← Back to jobs

Remote job

Application Security Engineer

Other Full-time Permanent US

Job details

Not specified Salary
US Eligibility
Not specified Experience
Full-time Employment

About this role

Role overview

This role supports a federal government technology services program, helping mission teams operate more safely through practical cybersecurity engineering work. The engineer will assess risk across applications, networks, endpoints, cloud platforms, and enterprise systems while guiding teams toward systems that earn federal accreditation. Day-to-day work blends hands-on hardening, stakeholder communication, and continuous improvement of security processes and controls.

Responsibilities

- Identify, assess, and prioritize vulnerabilities and risks across applications, networks, endpoints, cloud environments, and enterprise systems - Partner with Information System Security Officers (ISSOs) and Controls Assessors to capture Risk Management Framework (RMF) artifacts and validate the effectiveness of security controls - Collaborate with engineers to design secure systems that can quickly and cleanly achieve FISMA accreditation - Review, advise on, and refine security Control Statements so systems are correctly hardened and accurately represented in assessment documentation - Drive compliance with federal regulations and policies, including NIST special publications, OMB guidance, and Binding Operational Directives (BODs) - Communicate risks clearly to stakeholders, recommend effective mitigation strategies, and contribute to ongoing improvements in security processes and controls

Requirements

- 4–6 years of experience performing security engineering or secure systems engineering - Strong working knowledge of the FISMA Risk Management Framework (RMF) - Hands-on experience hardening applications and operating systems - Understanding of OS-level vulnerabilities and hardening practices - Familiarity with core network protocols and components (TCP/IP, DNS, firewalls, routers, switches) - Experience configuring and working with Identity Providers (IdP) - Experience with patch management tools and processes - Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent practical experience - U.S. Citizenship and eligibility to obtain a Public Trust security clearance

Nice to have

- Strong experience working with major Cloud Service Providers (AWS, Azure, GCP) and cloud-native security policies

Benefits and work setup

- Posted pay range for this position, in listed U.S. states and the District of Columbia, is $106,300 to $221,100 USD, with actual compensation varying by office location, skill set, and experience level - Applications are accepted on a rolling basis with no fixed deadline

Skills detected in the listing

Stakeholder ManagementInformation SecurityAWSGCPAzure
Detected Sep 29, 2026
Last verified Sep 29, 2026

Hidden Jobs Access

Unlock application links

Read the full job details for free. An active Hidden Jobs Access subscription is required to open the original application link.

Weekly

FREE $6.99/week after trial
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching
  • Cancel anytime before day 7

Monthly

$35.99 $17.99 /month
  • 35% cheaper than weekly
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching

Lifetime

$99.99 $49.99 /forever
  • One-time payment
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching
Hidden Jobs gives subscribers direct access to original application links
Offer ends in 00:00:00 Your profile-fit rate expires at midnight