OverviewTSGi is seeking a
Security Engineer to support a large-scale federal travel and expense modernization initiative serving civilian government agencies. This role will be responsible for implementing and maintaining security controls across a cloud-based environment, supporting compliance requirements, and protecting mission-critical systems and data. The ideal candidate will bring hands-on experience securing FedRAMP or FISMA Moderate environments, strong AWS GovCloud knowledge, and the ability to translate technical security decisions into compliance-ready documentation.
Candidates local to
Herndon, VA are preferred and will be expected to work onsite
four (4) days per week. Fully remote candidates will also be considered; however,
West Coast candidates will not be considered.
Per our Federal government contract, candidates must be U.S. Citizens able to obtain a Public Trust Clearance.
Responsibilities- Design, implement, and maintain security controls across cloud and application environments.
- Monitor systems for suspicious activity and investigate security alerts and incidents.
- Lead incident response activities, including containment, remediation, recovery, and post-incident analysis.
- Support vulnerability management, system hardening, patch management, and configuration compliance efforts.
- Review automation workflows, scripts, and system changes to ensure adherence to secure development practices.
- Collaborate with engineering and compliance teams to document security controls and support authorization and assessment activities.
- Prepare security reports and recommendations for technical and business stakeholders.
Qualifications- 5+ years of security engineering experience supporting FedRAMP or FISMA Moderate systems in an AWS GovCloud environment.
- Hands-on experience with UiPath architecture, including Orchestrator, attended and unattended robots, credential stores, queues, and robot host deployments.
- Experience designing service account strategies, credential vaulting, RBAC, separation of duties, and audit logging controls.
- Strong knowledge of NIST SP 800-53 Rev. 5 Moderate controls, particularly within the AC, AU, CM, IA, and SC control families.
- Experience with STIG and CIS hardening, vulnerability scanning, patch management, and configuration management.
- Experience supporting Secure SDLC processes and conducting code reviews for automation workflows and scripts.
- Ability to translate technical implementation decisions into security and compliance documentation for assessment and authorization efforts.
- Strong analytical, troubleshooting, and communication skills.
- Per our Federal government contract, candidates must be U.S. Citizens able to obtain a Public Trust Clearance.
Compensation:- W2 Hourly rate starts at $70. Pay rates are based on experience, qualifications, location, and certifications, and are subject to change at any time.
- Benefits vary by compensation type and may include paid time off (PTO), medical, dental, and vision coverage, life insurance, long-term disability insurance, a 401(k) plan, and additional optional benefits.
#LI-JK1
#LI-Hybrid