Security Engineer (TANTUS)
$165kSikich
Description
Security Engineer (US - Remote)
What to expect when you join Tantus, a Sikich Subsidiary
Team members at Tantus, a Sikich Subsidiary have a lot in common while also being part of a rich and varied group of contributors, creating a distinct and thriving culture. Chief among our commonalities is a desire for growth and a shared unity of purpose in our professional lives. We believe that through diverse perspectives, challenging the status quo and rewarding action, we accelerate innovation and drive growth - for our clients, for ourselves and for our communities.
The professional services landscape continues to evolve. For Tantus, a Sikich Subsidiary, this means we have an opportunity to further cement our leadership position in this industry and continue to grow our organization in increasingly exciting ways. This growth is meaningful for every team member at our company because larger companies simply see more interesting client opportunities and can attract impressively talented individuals like you. Through a dedicated focus on key business priorities and intentionally creating a rewarding employee experience, Tantus, a Sikich Subsidiary has developed into a highly regarded provider of professional services and a sought-after employer of choice.
Do you want to work with other skilled and agile practitioners who thrive on challenge and growth? We believe everyone has untapped potential. That's why we lead with vision and act fast, pairing deep expertise with practical solutions. Our teams cut through complexity and deliver real impact. It's our hope that you find more than just a job. At Tantus, a Sikich Subsidiary, you'll find optimism, clear insights and genuine warmth, without egos.
Are you ready to grow with us?
Position summary
The Security Engineer is a member of the Security Engineering Team supporting CMS CCSQ's ISG under the SIO contract. Security Engineers configure, optimize, and maintain AWS WAF policies and CMS-approved security tooling across CCSQ FISMA systems, cloud environments, and CI/CD pipelines. This role operates at the intersection of cloud security engineering and compliance, partnering closely with ISSOs, ADOs, and the Security Compliance team to maintain a robust and audit-ready security posture.
What will you do in this role?
- Configure, tune, and document AWS WAF policies for in-scope applications in CMS OIT Hybrid AWS and QualityNet AWS per CMS change control procedures
- Coordinate with ADOs and platform teams on WAF and security tooling optimizations
- Support detection triage using CMS-approved tools (Security Hub, GuardDuty, Inspector) including rule tuning, configuration controls, and vulnerability management handoffs
- Provide security engineering support during CMS business hours and ad-hoc after-hours support for critical incidents upon Government request
- Document and maintain records of all WAF and security tooling changes for CMS oversight and audit readiness
- Implement and validate defense-in-depth controls against CMS policy and approved benchmarks (CIS, NIST, cloud vendor best practices)
- Record gaps, risks, and remediation actions in CMS-approved tracking tools; support posture dashboards
- Validate logging, monitoring, and detection coverage - including log source onboarding, alert configurations, and detection use cases
- Automate CI/CD pipeline security checks and embed DevSecOps best practices
- Support cloud migration security from QualityNet AWS to CMS OIT Hybrid AWS, including defining migration security tasks and validating control continuity
- Attend PI Planning events; contribute security user stories, acceptance criteria, and dependency identification
- Apply MITRE ATT&CK and Cyber Kill Chain frameworks to threat-informed detection and response
What do you need to succeed in this role?
- Bachelor's degree in Cybersecurity, Computer Science, IT, or related field
- 7+ years of cybersecurity engineering or cloud security experience in a federal IT environment
- Hands-on expertise with AWS security services: WAF, Security Hub, GuardDuty, Inspector, IAM
- Experience with FISMA compliance, NIST 800-53 controls, and ATO documentation
- Proficiency with vulnerability scanning tools (Tenable, Nessus); familiarity with POA&M tracking
In compliance with this state's pay transparency laws, the midpoint of the salary range for this role is $165,000. This is not a guarantee of compensation or salary, as final offer amount may vary based on factors including but not limited to experience and geographic location.
In addition, specific skills/experience required are as follows:
- Servant Leader- You are hyper focused on engaging employees, fostering their development, and building a positive culture.
- Solutions Focused- You see opportunities in every business problem and can develop, articulate, and implement solutions.
- Collaboration- You are a relationship builder across all levels of the organization and across all business units.
- Instills Trust- You do what you say, and you follow through on commitments, you act with integrity, you are consistent and are perceived as credible.
- Impact & Influence Thinking- You gain support for ideas, proposals, and solutions, and get others to act, with or without formal authority, to advance initiatives/objectives.
About Tantus, a Sikich Subsidiary
Tantus, a Sikich Subsidiary, offers the public and private sectors a diverse platform of professional services across consulting, technology, and compliance. Highly specialized and hands-on teams deliver integrated solutions rooted in deep industry experience. Our approach is strategically and thoughtfully designed to help our clients, teams and communities accelerate success.
Tantus, a Sikich Subsidiary has approximately 2,000 team members andoperatesacross North America,EMEAandAPAC.
Tantus, a Sikich Subsidiary Total Rewards
Our team members enjoy expansive benefits ranging from competitive compensation and insurance options to wellness programs and a flexible time off policy, to name only a few. Tantus, a Sikich Subsidiary also takes pride in prioritizing team members' health, total wellbeing and time spent with family, friends and in the pursuit of personal goals, hobbies, and endeavors.
Some examples of our many benefits:
- Tantus, a Sikich Subsidiary maintains a Flexible Time Off (FTO) Policy. We encourage every full-time employee, as your role permits, to utilize paid time off (personal time, mental/physical health care, vacation, sick leave, etc.). Waiting for time off to accrue is common at other companies. At Tantus, a Sikich Subsidiary, you do not have to wait for this benefit to kick in. FTO is activated on your first day with our organization.
- Tantus, a Sikich Subsidiary will also recognize paid holidays during the year and strives to permit employees to have time off the last week of the calendar year when client and project work permits.
- Tantus, a Sikich Subsidiary offers a comprehensive wellness program to engage, challenge and empower team members to take responsibility for their wellbeing. Activities can be tracked through our wellness provider to obtain gift cards and other rewards.
We also offer:
- Flexible work arrangements
- Health, dental, vision, life, and accident/death/disability insurance options
- HSA employer contribution
- Eleven (11) paid holidays annually.
- A robust paid Parental Bonding Leave program covering birth, adoption, and foster children.
- 401(k) with employer contributions
- Tuition reimbursement
- Generous employee referral bonus program
- Client referral bonus program
- Pet insurance
- FORCE - Tantus, a Sikich Subsidiary community volunteer program enabling each team member to use up to four hours of paid time annually to volunteer and make a difference in their localcommunities.
Want to learn more? Visit our Careers website or Glassdoor profile.
Tantus, a Sikich Subsidiary is an Equal Opportunity Employer M/F/D/V
Sikich practices in an alternative practice structure in accordance with the AICPA Professional Code of Conduct and applicable law, regulations, and professional standards. Sikich CPA LLC is a licensed CPA firm that provides audit and attest services to its clients, and Sikich LLC and its subsidiaries provide tax and business advisory services to its clients. Sikich CPA LLC has a contractual arrangement with Sikich LLC under which Sikich LLC supports Sikich CPA LLC's performance of its professional services. Sikich LLC and its subsidiaries are not licensed CPA firms.
"Sikich" is the brand name under which Sikich CPA LLC and Sikich LLC provide professional services. The entities under the Sikich brand are independently owned and are not liable for the services provided by any other entity providing services under the Sikich brand. The use of the terms "our company", "we" and "us" and other similar terms denote the alternative practice structure of Sikich CPA LLC and Sikich LLC.
$159.3k - $202.4k
...Amazon's Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the idea of searching for and uncovering undetected threat activities at petabyte scale. In this role, you will work alongside other Threat Hunting engineers to proactively...SuggestedFlexible hoursShift work$136k - $184k
...At Amazon Healthcare Security, we are on a mission to make healthcare secure and easy. We are developing a patient-centric healthcare... ...personal, transparent, and convenient. We are looking for a Security Engineer to join our team. As a Security Engineer, your...SuggestedTemporary workInternshipFlexible hours$178.4k - $226.7k
...Corporate Services Security (CPSS) is the Amazon security team aligned with Finance & Global Business Services (FGBS), People eXperience... ...Services. Apart from work, we provide opportunities for our engineers to pursue projects they are passionate about while maintaining...SuggestedInternshipFlexible hours$159.3k - $202.4k
...Description Amazon Healthcare Security's (HealthSec) AI team is hiring a Security Engineer II to secure GenAI applications and enable secure AI adoption across Amazon Health Services (AHS). You will work at the intersection of AI for Security and Security for AI—securing...SuggestedFlexible hours$99k - $225k
...Virtru Security Engineer The Opportunity: As a Virtru Security Engineer you'll play a critical role in the world of zero t rus t. You will support the cyber architecture development, implementation, and sustainment across multiple networks of different classification...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$99k - $225k
...Job Number: R0231042 Virtru Security Engineer The Opportunity: As a Virtru Security Engineer you'll play a critical role in the world of zero trust. You will support the cyber architecture development, implementation, and sustainment across multiple networks of...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Threat Detection Security Engineer Job Description Overview CoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100,...Full timeWork at officeWork from homeMonday to Thursday
- ...Edge Security Engineer Job Description Overview CoStar Group is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index, CoStar Group is on a mission to digitize the world...Full timeWork at officeWork from homeMonday to Thursday
$136k - $184k
...an ever-evolving threat landscape impacting a diverse range of businesses? Amazon Stores Security's Threat Detection team is looking for a highly motivated Security Engineer to join our team. In this role, you will research emerging threats to develop new detection...Flexible hours- ...Security Engineer - Zscaler ID 2026-9435 Type Full Time W/Benefits Ret Match Location : Location US-VA-Arlington Security Clearance DHS Suitability Overview/ Job Responsibilities The U.S. Cybersecurity and Infrastructure...Full timeNight shift
- ...Network Security Engineer Senior Advance your career while impacting our national security in cyber as a Network Security Engineer Senior at GDIT. Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal...Work from homeFlexible hours
- ...Description Employer: Amazon Development Center U.S., Inc. Position: Security Engineer III - AMZ25957.4 Location: Arlington, VA Multiple Positions Available: 1.Conduct comprehensive security review within the Secure Software Development Life Cycle (SDLC) for...
- ...IT Security Engineer Zetier seeks experienced IT Security Engineer to support, manage, and secure our rapidly expanding infrastructure. Candidates will demonstrate experience in maintaining, deploying, and troubleshooting segmented IT systems. Strong candidates will...
- ...Network Security Engineer III Title: Network Security Engineer III Location: Alexandria, VA Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph Job Details: Responsible for the deployment, configuration, and operational support of...
$90k - $135k
...strongly preferred. We prefer 5+ years of progressive networking and IT operations experience. Additional certifications such as Security+, CCNA/CCNP, or Google Workspace/Microsoft 365 administrator credentials are a plus. Prior MSP, MSSP, or IT consulting...Full timeFor contractorsWork at officeHome office$159.3k - $202.4k
...without reliable connectivity. Have you wanted an opportunity to secure an advanced satellite broadband telecom service? The Amazon Leo... ...-critical security systems and mechanisms. As a Security Engineer on the Amazon Leo Incident Response team, you work tactically with...InternshipFlexible hoursShift workDay shift- ...Sr. Security Engineer Job Description Overview CoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100, CoStar Group is...Full timeWork at officeWork from homeMonday to Thursday
$18k
...Internal Review Security Engineer II (Contract Contingent) ProSidian is a Management and Operations Consulting Services Firm focusing on providing value to clients through tailored solutions based on industry leading practices. ProSidian services focus on the broad...Contract workFor contractorsWork at officeImmediate start- ...Senior Information Security Engineer Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible....Remote workRelocationFlexible hoursWeekend work
- ...IT Security Engineer At IntraFi, we do more than innovate—we empower. Our services help banks provide vital financial access to small businesses, companies, and consumers across the country. With a network of more than 3,000 financial institutions, we help support the...Flexible hoursWeekend work
- ...is a hands-on, assessment-heavy role ideal for a senior-level engineer who can independently evaluate, design, and execute firewall migrations... ...10+ years of experience in network and/or network security engineering Strong hands-on experience with: Palo Alto firewalls...Shift work
- ...Title: Senior Security Engineer Location : Arlington, VA Duration: 12 months Enterprise Security Architecture and Innovation works to ensure that enterprise-wide technologies are secure, by design, to protect and enable the business. This team provides advisory...
$140k - $165k
.... UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security... ...UltraViolet Cyber is seeking a highly experienced Network Security Engineer with a background in supporting large customers (and / or...Temporary work- ...Zermount Inc. is seeking a Cybersecurity Architect & Engineer SME who can create government solutions that will withstand even the most... ...environments (on-prem, cloud, and Cloud). The role focuses on designing secure enterprise architectures, engineering automated control...Remote work
- ...VMware vDefend Security Engineer (SME) Location: Onsite – Alexandria, VA (occasional travel to Springfield, VA) Clearance: Top Secret (TS) Required Type: Full-time / Onsite Federal Engagement Job Summary The VMware vDefend Security Engineer...Full timeTemporary workImmediate start
- ...Network Security Engineer - Broadcast & Streaming Video Location: Alexandria, VA Position Type: Contract Rate Market/DOE (W2/1099) Required Skills: 6+ years of experience in designing, engineering, implementing, and analyzing solutions to computer security...Contract work
- ...solutions for the nation's most mission-critical facilities, secure environments, complex infrastructure, and global enterprises.... ...secure, and innovative power and technology solutions through engineering expertise and smart systems integration. Why Join Us? Our...Work at officeLocal areaFlexible hoursNight shift
- ...Information Systems Security Engineer Zetier seeks an Information Systems Security Engineer (ISSE) with expertise in cloud automation, Infrastructure-as-Code, virtualization, and orchestration. You'll support, build, and secure cloud-based environments through robust...
$211.06k - $285.55k
...Information Assurance System Security Engineer (ISSE) III Location: USA VA Arlington Full Part/Time: Full time Job Req: RQ219050 Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret/SCI Clearance Level Must Be Able to Obtain: Top Secret SCI...Full timePart timeWork at officeRemote work$156k - $193k
...We are seeking a skilled and motivated Sr. Information Systems Security Engineer to join our dynamic team and play a pivotal role in safeguarding our organization's digital assets and sensitive information. The ideal candidate is a dedicated professional with a strong...Full timeWork experience placementLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer (TANTUS). Be the first to apply!
- senior application security engineer Alexandria, VA
- sr information security engineer Alexandria, VA
- security engineer Alexandria, VA
- senior security operations engineer Alexandria, VA
- aws cloud security engineer Alexandria, VA
- network security engineer Alexandria, VA
- senior cloud security engineer Alexandria, VA
- IT security engineer Alexandria, VA
- information technology security engineer Alexandria, VA
- information system security engineer

