Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Engineer

Clario, Inc.

Cybersecurity Engineer

The Cybersecurity Engineer is a hands-on technical role responsible for strengthening Clario's product and enterprise security posture through proactive security assessments, threat modeling, and secure design practices. This individual will partner closely with engineering, architecture, DevOps, and product teams to identify, assess, and mitigate security risks throughout the Software Development Lifecycle (SDLC). The ideal candidate possesses deep expertise in penetration testing, threat modeling, application security, and secure development practices, with the ability to translate complex security findings into actionable remediation guidance. This role requires a security professional who can think like an attacker, validate security controls through manual and automated testing, and influence product teams to build resilient, secure solutions by design.

In addition to conducting security assessments, the Cybersecurity Engineer will help mature Clario's DevSecOps capabilities by integrating security validation, testing, and governance into development pipelines and engineering workflows. Success in this role requires strong technical skills, effective communication, and the ability to work collaboratively across the organization to drive measurable security improvements.

Clario, part of Thermo Fisher Scientific, is seeking a highly skilled Cybersecurity Engineer to strengthen our Product Security and DevSecOps capabilities through a combination of penetration testing, threat modeling, secure design reviews, and security automation. In this role, you will conduct comprehensive security assessments across web applications, APIs, cloud environments, and supporting infrastructure to identify vulnerabilities and validate security controls. You will partner closely with Product, Engineering, Architecture, and DevOps teams to perform threat modeling exercises, review security architectures, and embed security-by-design principles throughout the Software Development Lifecycle (SDLC). The ideal candidate will have strong expertise in application security, threat modeling frameworks such as STRIDE or PASTA, secure development practices, and DevSecOps methodologies, with hands-on experience integrating security testing into CI/CD pipelines. This role also involves developing security automation, supporting vulnerability management and remediation efforts, mentoring engineering teams, contributing to security standards and governance initiatives, and driving continuous improvement across Clario's Product Security program. Success in this position requires the ability to think like an attacker, communicate risk effectively to technical and business stakeholders, and leverage modern security practices, cloud security knowledge, and automation technologies to build scalable, resilient, and secure products.

What We Offer

  • Competitive compensation
  • Provident fund and medical insurance
  • Engaging employee programs and local events
  • Modern office spaces and remote work flexibility

What You'll Be Doing

  • Conduct comprehensive penetration testing of web applications, APIs, cloud environments, and supporting infrastructure to identify security vulnerabilities and validate security controls.
  • Lead threat modeling exercises for new and existing products, partnering with engineering and architecture teams to identify risks, attack paths, and appropriate mitigations early in the SDLC.
  • Perform secure design and architecture reviews to ensure products are built with security-by-design principles and aligned with industry standards and best practices.
  • Evaluate application, cloud, and infrastructure security controls and provide actionable recommendations to reduce risk and improve overall security posture.
  • Work closely with development teams to prioritize, track, and remediate security findings while promoting secure coding practices.
  • Integrate security testing and validation into CI/CD pipelines, enabling automated security checks and continuous risk identification throughout the development lifecycle.
  • Develop and maintain security tooling, scripts, and automation capabilities that improve the efficiency and effectiveness of security assessments.
  • Collaborate with Product, Engineering, DevOps, and Architecture teams to embed security requirements into product planning, design, development, and deployment processes.
  • Support vulnerability management activities, including validation, risk assessment, remediation guidance, and verification of fixes.
  • Contribute to the development and maintenance of security standards, secure development guidelines, and product security processes.
  • Stay current on emerging threats, attack techniques, vulnerabilities, and security technologies, applying that knowledge to improve Clario's security capabilities.
  • Provide technical guidance and mentorship to engineering teams on secure design, threat mitigation, and security best practices.
  • Assist with security audits, compliance initiatives, and evidence collection activities related to product and application security controls.
  • Drive continuous improvement of Clario's Product Security and DevSecOps programs through innovation, automation, and the adoption of industry-leading practices.

What We Look For

  • Bachelor's degree in Computer Science, Cybersecurity, Information Security, Software Engineering, or a related technical discipline, or equivalent practical experience.
  • 5+ years of experience in Cybersecurity, Application Security, Product Security, Security Engineering, or a related field.
  • Demonstrated experience performing manual and automated penetration testing of web applications, APIs, cloud environments, and supporting infrastructure.
  • Strong experience conducting threat modeling and security architecture reviews using established methodologies such as STRIDE, PASTA, ATT&CK, or equivalent frameworks.
  • Solid understanding of secure software development practices, common attack techniques, and security vulnerabilities, including the OWASP Top 10 and API Security Top 10.
  • Experience identifying, validating, and communicating security risks to technical and non-technical stakeholders.
  • Proficiency in one or more programming or scripting languages such as Python, Java, JavaScript, C#, PowerShell, Go, or similar languages.
  • Experience working within Agile development environments and integrating security practices into the SDLC.
  • Strong understanding of DevSecOps principles and experience integrating security tools into CI/CD pipelines.
  • Excellent analytical, problem-solving, communication, and collaboration skills.
  • Ability to independently drive security initiatives while partnering effectively with Engineering, Product, Architecture, and Operations teams.
  • Experience with cloud security assessments and securing environments in AWS, Azure, or Google Cloud Platform.
  • Experience with modern application architectures including microservices, APIs, containers, Kubernetes, and serverless technologies.
  • Familiarity with Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Container Security, and Infrastructure-as-Code security tools.
  • Experience developing security automation, custom security tooling, or pipeline integrations to improve security coverage and efficiency.
  • Knowledge of secure architecture patterns, identity and access management, cryptography, and zero-trust security concepts.
  • Experience supporting regulatory, compliance, or audit requirements in highly regulated industries such as healthcare, life sciences, or financial services.
  • Security certifications such as:
    • OSCP (Offensive Security Certified Professional)
    • OSWE (Offensive Security Web Expert)
    • GWAPT (GIAC Web Application Penetration Tester)
    • GWEB (GIAC Web Application Defender)
    • CISSP (Certified Information Systems Security Professional)
    • CCSP (Certified Cloud Security Professional)
    • Azure, AWS, or GCP Security Certifications
  • A security-minded engineer who can think like an attacker while partnering with developers to build secure solutions.
  • Passionate about identifying and mitigating security risks before they become vulnerabilities.
  • Comfortable balancing hands-on technical work with strategic security guidance and influence.
  • Curious, self-motivated, and committed to continuously learning emerging technologies, attack techniques, and industry best practices.
  • An advocate for Security-by-Design who can drive security improvements without slowing product innovation.
  • Skilled at translating complex security concepts into practical recommendations that enable business and engineering outcomes.
  • Focused on automation, scalability, and continuous improvement to enhance both security effectiveness and developer experience.
  • Building or operating Product Security programs.
  • Leading enterprise-wide threat modeling initiatives.
  • Conducting red team or adversarial security assessments.
  • Creating security standards, secure coding guidance, or developer training programs.
  • Leveraging AI-assisted security analysis, remediation workflows, or security engineering automation.

At Clario, a part of Thermo Fisher Scientific, our purpose is to transform lives by unlocking better evidence. Whether you're advancing clinical science, building innovative technology, or supporting our global teams, your work helps bring life-changing therapies to patients faster.

The Department Head has the discretion to hire personnel with a combination of experience and education, which may vary from the above listed qualifications.

EEO Statement Clario is an equal opportunity employer. Clario evaluates qualified applicants without regard to race, color, religion, gender, national origin, age, sexual orientation, gender identity or expression, protected veteran status, disability/handicap status, or any other legally protected characteristic.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity Engineer in United States vacancy
  • $160k - $180k

     ...Job Details: Perform security engineering, develops security architecture artifacts, oversees penetration testing and security...  ...hardware and software updates or upgrades Deploy and operate cybersecurity tools Lead performance of penetration testing and security... 
    Suggested
    Full time
    Contract work
    For contractors
    Work experience placement

    The Bison Group

    Colorado Springs, CO
    15 hours ago
  •  ...Job description   We are looking for energetic cybersecurity engineers to harden and accredit digital products for our defense and federal customers. We’re using our human-centered design approach to modernize and secure their legacy IT systems and replace them with... 
    Suggested
    Full time

    Bluestonelogic

    Maryland
    15 hours ago
  • $85k - $125k

     ...As a cybersecurity engineer you will work side-by-side with clients that are changing the world across industries such as healthcare, manufacturing, finance, utilities, government, outdoor recreation, and everything in between! You will become a subject matter expert... 
    Suggested
    Remote job
    Full time
    Contract work
    Work at office
    Local area
    Flexible hours

    Rule4

    Boulder, CO
    15 hours ago
  • $148.75k - $201.25k

     ...WILL REQUIRE U.S. CITIZENSHIP. Role Description:  As a cybersecurity SME within Delivery at Defense Unicorns, you will be...  ...within the existing DoD processes, you will also work with other engineers to find the best paths forward and contribute to Unicorn mission... 
    Suggested
    Remote job
    Full time
    For contractors
    Local area
    Home office
    Flexible hours

    Defense Unicorns

    United States
    15 hours ago
  • $85k - $145k

     ...Saalex Corporation  is seeking multiple  Cybersecurity Engineer I in Tidewater, VA and San Diego, CA.  Saalex Corp., is an Engineering and Information Technology Services company with a focus on Test Range Operations and Management, Engineering and Logistics Services,... 
    Suggested
    Full time
    Contract work
    Temporary work
    Local area
    Flexible hours

    Saalex

    San Diego, CA
    15 hours ago
  • $114.9k - $151.3k

     ...Join us to drive positive, lasting change that moves missions and the government forward!   The Senior Cyber Security Engineer will design, develop, and maintain reusable frameworks, libraries, APIs, and reference implementations for zero trust authentication... 
    Full time
    Live in
    Work at office
    Local area

    Accenture Federal Services

    Washington DC
    15 hours ago
  • $62 - $82 per hour

     ...Description Job Title : Cybersecurity Engineer 3 Work Type : Onsite Location : Richmond, VA 23219 Start Date : 08/31/2026 End Date : 06/30/2027 Industry Category : Information Technology / Government Employment Type : 10... 
    Hourly pay
    Full time
    Contract work

    Tomorrow Hire

    Remote
    15 hours ago
  •  ...We are seeking an experienced and adaptable   Cybersecurity Enginee r to support and mature   Csquare’s   security program. This role...  ...and multidisciplinary, requiring close collaboration across engineering, infrastructure, and operations teams. The successful candidate... 
    Full time

    C Square

    Remote
    15 hours ago
  •  ...Who We’re Looking For (Position Overview): The Cybersecurity Engineer designs, implements, maintains, and improves enterprise security controls across cloud, network, endpoint, and identity environments. This role supports threat detection, incident response, vulnerability... 
    Full time

    Spry Methods, Inc.

    United States
    15 hours ago
  •  ...Role   Redhorse transforms the way government uses data and technology. To support this mission, we are seeking a Senior Cybersecurity Engineer to protect and defend critical enterprise and mission IT infrastructures. In this role, you will be at the forefront of... 
    Full time
    Contract work

    Redhorse Llc

    Remote
    15 hours ago
  •  ...Information Systems Solutions, Inc, has an immediate opening for a Cybersecurity Engineer II to join our rapidly growing team. The Cybersecurity Engineer II will provide cyber services and solutions, technical support, and management support for ATC Division Programs... 
    Full time
    Immediate start

    Information Systems Solutions, Inc.

    Remote
    15 hours ago
  • $125.93k - $167.91k

    Position Overview: The Senior Cybersecurity Engineer will support the design, implementation and monitoring of the security controls and solutions throughout the HomeServe business as well as ensuring appropriate levels of documentation are produced and maintained... 
    Full time

    Home Serve Inc

    Remote
    15 hours ago
  • $170k - $190k

     ...and consulting services to our clients. Equipped with elite engineering and dynamic innovation, we empower IT executives and their organizations...  ...of the people around us.   JOB SUMMARY:    T he  Cybersecurity Engineer   II I   serves as the senior technical authority... 
    Full time
    Live in
    Work at office
    Local area
    Flexible hours

    Trace3

    Remote
    15 hours ago
  • $144.5k - $207.6k

     .... To learn more visit: You will... - Work directly with engineering teams as the main point of contact for product security. -...  ...authentication. Qualifications: - Minimum of 5 years in cybersecurity, specifically focusing on product security for embedded systems... 
    Remote job
    Full time
    Work at office
    Work from home
    Flexible hours

    Waabi

    Remote
    15 hours ago
  • $150.03k - $185.02k

     ...Cybersecurity Engineer (Secret Clearance) Who We Are: ThinkTek LLC is a fast-growing Certified SBA 8(a) and Service-Disabled Veteran-Owned Small Business (SDVOSB) company. We specialize in providing management and technology consulting services to support the business... 
    Full time
    Contract work

    Thinktek

    Remote
    15 hours ago
  •  ...Job Summary We are seeking an experienced Senior Systems Engineer – Data Security to support advanced cybersecurity and data protection initiatives in highly regulated environments. This role focuses on designing and enforcing secure data retention, identity, and access... 
    Full time

    Vets Hired

    Chantilly, Loudoun County, VA
    15 hours ago
  •  ...technology certifications, and robust employee recognition and appreciation programs. We are seeking a skilled and experienced Cybersecurity Engineer III to provide critical Cybersecurity (CS) engineering support across various systems, ensuring the security, integrity,... 
    Full time
    For contractors
    Local area

    Directviz Solutions, Llc

    Jacksonville, FL
    15 hours ago
  • $100k - $200k

     ...bring together some of the most curious minds in networking and cybersecurity. ANS was founded to disrupt the status quo . For over 20 years, our team provides expertise in network, system engineering and both offensive and defensive cybersecurity operations.... 
    Full time
    Temporary work
    Local area
    Flexible hours

    Applied Network Solutions

    San Antonio, TX
    15 hours ago
  •  ...About Apollo Apollo Information Systems is a cybersecurity services company delivering comprehensive security and compliance programs...  ...a hub in Denver. Position Overview: The Cybersecurity Engineer is a hands-on practitioner who architects, implements, and manages... 
    Remote job
    Full time
    Temporary work
    Local area
    Immediate start
    Home office

    Apollo Information Systems

    United States
    15 hours ago
  • $160k - $170k

     ...Virginia based integrated solutions firm that specializes in Cybersecurity, Cloud and Digital Services to the Public Sector. Our team solves...  ...Platinum Technologies is seeking a Senior Cybersecurity Engineer (Splunk) to join our company. We are seeking a highly technical... 
    Full time

    Platinum Technologies

    Remote
    15 hours ago
  •  ...About the Position We're looking for a Cybersecurity Engineer to help us mature our vulnerability management program. You'll join our Cybersecurity team, a skilled group of programmers and security experts dedicated to keeping the firm safe.  Vulnerability management... 
    Full time

    Jane Street

    Remote
    15 hours ago
  •  ...SSI is seeking a highly skilled Cybersecurity Engineer to provide blue team, cybersecurity engineering support for the research, testing, and development of advanced military systems. As cyber threats continue to rise, integrating robust security measures from... 
    Full time
    Contract work
    Temporary work

    Storage Strategies

    Remote
    15 hours ago
  • $86.4k - $176.2k

     ...Join us to drive positive, lasting change that moves missions and the government forward!   Job Description The Cybersecurity Engineer will design, implement, and manage cybersecurity solutions to ensure compliance with federal requirements, integrating security... 
    Full time
    Live in
    Work at office
    Local area

    Accenture Federal Services

    United States
    15 hours ago
  • **CONTINGENT UPON CONTRACT AWARD** Overview: Job Title: Cybersecurity Engineer – Senior Location : Washington, DC (Due to the nature of the work and contract requirements, U.S. Citizenship is required. )   Description: C3EL is seeking a Senior... 
    Full time
    Contract work

    C3el

    Washington DC
    15 hours ago
  •  ...we take on exciting challenges for NASA's pursuits in deep space exploration. We have an exciting opportunity for a Cybersecurity Engineer to join our JETS II contract team at NASA Johnson Space Center in Houston, TX . If selected you will: Provide... 
    Full time
    Contract work
    Temporary work
    Relocation package

    Mclaurin Aerospace

    Houston, TX
    15 hours ago
  • $115k

     ...competencies, collaborate with diverse professionals, share knowledge and enjoy a rewarding career.    We are looking for a Cybersecurity Engineer to join our Corporate IT Team in NYC! ROLE AND RESPONSIBILITIES: The Cybersecurity Engineer is a hands-on technical... 
    Full time
    Remote work

    Mettel

    New York, NY
    15 hours ago
  •  ...First Merchants Bank is seeking a Cybersecurity Engineer to join our team! This position will be responsible for protecting technological assets by establishing and enforcing system and network access controls. This role focuses on the delivery of core security improvements... 
    Full time
    Work experience placement
    Work at office
    Flexible hours
    2 days per week

    First Merchants Brand

    Remote
    15 hours ago
  • $125k - $148k

     ...Risk Analyses, OPSEC Plans, and other required system security engineering artifacts. Support RMF Authorization and Accreditation (A&A) activities, ensuring compliance with DoD and Air Force cybersecurity policies. Manage system user accounts, ports/protocols, PKI... 
    Full time
    Temporary work
    For contractors

    Kihomac

    United States
    15 hours ago
  •  ...Wellhead position and is located in Houston, TX Hybrid: 4 days in office; 1 day working from home    JOB SUMMARY: The Cybersecurity Engineer is responsible for executing and supporting key cybersecurity programs and initiatives across the organization. This role... 
    Full time
    Work at office
    Work from home

    Cactus Wellhead

    Remote
    15 hours ago
  • $53.33 - $88 per hour

     ...government security clearance if required Are you passionate about cybersecurity, risk management, and protecting critical systems from evolving threats? PEMCCO is seeking a Cybersecurity Engineer to support the implementation, assessment, and maintenance of... 
    Hourly pay
    Full time
    Contract work
    Work at office
    Local area

    Pemcco, Inc.

    Remote
    15 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Engineer. Be the first to apply!