By Light Professional IT Services

Senior Security Subject Matter Expert (AI/ML, Cloud & Security)

By Light Professional IT Services$135K — $160K *
US-AnywhereRemote in United States
Technical Services
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree (or equivalent experience) with 7+ years in security, including SOC and incident response
  • Hands-on experience securing AWS environments and familiarity with STIG/NIST standards
  • Proficient with security tools like Splunk, Security Onion, and Tenable
  • Solid Python skills for automation and security operations
  • Knowledge of AI/ML security risks and system architectures

Responsibilities

  • Design, implement, and maintain security controls across system development and operations
  • Secure AWS-based cloud environments and apply least-privilege IAM policies
  • Conduct system hardening, vulnerability scanning, and incident response
  • Analyze logs and support forensic investigations and threat hunting
  • Embed security requirements in AI/ML product development
  • Conduct security reviews of AI/ML models and data integrity
  • Support compliance with CMMC Level 2 and similar frameworks

Benefits

  • Work in a secure cloud environment serving Federal and DoD sectors
  • Engage with cutting-edge technologies including AI and cybersecurity products
  • Opportunities for professional development and certification support
  • Collaboration with diverse engineering teams
  • Participation in compliance and auditing processes that enhance career growth
Full Job Description
Position Overview

Senior Security Subject Matter Expert (SME) to support secure cloud systems in Federal and DoD environments. This role is responsible for designing, implementing, and maintaining security controls across cloud infrastructure and cybersecurity operations systems, while supporting the secure development of AI/ML capabilities and compliance with industry and government standards.

The ideal candidate brings deep, hands-on cloud security and SOC engineering experience, a strong understanding of risk and compliance, and demonstrated ability to secure emerging technologies - including AI/ML systems, detection pipelines, and the products built on them.

Responsibilities

  • Design, implement, and maintain security controls across system development and operations.
  • Secure AWS-based cloud environments, including STIG/NIST-aligned architectures and least-privilege IAM policies; provide working knowledge of Azure and/or Google Cloud.
  • Perform system hardening, vulnerability scanning, monitoring, and incident response using tools such as Splunk, Security Onion, and Tenable.
  • Analyze logs, develop alerts and detection content, and support forensic investigations and threat hunting.
  • Support security architecture design and integration for new and existing systems, including infrastructure-as-code deployments (e.g., Terraform, GitLab CI/CD).
  • Partner with engineering teams to embed security requirements throughout the AI/ML and cybersecurity product development lifecycle, from design through deployment.
  • Perform security reviews of AI/ML models, pipelines, and training data prior to release, including adversarial risk, model integrity, data provenance, and anomaly-detection model validation (e.g., autoencoders, isolation forest).
  • Support secure-by-design practices for AI-enabled SOC tooling and cybersecurity products, including threat modeling, secure code review, least-privilege data access, audit logging, and human-approval gates for AI-assisted actions.
  • Provide support and oversight for systems, including:
    • Patching selection and updates
    • Training data security and integrity
    • Network monitoring, access controls, and monitoring
    • Review and approval of AI-related changes and updates
  • Support compliance activities aligned with CMMC Level 2, SOC 2, and ISO/IEC 27001.
  • Contribute to security documentation, risk assessments, and audit readiness efforts.


Required Experience/Qualifications

  • Bachelor's degree (or equivalent experience) plus 7+ years of relevant security experience, including SOC, incident response, or detection engineering
  • Hands-on experience securing on-premise/AWS environments, including STIG/NIST-aligned architectures
  • Experience with cloud security and enterprise security tools (e.g., Splunk, Security Onion, Tenable, or equivalent SIEM/vulnerability management platforms)
  • Proficiency in Python for automation, security tooling, or ML-driven analytics
  • Working knowledge of AI/ML system architectures and associated security risks (e.g., model integrity, data poisoning, adversarial inputs)


Preferred Experience/Qualifications

  • CISSP, CEH, C|CISO, or GIAC certifications (e.g., GIAC Cloud Penetration Tester)
  • Experience with infrastructure-as-code and CI/CD pipelines (e.g., Terraform, GitLab CI/CD)
  • Experience supporting Federal, DoD, or regulated environments, including CDM or similar federal vulnerability management programs
  • Hands-on experience with AI/ML anomaly detection or analytics frameworks (e.g., Splunk MLTK/DSDL, scikit-learn, TensorFlow, MLflow, embeddings/RAG, vector databases)
  • Experience contributing to AI/ML or cybersecurity product development, including secure design reviews or DevSecOps practices for ML pipelines
  • ITIL, GICSP, or equivalent operations/compliance certifications


Special Requirements/Security Clearance

  • Active Top Secret clearance (SCI/Poly preferred, depending on program requirements)

About By Light Professional IT Services

By Light Professional IT Services is a provider of full lifecycle information technology and telecommunications solutions to the federal government and commercial clients. The company provides services in the areas of cybersecurity, cloud computing, application development, network engineering, and strategic consulting. By Light has been recognized as one of the fastest-growing private companies in the United States by Inc. Magazine and has been named a top workplace by The Washington Post.
Learn more about By Light Professional IT Services
Size
1,500 employees
Industry

Similar Jobs

More Jobs at By Light Professional IT Services

More Technical Services Jobs

Find similar Senior Security Subject Matter Expert (AI/ML, Cloud & Security) jobs: