Lead Security Engineer
InstantServe LLC
Job Summary
We are seeking a Subject Matter Expert (SME)-level Lead Security Engineer to lead application security across a large-scale, cloud-native federal modernization program supporting the U.S. Census Bureau's Decennial Transformation and Application Modernization (DTAM) effort. This role provides technical and management leadership on major security tasks, embedding security into every phase of the System Development Life Cycle (SDLC) using a DevSecOps methodology. The ideal candidate will architect and enforce Zero Trust principles, drive Authorization to Operate (ATO) activities, and direct application security testing, threat modeling, and vulnerability remediation across a System of Systems (SoS). This position interfaces with senior Government stakeholders and the Office of Information Security (OIS), and decision-making and domain knowledge may have a critical impact on overall program implementation. May supervise others. Responsibilities
Required:
We are seeking a Subject Matter Expert (SME)-level Lead Security Engineer to lead application security across a large-scale, cloud-native federal modernization program supporting the U.S. Census Bureau's Decennial Transformation and Application Modernization (DTAM) effort. This role provides technical and management leadership on major security tasks, embedding security into every phase of the System Development Life Cycle (SDLC) using a DevSecOps methodology. The ideal candidate will architect and enforce Zero Trust principles, drive Authorization to Operate (ATO) activities, and direct application security testing, threat modeling, and vulnerability remediation across a System of Systems (SoS). This position interfaces with senior Government stakeholders and the Office of Information Security (OIS), and decision-making and domain knowledge may have a critical impact on overall program implementation. May supervise others. Responsibilities
- Lead the design and implementation of application security solutions, frameworks, and processes across all phases of the SDLC, in compliance with U.S. Census Bureau (USCB) and Office of Information Security (OIS) policies
- Implement Zero Trust (ZT) principles for applications, workloads, and data, aligned with EO 14028, OMB M-22-09, and NIST SP 800-207 (Zero Trust Architecture)
- Integrate security into DevSecOps CI/CD pipelines, establishing security gates, automated code inspection, and supply-chain controls including Software Bill of Materials (SBOM) generation
- Direct Static and Dynamic Application Security Testing (SAST/DAST), vulnerability assessments, and penetration testing to identify, triage, and remediate security weaknesses
- Lead threat modeling exercises to analyze application architecture, identify attack vectors, and document mitigation strategies throughout design, development, testing, and deployment
- Support the Authorization to Operate (ATO) process, including security control assessment, artifact and evidence collection, Privacy Threshold Analysis/Privacy Impact Assessment support, and Plan of Action and Milestones (POA&M) management
- Implement security controls in accordance with the NIST Cybersecurity Framework and NIST SP 800-53, and remediate identified vulnerability and compliance findings
- Design and implement secure architecture patterns - secure API design, authentication/authorization, input validation, encryption, secure logging and monitoring (SIEM), and secure error/session/configuration management
- Develop and maintain metrics, dashboards, and reporting to track application security posture, threat trends, and remediation progress over time
- Support the development and management of Interagency Security Agreements (ISA), security playbooks, and incident response in accordance with current cybersecurity policies
- Collaborate with application developers, data engineers, systems engineers, and OIS to identify and mitigate vulnerabilities, and provide expert security consultation to development teams
- Assist in FedRAMP certification activities and the assessment/remediation of independent penetration testing results, as applicable
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field
- 15+ years of relevant IT/cybersecurity experience, providing technical and management leadership on major tasks or technology assignments (SME level)
Required:
- Certified Information Systems Security Professional (CISSP)
- Certified Cloud Security Professional (CCSP)
- Certified Information Security Manager (CISM)
- Certified Information Systems Auditor (CISA)
- Demonstrated expertise integrating security into a DevSecOps SDLC, including CI/CD security gates and automated security testing
- Hands-on experience implementing Zero Trust Architecture and applying NIST SP 800-53 controls and the NIST Cybersecurity Framework
- Proven experience leading vulnerability assessments, penetration testing, and threat modeling for enterprise applications
- Experience supporting the ATO lifecycle and managing POA&Ms, security artifacts, and evidence collection
- Experience generating Software Bill of Materials (SBOMs) and implementing software supply-chain security controls
- Familiarity with SIEM deployment, container/image hardening, and secure baseline configuration
- Experience in large-scale, multi-cloud federal environments and FedRAMP processes
- Strong analytical, problem-solving, written, and verbal communication skills, including the ability to brief senior Government stakeholders
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Lead Security Engineer in Suitland, MD vacancy
$166k - $253k
...and networking technology to the military in months, not years.ABOUT THE TEAMAnduril's Security Engineering team is looking for a Governance, Risk, and Compliance Engineering Lead to build the engineering core of our GRC program: the pipeline and tooling that turn Anduril...SuggestedFull timeWork experience placementImmediate start- ...and successful resolution of incidents across various business verticals Develop, mature and lead incident response functions and reporting of findings Lead technical security assessments (network, application, database) for existing and newly acquired businesses or services...Suggested
$140k - $200k
...to federal agencies across civilian, health, and national security environments. We apply modern capabilities, including AI/ML... ...prioritizing speed, ownership, and execution over bureaucracy. Lead Security Engineer Location: Suitland, MD (Hybrid) Terms: Full-time...SuggestedFull timeFor contractorsWork experience placementFlexible hours$165k - $195k
OverviewWanted: A lead test engineer with extensive experience DoW systems cybersecurity issues, certifications, and test and evaluation (T&E) processes. This position combines technical requirements with leadership and management of a small cyber team. The office for...SuggestedTemporary workWork at office- ...solutions using technology and an empowered workforce as an engine to drive its customers' missions. Our goal is to attract the... ...JOB OVERVIEW: MartinFed is seeking a highly experienced Lead Cyber Security Engineer to provide technical leadership in the design, implementation...SuggestedFull timeContract workWork at officeLocal area
$113k - $188k
...clients' business issues every day, applying a collection of security spectrum capabilities, including security strategy and... ...and breach response.We are seeking an experienced Cyber Engineer - Identity Management Lead to lead the design, assessment, and implementation of...Civilian ContractorFlexible hours$107.9k - $195.05k
Information Assurance Security Engineer (IASE) / Information Systems Security Engineer (ISSE)Location: Suitland, MDClearance: Active TS/SCILeidos is hiring a hands-on Information Assurance Security Engineer (IASE) / Information Systems Security Engineer (ISSE) to support...Full time$136k - $184k
Amazon’s Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the idea of searching for and uncovering undetected threat activities at petabyte scale. In this role, you will work alongside other Threat Hunting engineers to proactively...InternshipFlexible hoursShift work- ...business development efforts for upcoming opportunities with the U.S. Department of State’s Bureau of Diplomatic Security (DS) - Training - Technical Security Engineering. The Advisor will play a critical role in refining our understanding of the client landscape, validating...Contract workWork at office
- Washington DCTechnology - Security /RemoteThe Senior Security Engineer II will be responsible for designing, implementing, and maintaining security services that support our business. You will understand data and automation are important ingredients to our mission and...Temporary workWork at officeRemote workWork from homeFlexible hours
$178.4k - $226.7k
Corporate Services Security (CPSS) is the Amazon security team aligned with Finance & Global... ...work, we provide opportunities for our engineers to pursue projects they are passionate about... ...technical acumen with an ability to lead by influence and communicate clearly. Technically...InternshipFlexible hours$178.4k - $226.7k
...production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the... ...a common programming language- Experience as a mentor, tech lead or leading an engineering teamPreferred qualification - Experience...InternshipRemote workFlexible hours$159.3k - $202.4k
Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats...InternshipFlexible hours$320k - $405k
...Security Engineer, Corporate Security San Francisco, CA | Seattle, WA | New York City, NY | Washington, DC About Anthropic Anthropic... ...policy, and Claude-assisted triage of review queues Lead SaaS and identity governance, including third-party OAuth grants...Visa sponsorshipFlexible hours- ...Systems Solutions (ISS) is looking for a mid-level ISSE supporting the Office of Naval Intelligence. The Information Systems Security Engineer (ISSE) is responsible for engineering, implementing, and maintaining security solutions across information systems and networks...Work at office
$146k - $234k
ResponsibilitiesPeraton is seeking an Information Systems Security Engineer - Security Control Assessors (SCA) to support its Federal Strategic... ...to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT...Contract workShift work$98.4k - $160k
...grow, and make an impact. Join us!Job Description:The Network Security Engineer is responsible for supporting multiple security engineering... ...BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to...Full timeWork at officeFlexible hoursShift workDay shift- Job Description8+ years of hands-on experience with progressing skills in business analysis, business knowledge, testing lifecycle, testing expertise, testing techniques, testing management, architecture knowledge, technical solution design, and quality management.Excellent...
$112k - $209k
...our search for talented visionaries and your search for important and impactful work lead to the same place.The global law firm of K&L Gates LLP is seeking a Senior Security Engineer to join the firm. The Senior Security Engineer develops, automates, and enhances security...Full timeTemporary workWork experience placementLocal areaRemote work$140k - $180k
Job DescriptionECS is seeking a Senior Security Engineer to work in our Arlington, VA (hybrid) office. We are looking for a talented Senior Security Engineer who is passionate about building, securing, and improving modern technology environments. Strong candidates will...Work at office$135k - $200k
Washington, D.C.Information Security /Full-time /HybridA World-Changing CompanyPalantir builds the world’s leading software for data-driven decisions and operations. By bringing... ....The Role As a Senior Identity Security Engineer on Palantir's Identity Security team, you...Full timeWork experience placementWork at officeRemote workWork from homeRelocation packageShift work$120k - $130k
Job DescriptionEverforth ECS is seeking an Identity Security Engineer to work in our Washington, DC office / remote. The role is contingent... ...'s identity architecture against modern security frameworks, lead initiatives to reduce identity-based risk, and ensure that the...Work at officeRemote work$110k - $135k
...colleagues worldwide, all of whom are equity owners of the firm.Brown Advisory is currently seeking an Identity and Access Security Engineer to lead and mature the firm's identity security controls across Okta, Microsoft Entra ID, Active Directory, CyberArk, BloodHound...Full timeTemporary workFor contractorsH1bWorldwide$90k - $150k
...Changing CompanyPalantir builds the world’s leading software for data-driven decisions and... ...creative solutions to ambiguous security requirements. Our mission is deploying software... ...process.As a Forward Deployed Security Engineer, you support a variety of projects which...Full timeWork experience placementWork at officeRemote workWork from homeRelocation package$144.3k - $240.5k
...integration solutions that connect systems, data, and applications across complex environments. As a Lead Integration Engineer II, you will help deliver scalable, secure, and reliable integration capabilities that support business transformation and client impact. This...Contract work$152k - $258k
...small, highly motivated, and focused on engineering excellence. This organization is for individuals... ...Partner with Architects and Engineering Leads to bake compliance and privacy... ...— prioritize issues that represent real security or business risk over checkbox compliance...Permanent employmentTemporary work$125.12k - $187.68k
...nation’s most mission-critical facilities, secure environments, complex infrastructure, and... ...power and technology solutions through engineering expertise and smart systems integration.Why... ..., expertise, and trust.An opportunity to lead and build a business with the support of...Work at officeLocal areaFlexible hoursNight shift- ...project management, applications development, infrastructure, Cyber security, and enterprise content/data management services. We have... ...Washington, DCJob DescriptionThe Identity and Authentication Security Engineer/Admin will be responsible for technical support to security...Remote work
$138k - $166k
As a Sr. Security Engineer (Trellix) I, you’ll serve as the technical lead for the organization's endpoint security and data protection ecosystem, balancing day-to-day operational support with strategic cybersecurity engineering initiatives. You will work closely with security...Full timeLocal area- ...DescriptionThe essential functions/responsibilities for this role:Provide hands-on configuration, operation and monitoring of all IT network security devices to include firewalls, remote access appliances, and anti-virus solutions.Develop and implement proactive IT security...Temporary workRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Security Engineer. Be the first to apply!

