Security Infrastructure & Exposure Engineer

AnaVation

$100K — $140K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Active TS/SCI Clearance with CI Polygraph required
  • Bachelor's degree with 8 years of relevant experience
  • Certifications in IAT Level II and CSSP Infrastructure Support mandated
  • Hands-on experience with CAASM tooling for asset management
  • Deep understanding of network topology and attack path modeling

Responsibilities

  • Architect and maintain CAASM solutions for real-time asset discovery
  • Map network topologies and analyze segmentation for choke point identification
  • Integrate scanning data with IdP telemetry to pinpoint unmanaged infrastructure
  • Embed automated vulnerability testing in IaC and CI/CD pipelines
  • Evaluate and harden cloud architectures against exposure techniques

Benefits

  • Generous cost sharing for medical insurance for employees and dependents
  • 100% company paid dental, vision, and disability insurance
  • 401k plan with a generous match and immediate vesting
  • Competitive pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D insurance
Full Job Description
Description of Task to be Performed:

The Security Infrastructure & Exposure Engineer willdesign, build, and scale our attack surface management and threat exposure detection capabilities. You will engineer internal tools and automated pipelines that proactively map assets, model attack paths, and eliminate security blind spots before they can be exploited.

Core Responsibilities:
  • Attack Surface Management: Architect and maintain Continuous Asset Attack Surface Management (CAASM) solutions for real-time asset discovery.
  • Attack Path Modeling: Map network topologies, analyze segmentation, and build automated attack path graphs to identify choke points.
  • Telemetry & Correlation: Integrate active/passive scanning data with Identity Provider (IdP) telemetry to pinpoint exposed or unmanaged infrastructure.
  • Pipeline Integration: Embed automated vulnerability and exposure testing into Infrastructure-as-Code (IaC) and CI/CD deployment pipelines.
  • Cloud Architecture Defense: Evaluate and harden complex cloud architectures against emerging exposure techniques.

Primary Languages & Technical Stack
  • Go, Rust, and Python (at least one required)


Required Qualifications:

  • Clearance: Active TS/SCI Clearance with CI Polygraph
  • Education & Years of Experience: Bachelor's degree and 8 years of experience related to specific functional area.
  • Certifications: Active certifications for both IAT Level II (e.g. CompTIA Security+) and Cyber Security Service Provider (CSSP) Infrastructure Support (e.g. CompTIA Cloud+) by program onboarding date.
  • The following individual certifications cover both certification requirements for this program: CompTIA Cybersecurity Analyst, CySA+; EC-Council Certified Network Defender (CND); GlAC Global Industrial Cyber Security Professional, GICSP; (ISC)2 System Security Certified Practitioner (SCCP).
  • Hands-on experience and knowledge with the following:
    • Asset Discovery: Proven experience with CAASM tooling and building inventory systems.
    • Network & Graph Modeling: Deep understanding of network topology, segmentation verification, and graph-based attack path analysis.
    • Scanning & Identity: Hands-on experience with active/passive network scanning and correlating data with identity registries (e.g., Okta, Azure AD).
    • Cloud & DevOps: Strong background in cloud security architecture (AWS, GCP, or Azure), IaC (Terraform, OpenTofu), and CI/CD security validation.


Preferred Qualifications:

  • Experience leveraging advanced AI models (e.g., ChatGPT, Grok, Claude) to automate security workflows: (ChatGPT, Grok, Claude, Claude Code, Codex)
  • Multiple scripting and development languages
  • Familiarity with developer-focused AI tools like Claude Code or OpenAI Codex to accelerate engineering velocity


Benefits
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short-term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance

Similar Jobs

More Jobs at AnaVation

More Information Technology Jobs

Find similar Security Infrastructure & Exposure Engineer jobs: