Jobs Companies Core One Security Engineer

À propos de ce poste Security Engineer chez Core One

Core One · McLean, VA

Join our team at Core One! Our mission is to be at the forefront of devising analytical, operational and technical solutions to our Nation's most complex national security challenges. In order to achieve our mission, Core One values people first! We are committed to recruiting, nurturing, and retaining top talent! We offer a competitive total compensation package that sets us apart from our competition. Core One is a team-oriented, dynamic, and growing company that values exceptional performance!

Clearance Required: Active TS/SCI with Polygraph

Summary

We are seeking a Senior Security Engineer to support cybersecurity operations, compliance, and risk management for FedRAMP-authorized and Intelligence Community (IC) systems. This role is responsible for ensuring systems meet stringent federal security requirements while enabling secure, scalable, and compliant cloud and on-premises solutions.

The ideal candidate brings deep expertise in NIST frameworks, FedRAMP authorization processes, continuous monitoring (ConMon), cloud security, incident response, and ATO lifecycle management, along with the ability to operate effectively within classified and high-security environments.

The Senior Security Engineer serves as the primary cybersecurity technical authority supporting system engineering, cloud architecture, DevSecOps pipelines, compliance initiatives, and operational security monitoring.

Key Responsibilities

  • Lead and support FedRAMP Moderate/High and IC ATO authorization efforts, ensuring compliance with NIST RMF, NIST 800-53, NIST 800-37, FedRAMP, and ICD 503 requirements.
  • Conduct risk assessments, security control assessments, gap analyses, and security architecture reviews to identify and mitigate cybersecurity risks.
  • Manage the full Risk Management Framework (RMF) lifecycle, including system categorization, control selection, implementation, assessment, authorization, and continuous monitoring.
  • Develop and maintain security documentation such as SSPs, SARs, POA&Ms, and control traceability artifacts, while tracking remediation activities.
  • Execute Continuous Monitoring (ConMon) programs through vulnerability assessments, compliance reviews, security control validation, and reporting.
  • Lead vulnerability management activities using tools such as Nessus, ACAS, SCAP, and STIG Viewer, validating remediation and coordinating risk mitigation efforts.
  • Support Security Operations and Incident Response, including threat monitoring, alert analysis, incident investigations, root cause analysis, and coordination with SOCs and government stakeholders.
  • Design and assess security controls for AWS GovCloud, Azure Government, and other government cloud environments, implementing IAM, encryption, logging, and least-privilege access controls.
  • Integrate security into DevSecOps and CI/CD pipelines through automated security testing, vulnerability scanning, compliance validation, and Infrastructure-as-Code security practices.
  • Support audits and assessments, including 3PAO reviews, FedRAMP assessments, agency ATO reviews, and IG audits, while preparing evidence and coordinating with auditors and assessors.
  • Administer and utilize governance, compliance, monitoring, and vulnerability management tools such as ServiceNow GRC, Splunk, and Azure.
  • Collaborate with developers, engineers, cloud architects, ISSOs/ISSMs, compliance teams, and government stakeholders to provide cybersecurity guidance throughout system development and operations.
  • Contribute to security governance, policy development, cybersecurity program maturity, and organizational security culture, while mentoring junior staff and promoting risk-informed decision-making.

 

Required Qualifications 

  • Active TS/SCI with Polygraph
  • Bachelor's degree or higher in Cybersecurity, IT, or related field and 5+ years' experience in Cybersecurity in federal or IC environments
  • OR Masters and 3+ years of experience in Cybersecurity in federal or IC environments
  • Strong Knowledge of NIST RMF (800-37), NIST 800-53 controls, and FedRAMP requirements
  • At least one of the following certifications: CISM or CISA, CompTIA Security+ (baseline), Certified Authorization Professional (CAP), CCSP (cloud security)
  • Experience in the following tools: NIST 800-53, RMF, FedRAMP, ICD 503, ServiceNow GRC, Splunk, AWS GovCloud, Azure 

Desired Qualifications

  • Experience with cloud-native security tools
  • Knowledge of Zero Trust Architecture
  • Experience with cross-domain solutions
  • Familiarity with DevSecOps pipelines in regulated environments

Core One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Prêt à postuler chez Core One ?
Postuler chez Core One

À propos de Core One

Core One is always seeking talented professionals. If you would like to submit a resume to Core One to have on file, please send an email to careers@coreone.com. You may also view our current openings here:

Voir tous les emplois chez Core One →

Emplois similaires

Red Cell Partners
Forward Deployed Engineer, Federal/National Security
Red Cell Partners
⚡ Postuler tôt Remote (USA) · lieu restreint $180,000–$240,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
ID.me
Threat Detection Engineer – Security Operations
ID.me
⚡ Postuler tôt McLean, Virginia; Mountain Vie... Sur site $113,033–$140,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 sem.
Mozilla
Senior Software Engineer, Firefox Security
Mozilla
⚡ Postuler tôt Remote Canada · lieu restreint CA$104,000–CA$139,000
● Nouveau 👁 Vu ✓ Postulé il y a 35 min
Mozilla
Senior Software Engineer, Firefox Security
Mozilla
⚡ Postuler tôt Remote Sweden · lieu restreint SEK 513,000–SEK 684,000
● Nouveau 👁 Vu ✓ Postulé il y a 35 min
Mozilla
Senior Software Engineer, Firefox Security
Mozilla
⚡ Postuler tôt Remote Netherlands · lieu restreint €66,000–€88,000
● Nouveau 👁 Vu ✓ Postulé il y a 35 min
Verisign
Senior InfoSec Tools Engineer
Verisign
⚡ Postuler tôt Reston,Virginia,United States Hybride $135,800–$183,800
● Nouveau 👁 Vu ✓ Postulé il y a 36 min
Roblox
Senior Security Engineer, Detection and Response
Roblox
⚡ Postuler tôt London, England, United Kingdo... Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 55 min
Roblox
Senior Enterprise Security Engineer
Roblox
⚡ Postuler tôt San Mateo, CA, United States Sur site $243,290–$295,250
● Nouveau 👁 Vu ✓ Postulé il y a 56 min
Roblox
Principal Enterprise Security Engineer
Roblox
⚡ Postuler tôt San Mateo, CA, United States Sur site $293,800–$343,340
● Nouveau 👁 Vu ✓ Postulé il y a 56 min

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Core One

Voir tous les emplois chez Core One →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit