OverviewLMI is seeking a Staff Security & Compliance Engineer to build security and authorization into a U.S. Army enterprise data platform.
This is an engineering role focused on making secure delivery repeatable. The successful candidate will lead the platform’s authorization effort while working directly with engineers to automate controls, evidence collection, continuous monitoring, and remediation.
Responsibilities
- Own the security-engineering and authorization approach for a secure cloud data platform.
- Lead Risk Management Framework and Authority to Operate activities.
- Translate security requirements into technical controls and executable engineering work.
- Automate compliance evidence, control validation, monitoring, and reporting where practical.
- Integrate security into infrastructure, software-delivery pipelines, and platform operations.
- Partner with engineers to identify risks, resolve findings, and improve the platform’s security posture.
- Maintain authorization documentation and communicate technical risk to government and program leadership.
Qualifications
Minimum Qualifications
- Bachelor’s degree in cybersecurity, computer science, engineering, or a related field, or equivalent practical experience.
- Eight or more years of experience in security engineering, cloud security, DevSecOps, or federal authorization.
- Demonstrated experience leading DoD RMF and ATO activities.
- Strong knowledge of NIST security controls and federal cybersecurity requirements.
- Experience securing cloud-hosted or enterprise platforms.
- Experience using automation, scripting, infrastructure as code, or security tooling to implement and validate controls.
- Ability to work directly with software, platform, and data engineers.
- Active Secret clearance.
Preferred Qualifications
- Experience supporting the U.S. Army.
- Experience with AWS or another secure government cloud environment.
- Familiarity with policy as code, automated evidence collection, and continuous authorization.
- Experience with container security, vulnerability management, identity, logging, or cloud-security tooling.
- CISSP, Security+, or another relevant cybersecurity certification.
Target salary range: $121,000 - 194,000
Disclaimer: The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances.
Job LocationsUS-VA-Newport News