Lead Security Engineer

Analytica

$120K — $145K *
Education, Government & Non-Profit
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of experience in cybersecurity engineering or related field.
  • Demonstrated experience designing security controls for Federal information systems in FISMA/RMF environments.
  • Strong knowledge of FISMA, NIST SP 800-53 Rev. 5, RMF, and DevSecOps.
  • Experience securing infrastructure, applications, databases, and APIs.
  • Hands-on experience with Linux, Docker, Kubernetes, and/or Rancher.
  • Experience with IAM, RBAC, privileged access, and encryption controls.
  • Ability to collaborate across diverse teams within a Government setting.

Responsibilities

  • Translate FISMA Moderate and NIST SP 800-53 requirements into actionable security controls.
  • Support Risk Management Framework activities and security planning.
  • Engineer access controls, audit logging, and encryption safeguards.
  • Integrate security checks into the CI/CD process.
  • Validate safeguards against unauthorized data modification.
  • Support incident response, vulnerability management, and continuous monitoring.
  • Coordinate with security and program leadership teams.

Benefits

  • Competitive compensation with bonus opportunities.
  • Employer paid healthcare.
  • Training and development funds for continuous learning.
  • 401k match to support retirement savings.
Full Job Description
We are seeking an experienced Lead Security Engineer to design, implement, and lead cybersecurity engineering for a secure, on-premises Federal data, analytics, and AI platform supporting sensitive grants and awards information within a Government-approved security boundary.

This role will serve as a technical security lead across the platform architecture, infrastructure, applications, data, APIs, DevSecOps pipelines, and AI services. The Lead Security Engineer will translate Federal security requirements into practical technical controls and engineering patterns while ensuring those controls are implemented, tested, monitored, and supported with the evidence necessary for Risk Management Framework (RMF) activities and ongoing authorization.
We offer competitive compensation with opportunities for bonuses, employer paid health care, training and development funds, and 401k match.

Key Responsibilities
  • Translate FISMA Moderate and NIST SP 800-53 Rev. 5 requirements into actionable technical controls and evidence.
  • Support Risk Management Framework activities, security planning, control implementation, assessment readiness, and remediation tracking.
  • Engineer access control, audit logging, authentication, encryption, configuration management, secure communications, and data-protection safeguards.
  • Integrate security scanning and compliance checks into the CI/CD process.
  • Validate read-only interaction with authoritative source systems and safeguards against unauthorized data modification or external action.
  • Support incident response procedures, vulnerability management, secure configuration, and continuous monitoring.
  • Coordinate with security, CIO/CISO stakeholders, platform teams, and program leadership.

Required Qualifications
  • 8+ years of experience in cybersecurity engineering, security architecture, information assurance, or a related field.
  • Demonstrated experience designing and implementing security controls for Federal information systems, preferably in FISMA/RMF environments.
  • Strong knowledge of FISMA, NIST SP 800-53 Rev. 5, RMF, and secure software development/DevSecOps.
  • Experience securing enterprise infrastructure, applications, databases, APIs, networks, and on-premises or hybrid platforms.
  • Hands-on experience with Linux, Docker/containerization, and Kubernetes and/or Rancher.
  • Experience implementing IAM, RBAC, privileged access, authentication, authorization, encryption, certificates, secrets, and key-management controls.
  • Experience with vulnerability management, security scanning, patching, configuration management, and remediation.
  • Experience integrating security into CI/CD pipelines, preferably with Jenkins and/or self-hosted Azure DevOps.
  • Understanding of application security, including SAST/SCA/DAST, dependency management, container security, secrets detection, and secure API design.
  • Experience with security logging, monitoring, alerting, audit trails, and incident response.
  • Experience supporting security assessments, audits, POA&Ms, vulnerability assessments, and continuous monitoring.
  • Ability to conduct threat modeling and evaluate security risks associated with new technologies and architectures.
  • Strong technical documentation, communication, and problem-solving skills.
  • Ability to collaborate across platform, infrastructure, application, data, AI/ML, DevOps, and Government teams.
  • U.S. citizenship and ability to obtain and maintain Top Secret eligibility, as required for contractor personnel supporting the effort. Active Top Secret clearance highly preferred.


Preferred Qualifications
  • Experience supporting Federal financial management, budget execution, grants management, payment systems, award oversight, financial reporting, or financial stewardship.
  • Experience securing Federal grants, payment, financial, or award-oversight platforms.
  • Experience securing AI/ML or open-source LLM workloads in on-premises, restricted, or disconnected environments.
  • Experience with SIEM, SOAR, EDR, security automation, infrastructure-as-code security, or related technologies.
  • Familiarity with FedRAMP-authorized environments, FISMA Moderate, NIST SP 800-53, Section 508, and Federal records/privacy requirements.
  • Relevant security certifications such as CISSP, Security+, SecurityX/CASP+, CCSP, CISM, or GIAC.

Similar Jobs

More Jobs at Analytica

  • Lead Full Stack Engineer
    $120K — $145K *
    Bethesda, MD 20817 (Montgomery County)
    Education, Government & Non-Profit
    In-Person
  • Platform Engineer
    $110K — $130K *
    Bethesda, MD 20817 (Montgomery County)
    Technical Services
    In-Person
  • User Experience Lead
    $110K — $130K *
    Bethesda, MD 20817 (Montgomery County)
    Education, Government & Non-Profit
    In-Person
  • UI Engineer
    $100K — $120K *
    Bethesda, MD 20817 (Montgomery County)
    Information Technology
    In-Person
  • Systems Administrator
    $88K — $105K *
    Bethesda, MD 20817 (Montgomery County)
    Education, Government & Non-Profit
    In-Person

More Education, Government & Non-Profit Jobs

Find similar Lead Security Engineer jobs: