Lead Security Engineer
Bethesda, MD - USA
Job Summary
We are seeking an experienced Lead Security Engineer to design implement and lead cybersecurity engineering for a secure on-premises Federal data analytics and AI platform supporting sensitive grants and awards information within a Government-approved security boundary.
This role will serve as a technical security lead across the platform architecture infrastructure applications data APIs DevSecOps pipelines and AI services. The Lead Security Engineer will translate Federal security requirements into practical technical controls and engineering patterns while ensuring those controls are implemented tested monitored and supported with the evidence necessary for Risk Management Framework (RMF) activities and ongoing authorization.
Analytica has been recognized by Inc. Magazine as the fastest-growing private US small business. We work with U.S. government customers in health civilian and national security missions. As a core member youll work with a diverse team of professionals to solve matters architect nuisances and come up with alternatives. We offer competitive compensation with opportunities for bonuses employer paid health care training and development funds and 401k match.Key Responsibilities
- Translate FISMA Moderate and NIST SP 800-53 Rev. 5 requirements into actionable technical controls and evidence.
- Support Risk Management Framework activities security planning control implementation assessment readiness and remediation tracking.
- Engineer access control audit logging authentication encryption configuration management secure communications and data-protection safeguards.
- Integrate security scanning and compliance checks into the CI/CD process.
- Validate read-only interaction with authoritative source systems and safeguards against unauthorized data modification or external action.
- Support incident response procedures vulnerability management secure configuration and continuous monitoring.
- Coordinate withsecurity CIO/CISO stakeholders platform teams and program leadership.
- 8 years of experience in cybersecurity engineering security architecture information assurance or a related field.
- Demonstrated experience designing and implementing security controls for Federal information systems preferably in FISMA/RMF environments.
- Strong knowledge of FISMA NIST SP 800-53 Rev. 5 RMF and secure software development/DevSecOps.
- Experience securing enterprise infrastructure applications databases APIs networks and on-premises or hybrid platforms.
- Hands-on experience with Linux Docker/containerization and Kubernetes and/or Rancher.
- Experience implementing IAM RBAC privileged access authentication authorization encryption certificates secrets and key-management controls.
- Experience with vulnerability management security scanning patching configuration management and remediation.
- Experience integrating security into CI/CD pipelines preferably with Jenkins and/or self-hosted Azure DevOps.
- Understanding of application security including SAST/SCA/DAST dependency management container security secrets detection and secure API design.
- Experience with security logging monitoring alerting audit trails and incident response.
- Experience supporting security assessments audits POA&Ms vulnerability assessments and continuous monitoring.
- Ability to conduct threat modeling and evaluate security risks associated with new technologies and architectures.
- Strong technical documentation communication and problem-solving skills.
- Ability to collaborate across platform infrastructure application data AI/ML DevOps and Government teams.
- U.S. citizenship and ability to obtain and maintain Top Secret eligibility as required for contractor personnel supporting the effort. Active Top Secret clearance highly preferred.
- Experience supporting Federal financial management budget execution grants management payment systems award oversight financial reporting or financial stewardship.
- Experience securing Federal grants payment financial or award-oversight platforms.
- Experience securing AI/ML or open-source LLM workloads in on-premises restricted or disconnected environments.
- Experience with SIEM SOAR EDR security automation infrastructure-as-code security or related technologies.
- Familiarity with FedRAMP-authorized environments FISMA Moderate NIST SP 800-53 Section 508 and Federal records/privacy requirements.
- Relevant security certifications such as CISSP Security SecurityX/CASP CCSP CISM or GIAC.
AboutANALYTICA:Analytica is a leading consulting and information technology solutions provider to public sector organizations supporting health civilian and national security missions. Founded in 2009 and headquartered in Bethesda MD the company is an establishedSBAsmall businessthat hasbeen recognized byInc. Magazineeach of the past three years as one of the 250 fastest-growingcompanies in theU.S. Analytica specializes in providing software and systems engineering information management analytics & visualization agile project management and management consulting companyis appraised by theSoftware Engineering Institute (SEI) atCMMI Maturity Level 3and is anISO 9001:2008 certifiedprovider.
Analytica LLC is an Equal Opportunity Employer. We are committed to providing equal employment opportunities to all individuals regardless of race color religion sex sexual orientation gender identity national origin age disability or any other characteristic protected by applicable federal state or local law. As a federal contractor we comply with the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA) and take affirmative action to employ and advance in employment qualified protected veterans. We ensure that all employment decisions are based on merit qualifications and business needs. We prohibit discrimination and harassment of any kind. Analytica LLC also provides reasonable accommodations to applicants and employees with disabilities in accordance with applicable law.
To enhance efficiency fairness and accuracy Analytica may use AI-assisted tools to support certain aspects of our hiring process.
- Application Review: AI tools may help identify skills and experiences relevant to the role.
- Interview Support: AI-powered notetaking tools may be used during interviews to document discussions and summarize key points.
These tools are used to assist our team. All hiring decisions are made by Analytica recruiters and hiring managers.
By submitting an application you acknowledge that AI-assisted tools may be used to support parts of the application and interview process.
When receiving email communication from Analytica please ensure that the email domain is to verify its authenticity.
Required Experience:
Manager
About Company
Analytica is an award-winning federal consulting & IT solutions firm supporting federal health, civilian, & national security missions.