Security Engineering III
$146kExpedia Group
At Expedia Group, we help travelers explore the world, one journey at a time. As a global travel company powered by passionate people, trusted partnerships, and leading technology, we connect travelers, partners, and advertisers through our consumer brands, B2B network, and travel advertising business.
Here, you'll do meaningful work that helps millions of people discover, book, and experience travel with more ease, confidence, and joy. Our five Behaviors-Traveler First, Think Big, Operate with Excellence, Ownership Mindset, and Succeed Together-help foster a supportive environment where people can grow their careers and have the flexibility, benefits, and support to do their best work. Join us and build for travelers everywhere.
Security Engineer III
Our Technology Team partners with teams across Expedia Group to create innovative products, services, and tools to deliver high-quality experiences for travelers, partners, and our employees. A singular technology platform powered by data and machine learning provides secure, differentiated, and personalized experiences that drive loyalty and traveler satisfaction. Our Product Security organization is on a mission to transform how cybersecurity is built and delivered at Expedia Group. We are building the security infrastructure, platforms, and services that empower our engineering teams to ship products faster — with security embedded by default, not bolted on after the fact. We believe that great security accelerates product velocity, and we are looking for a deeply technical, hands-on individual contributor who will help us architect and realize that vision at scale. If you are passionate about reimagining what a modern product security organization looks like — and have the technical depth to make it real — this role is for you. In this role, you will:Drive shift-left security practices by embedding security requirements and controls throughout the software development lifecycle, from design through deployment.
Integrate, maintain, and continuously improve security tooling and automation across CI/CD pipelines, including capabilities such as SAST, DAST, SCA, dependency scanning, and software supply chain protections.
Configure, tune, and triage security tools and vulnerability management platforms to reduce false positives, improve signal quality, and strengthen remediation workflows for developers.
Partner closely with product, engineering, platform, privacy, compliance, infrastructure, and security stakeholders to identify, assess, and remediate application security risks across the services and components you support.
Conduct threat modeling, security code reviews, and system design reviews, including low-level design, API design, and data modeling, for new and existing features and services.
Safely integrate and operate AI/ML-enabled solutions that improve security outcomes, applying familiarity with AI-driven systems, tools, or workflows and applying AI/ML concepts to real world products.
Minimum Qualifications:
Bachelor’s degree in Computer Science or a related technical field; or equivalent related professional experience.
5+ years of relevant professional experience.
Experience in application security, product security, DevSecOps, or security engineering supporting modern CI/CD pipelines, cloud-native services, and secure software delivery practices across multiple services or domains.
Practical experience with software supply chain security, including areas such as SBOMs, signing or attestation, secure build pipelines, and using SAST, DAST, and SCA to protect against open-source and supply chain risks.
Practical experience operating and tuning vulnerability management and security tooling platforms (e.g., Qualys, SCA, Wiz, GHAS, Ox security, integrating them with CI/CD pipelines (e.g., GitHub Actions, Jenkins, Spinnaker), ticketing systems, and developer workflows, and using modern programming languages such as Java or Python to automate security outcomes.
Preferred Qualifications:
Experience applying AI/ML and agentic AI techniques to vulnerability management, including autonomous triage workflows, intelligent prioritization, classification, enrichment, or AI-assisted security tooling that improves detection, prioritization, and remediation effectiveness.
Familiarity with AI-driven systems, tools, or workflows and applying AI/ML concepts to real-world products, including a working understanding of AI/ML security implications such as the OWASP LLM Top 10 and basic penetration testing concepts.
Demonstrated success enabling developers on secure development practices and influencing secure engineering decisions within a team, product area, or domain through practical guidance, standards, and playbooks.
Strong communication skills with the ability to distill complex security topics for broad technical and non-security audiences, operate effectively in fast-paced environments, and navigate ambiguity with sound judgment.
Proven impact reducing vulnerability backlogs and improving remediation SLAs through automation, tool tuning, stronger signal-to-noise ratios, and data-driven operational improvement.
Starting pay for this role will vary based on multiple factors, including location, available budget, and an individual’s knowledge, skills, and experience. Pay ranges may be modified in the future.
Benefits and perks
Expedia Group offers benefits and perks designed to support employees and their families, including medical, dental, and vision coverage, paid time off, an Employee Assistance Program, wellness and travel reimbursement, travel discounts, and International Airlines Travel Agent Network (IATAN) membership. Learn more about life at Expedia Group at .
Accommodation requests
Expedia Group is committed to providing an inclusive and accessible recruiting experience. If you need an accommodation or adjustment due to a disability during the application or recruiting process, please submit a request at .
About Expedia Group
Expedia Group includes three flagship consumer brands - Expedia, Hotels.com, and Vrbo - along with a leading B2B travel business and travel advertising offerings. Across our brands and business, we help travelers explore the world with confidence and ease.
Important notice
Employment opportunities and job offers at Expedia Group will always come from Expedia Group's Talent Acquisition and hiring teams. Never share sensitive personal information unless you are confident of the recipient. Expedia Group does not extend job offers via email or messaging tools to individuals with whom we have not made prior contact. Our email domain is @expediagroup.com. The official place to find and apply for roles is .
Equal Opportunity
Expedia is committed to creating an inclusive work environment with a diverse workforce. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other characteristic protected by law. This employer participates in E-Verify. The employer will provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS) with information from each new employee's I-9 to confirm work authorization.- ...solutions, tested leadership, and trusted results to enable national security missions worldwide.Job Description*** This position is... ...contract award ***OverviewSOSi is seeking a Cybersecurity Security Engineer III to support cybersecurity engineering activities in alignment...SuggestedContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$119k - $218.3k
Position Summary Deloitte’s Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM...SuggestedRemote work- ..., and trusted results to enable national security missions worldwide.Job DescriptionOverviewSOSi is seeking a Penetration Tester III to support proactive cyber defense activities... ...through coordination with security engineering, vulnerability management, and incident response...SuggestedContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$105.52k - $115k
.... Learn more about American UniversityDepartment: Information Security EngineeringTime Type: Full timeJob Type:RegularFLSA Status:ExemptWork... ...Division.Job Description:Summary:The Cyber Security Engineer III plays a critical role in safeguarding the university’s information...SuggestedFull timeWork at officeLocal areaRemote workMonday to FridayNight shiftAfternoon shift- ...solutions, tested leadership, and trusted results to enable national security missions worldwide.Job Description*** This position is... ...contract award ***OverviewSOSi is seeking a Cyber Intelligence Analyst III to support cyber threat intelligence activities in alignment...SuggestedContract workCasual workWork at officeRemote workWorldwide
- ...The Cyber Security Specialist II/III supports cybersecurity engineering and compliance execution in a NAVSEA Program Office Support role. This role helps implement controls, monitor security posture, and remediate vulnerabilities across supported systems. This position...Full timeWork at office
$75.2k - $158.1k
Job Title: Endpoint Security Engineer IIIJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *The Opportunity:CACI has an exciting opportunity...Long term contractContract workWork experience placementLocal areaFlexible hours$102.5k - $188.9k
...with resilience, grow with confidence, and proactively manage to secure success.Splunk plays a critical role in helping organizations... ...respond to cyber threats across complex environments. As a Splunk Engineer/Architect, you will design, implement, and optimize Splunk...- ...Cyber Network Forensic Analyst III, TS/SCI Raytheon Technologies provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity...Immediate startRemote work
- ...solutions using technology and an empowered workforce as an engine to drive its customers' missions. Our goal is to... ...JOB OVERVIEW:MartinFed is seeking a highly experienced Security Operations Center (SOC) Engineer III to provide advanced cybersecurity monitoring,...Contract workWork at officeLocal area
$140k - $170k
...Security & Compliance Engineer Join to apply for the Security & Compliance Engineer role at Nominal. About Nominal Nominal is building the software... ...U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C...Permanent employmentH1bVisa sponsorshipWork visa$107.93k - $188.9k
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert...Remote work$99k - $225k
...implementing and operating next‑generation security solutions for government and commercial... ...challenges. The role expands from engineering solutions to protect data and networks,... ...Ability to obtain a DoD 8570 IAT Level III Certification such as SecurityX, CASP+,...Full timeContract work$92.3k - $166.85k
...Description Leidos is seeking a skilled and driven Endpoint Security as a Service (ESS) Engineer and Systems Administrator to join our team at the... ...: TS/SCI clearance and DOD 8570 IAT Level III certification. Hands-on experience with RedHat Enterprise...Local areaImmediate startRemote work$152k - $258k
...Sr. Security Engineer - GRC Fintech & Financial Services New York, New York, United States; Palo Alto, California, United States; Washington,... ...ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C....Permanent employmentTemporary work$99k - $225k
Information System Security EngineerThe Opportunity:You will lead cybersecurity engineering efforts across the full system lifecycle for DoD collateral, SAP and SCI environments... ...take a polygraph examBachelor’s degreeIAM Level III certification including CISSP, GSLC, or CISMNice...Full timeContract workPart timeWork at officeLocal areaRemote work$104k - $166k
ResponsibilitiesPeraton is seeking an Information Systems Security Engineer (ISSE) to support our customer onsite in Washington D.C. Responsibilities... ...to leadership.Must have a current DoD 8570.1-M IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP)Peraton...Contract workShift work$131.3k - $237.35k
...in cyber defense, logistics optimization, security operations, and decision intelligence. We... ...that keep our nation secure. Ready to engineer solutions that matter? The Digital Sector... ...of the following IAT II, IAM I, II or III or IASAE I, II or III: Other preferred certifications...Full time$165k - $200k
...contractor, is seeking a highly experienced Information Systems Security Engineer (ISSE) to support RHEL and Windows systems in a High... ...systems, including command-line validationDoD 8140 IAT Level III-equivalent certification (e.g., SecurityX, CISSP, CCNP Security...For contractorsRelocation package$170k - $210k
GovCIO is currently hiring for a SME Information Systems Security Engineer to lead cybersecurity, compliance, and risk management activities supporting... ...& ExperienceCertifications: DoD 8570/8140 IASAE Level II or III (e.g., CISSP, CASP+, CSSLP).Expert-level experience focused on...Currently hiring$108.8k - $163.2k
Title:Information System Security Engineer (ISSE)Belong. Connect. Grow. with KBR!KBR’s National Security Solutions team provides high-end engineering... ...clearance with SCIMust have a DoD 8570.1-M/8140 IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP)...Full timeTemporary workLocal areaRelocation package$230k - $342k
As a Sr. UC Engineer III, you'll serve as a technical authority for voice, video, and collaboration platforms, contributing immediately as... ...communications engineering support for a highly visible, security-sensitive customer.We know that you can’t have great technology...Full timeLocal areaImmediate start$135k - $216k
...self-driven and resourceful Senior Network Engineer to join our dynamic Network and Unified... ...high-level government leaders with reliable secure voice, video, and fax communications... ...issues. This position will focus on Tier III support for in-depth analysis, root cause...Permanent employmentContract workFor contractorsWorldwideShift work$150k - $275k
The Sr. Network Engineer III provides senior-level engineering support for mission-critical enterprise networks. This position is responsible for designing, implementing, and maintaining secure, reliable, and scalable network solutions that support organizational objectives...Full timeLocal areaImmediate start- ...budgeting/financial flexibility by offering contingent labor as a variable cost.Job DescriptionDemonstrated experience enterprise security architecture design and implementation for a financial services organization or other organizations with similar information security...Immediate start
$178.4k - $226.7k
Corporate Services Security (CPSS) is the Amazon security team aligned with Finance & Global Business Services (FGBS), People eXperience... ...Services. Apart from work, we provide opportunities for our engineers to pursue projects they are passionate about while maintaining...InternshipFlexible hours$100k - $110k
...enterprise software architectures that support the bank’s information security operations functions. This role performs feedback and... ...bank. The position serves as a technical resource for security engineering initiatives, applying advanced knowledge to evaluate, build, and...Temporary workRemote workFlexible hours$159.3k - $202.4k
Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats...InternshipFlexible hours- ...business development efforts for upcoming opportunities with the U.S. Department of State’s Bureau of Diplomatic Security (DS) - Training - Technical Security Engineering. The Advisor will play a critical role in refining our understanding of the client landscape, validating...Contract workWork at office
$136k - $184k
Amazon’s Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the idea of searching for and uncovering undetected threat activities at petabyte scale. In this role, you will work alongside other Threat Hunting engineers to proactively...InternshipFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineering III. Be the first to apply!
- network security engineer Washington DC
- senior application security engineer Washington DC
- sr security engineer Washington DC
- security infrastructure engineer Washington DC
- senior security operations engineer Washington DC
- dlp security engineer Washington DC
- cloud security engineer Washington DC
- physical security engineer Washington DC
- information technology security engineer Washington DC
- endpoint security engineer Washington DC


