Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Engineer

Bechtel Global Corporation

Requisition ID:298943

  • Relocation Authorized:None
  • Telework Type:Full-Time Telework
  • Work Location: Glendale, AZ
Extraordinary teams building inspiring projects:

Since 1898, we have helped customers complete more than 25,000 projects in 160 countries on all seven continents that have created jobs, grown economies, improved the resiliency of the world's infrastructure, increased access to energy, resources, and vital services, and made the world a safer, cleaner place.

Differentiated by the quality of our people and our relentless drive to deliver the most successful outcomes, we align our capabilities to our customers' objectives to create a lasting positive impact. We serve the Infrastructure; Nuclear, Security & Environmental; Energy; Mining & Metals, and the Manufacturing and Technology markets. Our services span from initial planning and investment, through start-up and operations.

Core to Bechtel is our Vision, Values and Commitments. They are what we believe, what customers can expect, and how we deliver. Learn more about our extraordinary teams building inspiring projects in our Impact Report.

Project Overview:

Bechtel is refreshing its Continuous Threat Exposure Management (CTEM) and internal penetration testing capability from first principles. The team builds the capability itself: an agentic CTEM platform that continuously discovers, contextualizes, prioritizes, validates, and drives remediation of exposure across the enterprise; an agentic red-teaming platform that orchestrates autonomous attacker agents at scale; and the human-led exploitation work that keeps both grounded in reality.

The program is built agent-first. AI agents handle continuous discovery, correlation, enrichment, prioritization, and high-volume repeatable attack execution across the exposure surface. Our engineers do the complex, creative, context-dependent work machines cannot yet do - business logic flaws, chained vulnerabilities, social engineering, and novel attack paths - along with attacks on the AI systems we build and deploy that no legacy tooling covers: prompt injection, agent tool abuse, and MCP interface exploitation.

Job Summary:

This is a hands-on build-and-break role for someone early in their security career who thrives on figuring out how systems fail. Working under the direction of senior testers, you will find, validate, and exploit vulnerabilities in traditional and AI-based systems, and you will support the development and operation of the team's autonomous red-team agents - steering multi-agent campaigns and validating AI-generated findings against real-world exploitability.

You will also perform the nuanced exploitation work AI is fundamentally bad at: business logic flaws, social engineering, chained vulnerabilities, and novel attack vectors. Standard toolkit: commercial and open-source offensive security tooling covering web application testing, network assessment, exploitation, and cloud security; CTEM-stack tooling spanning CNAPP, ASM, vulnerability management, CMDB and asset intelligence, and third-party risk; plus emerging agentic tooling and the team's own platforms. Prior tool familiarity is not required - the ability to learn new tooling quickly is what matters.

Major Responsibilities:

  • Executes hands-on penetration tests of web applications, networks, cloud environments, and AI-based systems under the direction of senior penetration testers.
  • Supports the development and operation of the team's autonomous red-team agents; helps steer multi-agent campaigns and validates AI-generated findings against real-world exploitability.
  • Tests and validates the security controls that maintain the confidentiality, integrity, and availability of information systems.
  • Identifies and prioritizes threats to critical business assets and infrastructure, and provides stakeholders with practical recommendations to mitigate them.
  • Assists with security assessments across a range of issues including network traffic, firewalls, identity and directory services, and network access.
  • Triages scanner, tooling, and agent output; reproduces findings, evaluates exploitability and business impact, and documents clear reproduction steps.
  • Assists in converting test findings and requirements into end-to-end solutions that acknowledge technical, schedule, and cost constraints.
  • Helps align current security testing coverage with business requirements and emerging threats.
  • Supports risk assessments of applications and infrastructure and contributes findings-based recommendations to application and platform owners.
  • Participates in computer incident response team efforts and supports the investigation of cybersecurity incidents.
  • Researches current offensive security techniques, tooling, and threat actor tradecraft, and shares what is learned with the team.
Education and Experience Requirements:

  • Typically requires a Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Electrical/Computer Engineering, or a closely related field and 5 + years of relevant experience OR equivalent demonstrated experience through CTF participation, bug bounty contributions, self-directed security education, or a relevant junior security role.
  • 0-2 years of hands-on experience in cybersecurity, penetration testing, vulnerability or exposure management, security operations, or equivalent practical security training. University hires with strong self-directed learning portfolios (home lab, CTF write-ups, bug bounty reports, security projects on GitHub) are considered on par with formal experience. Equivalency is judged on demonstrated hands-on capability, not years of service - candidates with more years in adjacent technical disciplines qualify under the demonstrated-experience path.
Required Knowledge and Skills:

Core Skills

  • Network protocols - TCP/IP, DNS, and common enterprise identity and directory protocols.
  • Cryptography fundamentals - symmetric vs. asymmetric encryption, hashing, PKI, common weaknesses and misuse patterns.
  • Web technologies - cookies/sessions, authentication and session management fundamentals, OWASP Top 10 and the OWASP Testing Guide.
  • Vulnerability assessment - triage scanner output, prioritize findings, and evaluate exploitability and business impact; familiarity with CVSS, and awareness of exploitability signals such as EPSS and CISA KEV.
  • Cloud fundamentals - core compute, storage, identity, and networking concepts in at least one major cloud (AWS/Azure/GCP).
  • Operating systems - proficient Linux command line; Windows and Active Directory fundamentals.
  • Scripting & integration - proficient in Python or Bash: writing automation, consuming REST APIs, processing scanner and log data, building small tooling; fluency grows with the platform work.
  • Data literacy - comfort joining, deduplicating, and reasoning over findings and asset data from multiple sources.

Essential skills

  • Hands-on exploitation capability - ability to manually exploit vulnerabilities in a controlled lab, not just run scanners and read output.
  • Software systems literacy - comfort reading, extending, and debugging software systems that run automated discovery and testing: agent workflows, integrations, state, and failure modes.
  • Agentic tooling fluency - practical exposure to multi-agent orchestration: running a coding or security agent against a real task, chaining agents or tools, and recognizing where an orchestration breaks down.
  • Critical evaluation of AI-generated content - ability to assess whether AI output (exploit code, vulnerability analysis, prioritization decisions, agent actions) is technically sound; spot when an agent misread evidence or over-claimed a finding; judge where a human has to stay in the loop.
  • Adversarial thinking - demonstrated ability to approach systems from an attacker's perspective and identify attack paths not obvious from documentation.
  • Clear technical writing - document findings, reproduce steps, and communicate risk to technical and non-technical audiences.
  • Cross-team collaboration - ability to work findings to closure with infrastructure, cloud, application, and business-unit owners
  • Learning agility - track record of self-directed learning in fast-evolving domains; comfort with ambiguity and newtools.
Preferred Qualifications

  • Exposure or vulnerability management exposure - hands-on time with enterprise vulnerability scanning, remediation tracking, or risk-based prioritization.
  • CNAPP / cloud posture tooling - experience with cloud security posture, CIEM, container/Kubernetes security, or IaC scanning tooling.
  • Attack surface management - external attack surface discovery, asset attribution, or shadow IT identification.
  • Asset & CMDB data - CMDB or ITSM platforms, asset reconciliation, or asset data quality work.
  • Third-party & supply-chain risk - vendor risk assessment, SBOM analysis, or dependency/component vulnerability management.
  • Integration & automation - building API integrations, data pipelines, or workflow automation across security tools.
  • Exploit development fundamentals - buffer overflows, use-after-free, format strings, ASLR/DEP, and memory management concepts sufficient to evaluate exploit validity.
  • Protocol depth - enterprise identity and directory attack surfaces, credential attacks, and Linux and Windows privilege escalation pathways.
  • Identity & access protocols - OAuth 2.0 / OIDC, SAML, JWT flows and common misconfigurations.
  • Cloud security assessment experience - IAM misconfigurations and privilege escalation paths across AWS/Azure/GCP.
  • Adversary simulation experience - participation in red or purple team exercises, or breach-and-attack-simulation tooling.
  • CTF experience - HackTheBox, TryHackMe, PicoCTF, CTFtime-ranked competitions with demonstrated progression; write-ups showing independent problem-solving.
  • Bug bounty contributions - valid submissions (HackerOne, Bugcrowd, Intigriti); preference for logic flaws, auth bypass, or novel techniques over scanner-found issues.
  • Certifications (held or in active pursuit): eJPT, OSCP, CRTO, BSCP, CompTIA Security+, or a cloud security certification.
  • AI-assisted security workflow experience - using LLMs for exploit development, analysis, or automation; building or operating agentic tooling (coding agents, multi-agent workflows, MCP servers) for offensive or defensive tasks.
  • Cloud certification - AWS Cloud Practitioner, Azure Fundamentals, or equivalent.
  • Home lab - personal environment for practicing exploitation, running CTF challenges, or experimenting with security tools.
  • Open-source security contributions - security tooling, exploit development, or vulnerability research on GitHub.
Total Rewards/Benefits:

For decades, Bechtel has worked to inspire the next generation of employees and beyond! Because our teams face some of the world's toughest challenges, we offer robust benefits to ensure our people thrive. Whether it is advancing careers, delivering programs to enhance our culture, or providing time to recharge, Bechtel has the benefits to build a legacy of sustainable growth. Learn more at Bechtel Total Rewards

Diverse teams build the extraordinary:

As a global company, Bechtel has long been home to a vibrant multitude of nationalities, cultures, ethnicities, and life experiences. This diversity has made us a more trusted partner, more effective problem solvers and innovators, and a more attractive destination for leading talent.

We are committed to being a company where every colleague feels that they belong-where colleagues feel part of "One Team," respected and rewarded for what they bring, supported in pursuing their goals, invested in our values and purpose, and treated equitably. Click here to learn more about the people who power our legacy.

Bechtel is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity and expression, age,national origin, disability, citizenship status (except as authorized by law),protected veteran status, genetic information, and any other characteristic protected by federal, state or local law. Applicants with a disability, who require a reasonable accommodation for any part of the application or hiring process, may e-mail their request to View email address on click.appcast.io

Vacancy posted 22 hours ago
Similar jobs that could be interesting for youBased on the Cybersecurity Engineer in Arizona vacancy
  • $86.8k - $198k

     ...PKI Engineer, Senior The Opportunity: You know that the user is the last frontier for cybersecurity. It's where the perimeter is drawn, and securing identities is pivotal in the fight against cybercriminals. As a PKI specialist, you have the skills and experience... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Fort Huachuca, AZ
    5 days ago
  • $103.75k - $174.75k

     ...Cybersecurity Engineer III Phoenix, AZ, United States Charlotte, NC, United States (Hybrid) Job Description Joining Amex Tech means discovering and shaping your contribution to something big. Here, you can work alongside talented tech teams and build a unique... 
    Suggested
    Full time
    Work experience placement
    Work at office
    Local area
    Flexible hours
    Shift work

    American Express

    Phoenix, AZ
    3 days ago
  •  ...Senior Cybersecurity Engineer Avenue Technologies is seeking a Senior Cybersecurity Engineer to support technical, engineering, and program teams in a hands-on environment. What You Will Do # Support cybersecurity, information assurance, or systems security... 
    Suggested

    Avenue Technologies Defunct

    Tucson, AZ
    12 hours ago
  •  ...Sr. Cybersecurity Engineer Under the direction of the SOC Manager, the Sr. Cybersecurity Engineer is a senior technical role focused primarily on the engineering, operation, and optimization of Clayco's Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB... 
    Suggested
    For contractors
    Work experience placement
    Flexible hours

    CRG

    Phoenix, AZ
    4 days ago
  •  ...Senior Cybersecurity Engineer The Senior Information Security Engineer is tasked with overseeing the development and deployment of advanced security solutions across an organization's technology stack. They lead complex projects, such as building secure cloud environments... 
    Suggested

    Verra Mobility

    Mesa, AZ
    2 days ago
  • $80.2k - $111.3k

    Creates cyber-intelligence tools / methods and performs research and analysis in order to mitigate and eliminate high level data and cyber security risks. Designs, tests and implements state-of-the-art secure operating systems, networks, and database products. Conducts...
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Phoenix, AZ
    3 days ago
  •  ...multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response,...  ...irreplaceable collaboration and community of in-person work. As a SOC Engineer, you'll operate across incident response, platform quality,... 
    Work experience placement

    Tenex

    Scottsdale, AZ
    2 days ago
  • Senior Forescout Engineer, DoD Comply-to-Connect (C2C) Location: Sierra Vista, AZ / Remote Employment Type: Full-Time About SERVISS At SERVISS, we deliver cutting-edge cybersecurity and IT solutions to government and commercial clients, with a mission to secure systems... 
    Full time
    For contractors
    Remote work

    SERVISS LLC

    Sierra Vista, AZ
    2 days ago
  • $112k - $179k

    Cybersecurity Engineer Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise... 
    Contract work
    Temporary work
    Shift work

    ClearanceJobs

    Chandler, AZ
    3 days ago
  •  ...Sr Mechanical Engineer Talon is a small business engineering firm providing innovative, end-to-end, rapid-turn solutions to our...  ...for a variety of applications to include aircraft, ballistics, cybersecurity, motorsports, armor development, biological systems, missiles... 
    Work at office

    Talon Analytics

    Tucson, AZ
    1 day ago
  •  ...Job Description Job Description Elastic Engineer This role will support a DoD Cybersecurity program in a fast-paced, cutting-edge environment. This is a technical hands-on role in which you will be responsible for working within a multi-disciplined team to design... 
    Flexible hours

    Meridian Technologies

    Elgin, AZ
    2 days ago
  • $140k - $154k

    Robotics Cybersecurity Engineer (M.S. or Ph.D.) ID 2026-2490 Location US-AZ-Phoenix Practice Electrical Engineering and Computer Science Position Type Full-time Posted Salary Range USD $140,000.00 - USD $154,000.00 /Yr. Workplace Type On-Site About Exponent... 
    Full time
    Work experience placement
    Work at office
    Flexible hours

    Exponent

    Phoenix, AZ
    3 days ago
  • Description About the Role The Tier 2 Systems Engineer is responsible for basic or complex issues. Tier 2 will handle escalation calls...  ...is a rapidly growing IT Managed Service Provider delivering cybersecurity, private and public cloud hosting, backup and disaster... 
    Work at office
    All shifts
    Flexible hours
    Shift work

    Magna5 MS LLC

    Gilbert, AZ
    6 days ago
  •  ...they do. Help us succeed by doing your part as a Manufacturing Engineer. To learn more about what we do, who we are, and what we...  ...successful completion of a pre-employment drug screen is required. Cybersecurity and Compliance: All employees are required to comply with... 
    Permanent employment
    Casual work
    Work at office
    Immediate start

    RADIUS AEROSPACE, Inc.

    Chandler, AZ
    2 days ago
  •  ...Systems Security Engineer Location: Phoenix, AZ Company Stage of Funding: Early-Stage Autonomous Robotics & Defense Technology...  ...preparation, security documentation, and alignment with federal cybersecurity frameworks Establish continuous monitoring, incident... 
    Work at office

    Recruiting from Scratch

    Phoenix, AZ
    12 hours ago
  •  ...Sales Customer Engineer (CE) TENEX.AI is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider...  ...for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and... 
    Remote work

    TENEX.AI

    Scottsdale, AZ
    5 days ago
  • $105.4k - $207.8k

     ...this role ends on 12/31/2026. Work you'll do As a Senior Engineering Management Specialist on the Cyber Defense & Resilience...  .... Preferred: ~ Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, Mathematics... 

    Deloitte LLP

    Arizona
    21 days ago
  • $186.2k - $232.75k

     ...Sr. Sales Engineer We strongly prefer candidates who are currently located in or near the designated job location. Candidates outside...  ...edge, and cloud. Cohesity helps organizations defend against cybersecurity threats with comprehensive data security and management... 
    Hourly pay
    Full time
    Work at office
    Relocation
    2 days per week
    3 days per week

    Cohesity

    Phoenix, AZ
    3 days ago
  •  ...Production Support Engineer Opportunity We have a new Production Support opportunity with one of our BFS clients, AMEX. We need...  ...A background in security, particularly in authentication and cybersecurity, is advantageous. Disaster Recovery and Resiliency... 

    Argyle Infotech

    Phoenix, AZ
    12 hours ago
  • $134.5k - $265.1k

     ...understands the unique challenges and opportunities businesses face in cybersecurity. Deloitte's Cyber team helps our clients navigate the ever-...  ...31/2026. Work you will do: As a Cyber Forward Deployed Engineer (FDE) Sr Consultant, you will drive delivery of cybersecurity... 
    Visa sponsorship

    Deloitte LLP

    Arizona
    5 days ago
  •  ...), one of the fastest growing U.S. companies, specializes in Cybersecurity Operations, IT/Digital Modernization, Emerging Technology, and...  ...soar!    A3T is seeking a  Systems Administrator/Systems Engineer  to support our critical customer mission.  If you are experienced... 
    Full time
    Contract work
    Temporary work
    Work at office
    Immediate start

    Agil3 Technology Solutions (A3T)

    Fort Huachuca, AZ
    more than 2 months ago
  • $86.8k - $165.2k

     ...the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today’s mission and stay ahead...  ...propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon... 
    Temporary work
    Work experience placement
    Worldwide
    Flexible hours
    Day shift

    Prattwhitney

    Tucson, AZ
    2 days ago
  • $97.5k - $138k

     ...Senior Process Automation Engineer Requisition ID: 146232 Location: Morenci, AZ, US, 85540 Category: Engineering Services...  ...to Process Automation, and direct Industrial Control System cybersecurity practices.In this role, you lead and manage others by providing... 
    Shift work
    Day shift

    Freeport-McMoRan Inc.

    Morenci, AZ
    1 day ago
  • $65k - $185k

     ...~ Wellness resources Job Title: Protection & Control Engineer I, II, III Employment Type: Full-Time, Salary-Exempt (40...  ...industry. The company provides electrical engineering, controls, cybersecurity, commissioning, testing, quality inspections, and... 
    Full time
    For contractors
    Remote work
    Work from home
    Flexible hours

    ECNS Global Consultants PLLC

    Mesa, AZ
    19 days ago
  •  ...Lead and support deployment of system enhancements and modernization initiatives for Chinook program Collaborate with cybersecurity, network engineering, and software development teams to ensure system compliance and performance Participate in security audits, incident... 
    Contract work

    Jobtailor

    Phoenix, AZ
    2 days ago
  •  ...ITSM Remedy, Splunk, Dynatrace, PowerShell/Unix scripting, cloud experience, and other CI/CD DevOps tools. Solid understanding of cybersecurity frameworks, threat detection, and incident response. Preferred Skills & Qualifications CISSP or other equivalent Information... 
    Permanent employment
    Immediate start
    3 days per week

    Artech

    Chandler, AZ
    3 days ago
  •  ...first digital generations, and today we deliver award-winning cybersecurity, online privacy, identity protection and financial wellness...  ...security framework obligations into prioritized, testable tasks for engineering and platform teams. Define concrete technical control... 
    Flexible hours

    Gen Digital Inc

    Tempe, AZ
    3 days ago
  • $100k - $150k

     ...-growing IT solutions provider delivering managed services across networking, systems, cloud, and cybersecurity. They are looking to bring on a Network & Systems Engineer to lead complex infrastructure, networking, and cloud initiatives across both internal and client... 
    Weekly pay
    Full time
    Summer work
    Phoenix, AZ
    more than 2 months ago
  •  ...Genesys Voice Location: Phoenix AZ Software engineer, working in a lab environment, who integrates, develops and evaluates new technologies and capabilities for a more powerful and conversational UX on our new voice response platform. Key Responsibilities Install... 

    InterSources

    Phoenix, AZ
    12 hours ago
  • $95.9k - $159.9k

     ...Regulatory Affairs, Quality Assurance, R&D, Clinical, and Process Engineering to support the investigation, documentation, and resolution...  ...-focused risk assessments related to product anomalies, cybersecurity vulnerabilities, emerging technologies, and postmarket trends... 
    Worldwide

    RXinsider

    Arizona City, AZ
    23 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Engineer. Be the first to apply!