- Assist with vulnerability assessments and implement mitigation strategies for known cybersecurity vulnerabilities (e.g., CVEs, vendor advisories).
- Assist with remediations and validation through re-testing of all critical and high-risk findings, Establish and lead a Threat Hunt and Forensics Team to proactively detect adversary activities and perform digital forensic investigations.
- Provide advanced malware analysis and forensic evidence collection to support incident investigations and law enforcement requests.
- Develop and maintain forensic SOPs and advanced hunting playbooks aligned with federal best practices.
- Manage and optimize the cybersecurity tool ecosystem, including SIEM platforms, intrusion detection systems, and vulnerability management tools.
- Lead cloud security initiatives across Cloud environments, ensuring compliance with FedRAMP standards.
- Provide secure DevSecOps solutions and implement automation to streamline security testing and compliance validation.
- Evaluate and recommend secure interfaces between physical, embedded, and information systems, ensuring proper authentication, non-repudiation, and confidentiality controls.
- Advise System Owners, Service Managers, ISSOs, and senior leadership on cybersecurity strategies, risk mitigation, and incident response improvements.
- Lead readiness assessments, IV&V activities, and security control evaluations to improve the DOC's overall cybersecurity posture.
- Deliver executive-level briefings and reports on threat intelligence, incident trends, and risk mitigation strategies.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field is required.
- A minimum of 7 years of experience in cybersecurity system engineering
- Active TS/ SCI clearance or TS clearance with SCI eligibility
- One of the following certifications is required; CISSP, CISM, GSEC, GCED, CEH, CCSP, CompTIA Security , GIAC Systems and/or GSNA.
- Expert knowledge of cybersecurity frameworks and compliance standards, including NIST CSF, SP 800-53, SP 800-61, SP 800-171, FISMA and FedRAMP.
- Proven cloud security expertise across AWS, Azure, and Google Cloud, with experience designing and implementing secure architectures and controls.
- Strong understanding of SOC operations, including network security, threat detection, incident response, vulnerability management, and continuous monitoring.
- Demonstrated experience managing projects, including scheduling, risk management, and delivering high-quality security operations and incident response services.
- Skilled in secure systems and software design, data backup and recovery strategies, threat modeling, vulnerability management, and security engineering across cloud and on-premises environments.
- Hands-on experience with cybersecurity tools such as Splunk, CrowdStrike, Tenable, ArcSight, and other SIEM and endpoint security platforms.
- Experience developing and customizing incident response platforms (e.g., ServiceNow, Archer, or custom solutions), including workflow automation and user interface customization for enterprise platforms.
- Exceptional leadership, communication, and stakeholder engagement skills, with the ability to present complex cybersecurity issues to executive leadership.
- Strong analytical and problem-solving skills, with a focus on developing effective risk mitigation strategies and actionable solutions.
Be The First To Know
About the latest Cybersecurity engineer Jobs in Washington !
Senior Cybersecurity Engineer - Secrets Discovery (Remote)
Posted 10 days ago
Job Viewed
Job Description
Job DescriptionJob DescriptionCompany Description
AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas – immunology, oncology, neuroscience, and eye care – and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at Follow @abbvie on X, Facebook, Instagram, YouTube, LinkedIn and Tik Tok.
Job Description
AbbVie is looking for a talented Senior Cyber Security Engineer to join our Cyber Threat Intelligence team.
This new role will focus on designing, building, and automating new components of our secrets discovery program. You will leverage strengths in software development, experience in cyber intel/responseand capabilities in data analytics to discover, analyze, validate, and escalate exposed secrets both internally and externally.
You will be empowered to leverage your creativity in developing this service, including building new custom apps to manage the secrets discovery lifecycle. You will also collaborate on multiple cyber intelligence initiatives, and partner with stakeholders across security and major technology teams to support sound decision-making by providing accurate and timely intelligence.
This position can be remote anywhere in the U.S.
Qualifications
Ideal candidates will have hands-on experience in the following:
- Experience identifying internal and external secrets utilizing discovery tooling
- Development with Python, Go, Elixir, or other similar
- Both invoking and building custom APIs
- Curating of intelligence sources
- Leveraging open source intelligence
- Analysis of large data sets and using data to support decision-making
- Understanding of the anatomy of cyber security incidents
- Current methodologies supporting secrets discovery
You should have experience building and implementing apps in a production-like environment.
Ideal candidates will have Bachelors Degree and 7 years experience OR Masters Degree and 6 years of experience OR PhD and 2 years of experience.
Having a sound understanding of cybersecurity principles related to authentication and network/application security is also beneficial.
Candidates should also possess strong written and oral communication skills and have exposure to communicating at different levels of an organization.
Additional Information
Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:
-
The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future. Salary: $106,500 - $202,500
-
We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.
-
This job is eligible to participate in our short-term incentive programs.
-
This job is eligible to participate in our long-term incentive programs
Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company’s sole and absolute discretion, consistent with applicable law.
AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more, visit
US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:
Chief Cybersecurity Engineer, Technical Manager - TSOC
Posted 11 days ago
Job Viewed
Job Description
Location: Washington, DC area; remote
Time Type: Full-time
Potential for Telework: Yes
Minimum Clearance Required to Start: Secret Clearance
Employee Type : W2 or 1099
Citizenship: US Citizen, no Dual Citizenship
NexThreat is seeking a Chief Cybersecurity Engineer to lead the design, implementation, and management of cybersecurity strategies.
NexThreat is not just a place to work-it's a place to grow, innovate, and make an impact. As a small business, we pride ourselves on our agile approach to cybersecurity challenges. We specialize in detecting cyber threats and providing cutting-edge solutions to our clients. Join our team of cyber professionals who are at the forefront of defending critical infrastructure and ensuring the security of some of the nation's most vital operations.
At NexThreat, we believe that our people are our greatest asset. We offer a dynamic and collaborative environment where every voice matters, and every team member can contribute meaningfully to our mission. We are committed to the professional development and well-being of our employees, offering competitive benefits that include 401K matching, health, vision, and dental insurance, paid leave and sick days, and a generous $5,000 vacation bonus after 5 years of service. We also have a referral program that rewards you for bringing talented professionals into our family.
Joining NexThreat means being part of a forward-thinking company that values innovation, integrity, and teamwork. Whether you're just starting your career or looking to take the next step, you'll find the support and opportunities you need to thrive with us.
Responsibilities :
• Independently perform a variety of system design and integration tasks which are broad in nature and are concerned with design, implementation and architecting of major systems, integration of systems elements and related support systems.
• Develop cutting-edge solutions that display ingenuity and are achieved through collaboration and dialogue with other experts in the field.
• Requires expert knowledge and mastery of highly advanced technologies, scientific principles, theories and concepts.
• Often supervise a broad team of engineers through project completion.
Requirements:
• CISSP certification or Advanced Degree in Cybersecurity (Advanced Degree would be M.S Level or higher in the field of Information Assurance, Information Systems Security or Cyber Security or other closely related field of study such as MBA or MS in Computer science with emphasis in Cybersecurity) with eight (8) years of experience or ten (10) years of experience employed in a governmental organization (as a government or contract employee) as a cybersecurity engineer.
• Five (5) years of experience with governmental (FedRAMP) hybrid on-premises and cloud technology stack environments, with preference given to cybersecurity engineers with transition experience moving from an on-premises to a hybrid on-premises and cloud network solution.
Cybersecurity Facilities Engineer - Subject Matter Expert
Posted 10 days ago
Job Viewed
Job Description
Job DescriptionJob DescriptionTake your career to new heights. Come join us at MORI Associates and help us support the most exciting projects at the Defense Department. As a Cybersecurity Facilities Subject Expert you will be part of a dedicated team of diverse professionals creating and supporting cutting edge solutions for our client’s critical missions. MORI is a mid-sized nationwide company founded in 1997 with the ideals that creating an agile organization full of innovative and passionate people will progress science and technology for all life on earth. We focus on offering a complete range of services from strategic consulting to the development of Information Systems and providing advanced engineering solutions. Now, let’s see if this opportunity is the right challenge for you.
Seeking senior-level cybersecurity engineer to develop and oversee defensive systems for command and control, SCADA and facility systems for critical DoD infrastructure.
Job Function:
Work with a team to help harden and secure Ops and Cybersecurity facilities
Work on policies, design and oversee resources for purposes above
Work will primarily be performed at the Pentagon in Washington, D.C.
Must be technical and strategic
Requirements:
15 years of experience in Cybersecurity with a focus on Ops and Control Centers
Operational Technology (OT) experience
Experience with SCADA systems desired
TS Security clearance with the ability to get a TS/SCI clearance
Bachelors degree in engineering. Masters is .
Must be willing to work onsite at The Pentagon
Salary range: $230K to $300K
MORI Associates is an EEO/AA//Vets Employer and complies with E-Verify.
Powered by JazzHR
Bxy7WaAZuI