ICF Next

Software Security Engineer- Cloud/GovCloud (Top Secret cleared)

ICF Next$81K — $138K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active Top Secret clearance required.
  • Minimum 2 years of experience in application security or cybersecurity engineering.
  • Bachelor's degree in Cybersecurity, Computer Science, or related field preferred.
  • Hands-on experience with secure code reviews and vulnerability assessments.
  • Familiarity with security controls in regulated environments, particularly cloud platforms.

Responsibilities

  • Monitor and assess security of applications and systems for vulnerabilities.
  • Conduct secure code reviews and perform static/dynamic analysis.
  • Test security tools and validate compliance with federal and DoD requirements.
  • Investigate security vulnerabilities and implement corrective actions.
  • Design security controls and enhance protection across environments.
  • Guide development teams on secure coding and DevSecOps practices.
  • Prepare and deliver briefings and performance updates to stakeholders.

Benefits

  • Remote work flexibility with core hours of 8am - 5pm Eastern Time.
  • Occasional travel required, approximately once per quarter.
  • Support in building partnerships with internal and external stakeholders.
  • Opportunities for training and professional development.
Full Job Description
Please note: This role is contingent upon a contract award. While it is not an immediate opening, we are actively conducting interviews and extending offers in anticipation of the award.

The Work: ICF is seeking an experienced and driven Software Security Engineer to lead and oversee mission-critical initiatives in support of our government customer. In this role, you will help safeguard applications and cloud-based systems by integrating security best practices throughout the software development lifecycle.

Job Location: This position is remote. If you accept this position, you should note that ICF does monitor employee work locations and blocks access from foreign locations/foreign IP addresses and also prohibits personal VPN connections.

You may be asked to travel once a quarter to an office or client site.

Our core work hours are 8am - 5pm Eastern Time with the option to start earlier or work later depending on your time zone.

What You Will Do:
  • Proactively monitor and assess application and system security to identify vulnerabilities and potential threats.
  • Perform secure code reviews and static/dynamic analysis to strengthen application security and ensure adherence to secure coding standards.
  • Test and evaluate security tools, applications, and system configurations to validate compliance with federal and DoD security requirements.
  • Investigate and remediate potential security vulnerabilities, recommending and implementing corrective actions to reduce risk.
  • Design and implement security controls, tools, and automation to enhance protection across cloud and on-premise environments.
  • Provide guidance and training to development teams on secure coding practices and DevSecOps principles.
  • Develop and maintain technical documentation related to security architecture, risk findings, and mitigation strategies.
  • Prepare and deliver executive-level briefings, status reports, and performance updates to government stakeholders and corporate leadership.
  • Maintain a positive, results-oriented work environment by building partnerships with internal and external partners.


What You Will Bring With You:
  • Active Top Secret clearance.
  • Proven experience (2+ years) in application security, secure software development, or cybersecurity engineering.


What We Would Like You To Bring With You:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related technical field.
  • 2 years' experience with working on/around cloud platforms in AWS.
  • Hands-on experience performing secure code reviews and vulnerability assessments using industry-standard tools (e.g., SAST, DAST, SCA).
  • Experience implementing security controls in cloud environments (e.g., AWS GovCloud or similar secure federal cloud environments).
  • Strong understanding of secure coding standards (e.g., OWASP, NIST, DoD STIGs).
  • Experience supporting systems within regulated or high-security environments.
  • Ability to self-organize, priorities and conduct research on multiple projects under tight deadlines in a fast-paced environment.
  • An ability to communicate and write clearly in English.


Professional Skills:
  • Highly effective analytical, problem-solving, and decision-making capabilities.
  • Excellent communication and interpersonal skills to interface effectively at all levels of the business.


Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:
$81,499.00 - $138,549.00

Nationwide Remote Office (US99)

About ICF Next

ICF Next is a global marketing and communications agency that provides a wide range of services to clients in various industries, including healthcare, energy, and transportation. The company was founded in 1969 and is headquartered in Fairfax, Virginia. ICF Next offers a comprehensive suite of services, including branding, digital marketing, public relations, and social media management. The company has a strong reputation for delivering innovative and effective solutions that help its clients achieve their business objectives. ICF Next is committed to sustainability and social responsibility, and it has received numerous awards for its work in these areas.
Learn more about ICF Next
Size
8,000 employees
Market Cap
$1.8 billion
Industry
Net Income
$54.9 million
Founded
1969
5 Year Trend
+5.6%
Revenue
$1.5 billion
NASDAQ

Similar Jobs

More Jobs at ICF Next

More Information Technology Jobs

Find similar Software Security Engineer- Cloud/GovCloud (Top Secret cleared) jobs: