Senior Security Engineer

IBSS

$120K — $145K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a relevant field.
  • 8+ years of cybersecurity experience.
  • CISSP or equivalent cybersecurity certification required.
  • Certification in Azure cloud architecture/engineering preferred (e.g., AZ-305, SC-100).
  • Hands-on experience securing Azure cloud services, including AKS and Zero Trust controls.
  • Proficient in evaluating security documentation and developing test plans.
  • Strong communication skills to coordinate between cybersecurity teams and leadership.

Responsibilities

  • Develop and maintain SOC standard operating procedures and processes.
  • Ensure protection and integrity of operational security data.
  • Conduct vulnerability analysis and provide technical recommendations.
  • Create security evaluation plans and assessment methodologies.
  • Perform hands-on security testing and recommend countermeasures.
  • Assess risks based on threats and vulnerabilities identified.
  • Design and implement security-related systems and tools in cloud environments.

Benefits

  • Medical, dental, vision, and prescription drug coverage with a company-paid deductible.
  • Generous paid time off and federal holidays.
  • Matching 401K plan.
  • Tuition and professional development reimbursement.
  • Flex-Spending (FSA) and Dependent Care Account (DCA) options.
Full Job Description
Job Title: Senior Security Engineer

Location: Washington, D.C.

Clearance Required: Active Secret

Description
IBSS is seeking a Senior Security Engineer to support a Federal customer. This position develops, enhances, and maintains Security Operations Center (SOC) processes and standard operating procedures, performs vulnerability analysis and hands-on security testing, and leads the engineering and implementation of secure cloud solutions, primarily in Microsoft Azure, in alignment with the customer's cybersecurity strategy and federal compliance mandates (NIST, FISMA, FedRAMP). The Senior Security Architect works alongside the Cyber Security SME, ISSOs/Security Assessors, and customer leadership to sustain a strong security posture.

Key Responsibilities:
  • Develop, enhance, and maintain Security Operations Center (SOC) standard operating procedures (SOPs) and assessment operations processes.
  • Ensure accountability, integrity, confidentiality, and protection of operational security processes and data.
  • Perform vulnerability analysis, review program-level documentation (system requirements, architectures, design documents, test plans, security plans), and provide technical recommendations.
  • Develop and document security evaluation plans, test procedures, and assessment methodologies.
  • Conduct hands-on security testing, analyze results, identify risk, and recommend countermeasures.
  • Assess and calculate risk based on identified threats, vulnerabilities, and security control weaknesses.
  • Identify and document mitigation strategies for threats, vulnerabilities, and deficiencies.
  • Support the design, development, and implementation of security-related systems, tools, and assessment capabilities.
  • Participate in and/or lead technical exchange meetings, document action items and outcomes, and brief leadership on security engineering status and results.
  • Support SOC alert analysis, triage, escalation, containment actions, and continuous improvement of detection and response use cases.
  • Lead the engineering and implementation of secure cloud solutions - primarily in Microsoft Azure - in alignment with the customer's cybersecurity strategy and federal compliance mandates (NIST, FISMA, FedRAMP).
  • Integrate Zero Trust security principles across Azure cloud environments, including identity hardening, micro-segmentation, conditional access, and continuous monitoring.
  • Configure and operationalize Azure cloud platform services, including:
    • Azure Kubernetes Service (AKS) secure cluster configuration, governance, and node-pool hardening
    • Azure Policy creation and enforcement
    • Secure Landing Zones following Azure enterprise-scale frameworks
    • Role-Based Access Control (RBAC) and least-privilege access models
    • Resource tagging, naming standards, and governance implementation


Required Skills /Education/ Certifications & Qualifications:
  • Bachelor's degree
  • Minimum of eight (8) years of cybersecurity experience.
  • CISSP or similar (CISM, CASP+, GSLC, etc.) recognized cybersecurity certification.
  • Cloud Architecture/Engineer or similar certification, preferably one (or more) of the following:
    • AZ-305 (Azure Solutions Architect Expert)
    • SC-100 (Cybersecurity Architect Expert)
    • AZ-400 (DevOps Engineer Expert)
    • AZ-104 (Azure Administrator Associate)
  • Demonstrated experience implementing and securing Azure cloud services, including AKS, Azure Policy, Azure AD/Entra, Conditional Access, RBAC, and Zero Trust controls.
  • Ability to evaluate security documentation and develop security test plans, evaluation methodologies, and technical recommendations.
  • Ability to coordinate across cybersecurity teams and communicate technical information to leadership.
  • Secret Clearance or higher required.


Desired Skills:
  • Experience supporting the Department of Commerce or another Federal Civilian Executive Branch (FCEB) agency's cybersecurity or cloud security program.
  • Experience supporting Security Operations Center (SOC) alert triage, escalation, and incident containment activities.
  • Experience developing ATO/A&A documentation (SSPs, SARs, POA&Ms) within a NIST Risk Management Framework or FedRAMP environment.


IBSS offers a competitive benefits package that includes medical, dental, vision, and prescription drug coverage with a company-paid deductible, paid time off, federal holidays, a matching 401K plan, tuition/professional development reimbursement, and Flex-Spending (FSA)/Dependent Care Account (DCA) options.

Similar Jobs

More Jobs at IBSS

  • Senior Security Engineer
    $120K — $145K *
    Washington, DC 20011 (District Of Columbia County)
    Information Technology
    In-Person
  • IT Project Manager
    $100K — $115K *
    Remote
    Education, Government & Non-Profit
    Remote in Woods Hole, MA
  • IT Project Manager
    $100K — $115K *
    Woods Hole, MA 02543 (Barnstable County)
    Education, Government & Non-Profit
    In-Person
  • Mid-Level Network Engineer
    $88K — $105K *
    Washington, DC 20011 (District Of Columbia County)
    Technical Services
    In-Person
  • Cybersecurity Subject Matter Expert (SME)
    $110K — $130K *
    Washington, DC 20011 (District Of Columbia County)
    Education, Government & Non-Profit
    In-Person

More Information Technology Jobs

Find similar Senior Security Engineer jobs: