Position OverviewHalvik is seeking a Mid-Level Security Engineer to support a customer's enterprise initiative enabling secure, compliant adoption of Artificial Intelligence (AI) across the agency's hybrid environment. This role supports day-to-day configuration, monitoring, and reporting for enterprise data discovery and classification, AI governance and protection controls, and detection of emerging AI-native development artifacts. Working under the direction of the Lead Senior Security Engineer and Program Manager, the Mid-Level Security Engineer helps operationalize policy controls, maintain compliance dashboards, and support remediation activities that protect sensitive agency and stakeholder information.
This is a hybrid position based at the customer location in Alexandria, VA.Core Responsibilities- Operational Support: Configure and maintain data discovery and classification policies across assigned cloud, on-premises, SaaS, and developer repositories, supporting prioritized rollout to high-risk systems.
- AI Monitoring: Monitor AI prompts, responses, and related activity for sensitive content exposure, and apply approved policy actions (allow, block, alert, redact, route) under established governance rules.
- Artifact Detection: Assist in identifying and classifying sensitive content embedded in AI-native development artifacts, including Markdown prompt files, cursor rules, GitHub Copilot instructions, and MCP configuration files.
- Collaboration: Coordinate with the Lead Senior Security Engineer, stakeholders, and program team members to support deployment tasks, testing, and validation activities.
- Reporting & Remediation: Maintain operational dashboards and compliance reports, track exception and remediation status, and support audit-ready documentation for governance reviews.
- Technical Performance: Support vulnerability scanning and detection activities for code, containers, infrastructure-as-code templates, including potential security flaws introduced by AI components or in data pipelines feeding AI models.
Minimum Requirements- Education: Bachelor's degree in Computer Science, Information Security, or a related field (Masters Degree and 3 years of experience; equivalent experience may be considered in lieu of degree, 9+ years).
- Experience: Minimum of 5 years of professional experience in cybersecurity, IT security operations, or data security/DLP support, preferably within a within a Federal environment.
- Technical Proficiency: Working knowledge of data classification or DLP tooling, cloud platforms (AWS/Azure), and basic SIEM/log monitoring concepts.
- Compliance: Familiarity with NIST SP 800-53 and FISMA, and the Risk Management Framework (RMF).
- Certifications: Current CISSP certification if required.
- Must be able to obtain and maintain Public Trust security clearance.
Preferred Expertise- Prior experience supporting a Federal contract or Federal agency IT security program.
- Exposure to generative AI tools, prompt engineering practices, or AI development workflows.
- Familiarity with Agile/Scrum team environments.
- Strong attention to detail and willingness to grow into an AI governance or data security specialization.
- Solid analytical and problem-solving capabilities with clear written communication.
- Ability to work collaboratively with others and contribute to a team environment.
Halvik offers a competitive full benefits package including:Company-supported medical, dental, vision, life, STD, and LTD insurance
Benefits include 11 federal holidays and PTO
Eligible employees may receive performance-based incentives in recognition of individual and/or team achievements.
401(k) with company matching
Flexible Spending Accounts for commuter, medical, and dependent care expenses
Tuition Assistance
Charitable Contribution matching
Halvik's pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.