Skip to content

Open nowPosted 54 days ago

Security Engineer - Remote

ICF99 open roles

Pay
$98,614 – $167,644 a year
Where
Reston, VA
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSecurity Engineer - RemoteICF · Reston, VA
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on ICF's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. ICF postings stay open a median of 2 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.2%30 days
This job: posted 54 days ago

ICF median: 2 days open

The posting

* This role is contingent upon a contract award.

The Work:

ICF is looking for an enthusiastic Security Engineer to join our team and help with ensuring our environments and applications meet Federal Security Standards. If you are Security Engineer interested in applying your expertise in Security Engineering in a consulting environment, then this may be the role for you.

Job Location:

This position requires that the job be performed in the United States. If you accept this position, you should note that ICF does monitor employee work locations and blocks access from foreign locations/foreign IP addresses, and also prohibits personal VPN connections.

  • Our core work hours are 10am - 4pm Eastern Time with the option to start earlier or work later depending on your time zone. However, please note our client is on the east coast and may sometimes start a meeting earlier than 10:00 which may require your participation.
  • Travel for a conference or to another ICF location for collaboration may be required once a year.

What You Will Do:

The selected candidate will be required to work on multiple products and must be able to develop and present secure solutions and advice to technical teams as well as leadership. The candidate will further be required to assess risks and advise on security standards, best practices, and solutions. All this must be done by maintaining security quality and customer satisfaction. Various tools are used to detect vulnerabilities and the security engineer documents these vulnerabilities and works with developers to get them corrected. The security engineer will need to work on a path to production for new applications ensuring all the documentation and appropriate steps are taken and approved to have a highly secure production application and environment.

Responsibilities:

  • Perform Static Application Security Testing (SAST) to identify potential vulnerabilities in the application code and infrastructure
  • Perform Dynamic Application Security Testing (DAST)
  • Create and update threat models for FISMA systems
  • Assist and lead security incident response
  • Assist with documentation of System Security plan and Contingency Plans for related projects
  • Ensure security systems are up to date and create documentation and planning for all security-related information, including incident response and disaster recovery plans
  • Review policies and procedures for compliance with applicable standards; and to identify areas of improvement for finding remediation
  • Interact with senior level management, including the ISSO
  • Use security assessment tools such as Nessus, Snyk, AWS GuardDuty and AWS Inspector
  • Apply a demonstrated understanding of cryptography to secure web applications and data at rest
  • Work with development teams to review and correct code written in higher level programming languages and scripts
  • Work with DevOps teams to securely harden Linux based machines and cloud infrastructure

Basic Qualifications:

  • Bachelor’s Degree
  • 5+ years of professional security engineering experience
  • Candidate must be able to obtain and maintain a Public Trust
  • Candidate must reside in the U.S., be authorized to work in the U.S., and all work must be performed in the U.S.
  • Candidate must have lived in the U.S. for three (3) full years out of the last five (5) years

What We Would Like You To Bring With You: .

  • Hands on experience that includes: NIST 800‑53 security controls System hardening and implementation of DoD STIGs Leading incident response activities Data management and applied cryptography Cloud security and infrastructure (AWS, Azure, and/or GCP) Awareness of OWASP Top Ten and CWE Top 25 Linux command line usage (e.g., bash, sh, zsh) Scripting in Python, Perl, or similar languages
  • Prior experience in consulting or healthcare is an advantage but not essential.
  • Strong engineering background
  • Application architecture experience
  • Federal Government contracting work experience
  • One or more of the following certifications is preferred: OSCP/OSCE/OWSE CISSP GPEN GXPN Security + CEH

Professional Skills:

  • Good leadership and team-working skills.
  • Highly effective analytical, problem-solving, and decision-making capabilities.
  • Excellent communication and interpersonal skills to interface effectively at all levels of the business.
  • Organized, detailed oriented and able to prioritize and multi-task.
  • Ability to self-organize, prioritize and conduct work on multiple projects under tight deadlines in a fast-paced environment.
  • Prior experience working remotely full-time

#DMX-HES

Bot and Third-Party Applications

Please note that this application must be submitted directly by the applicant for consideration. Failure to do so may result in the application being excluded for consideration. Applicants needing an accommodation for disability or religious purposes in connection with the application process should contact [email protected] for assistance.

Working at ICF

ICF is a global advisory and technology services provider, but we’re not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. For more information, please read our EEO policy.

We will consider for employment qualified applicants with arrest and conviction records.

Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process. To request an accommodation, please email [email protected] and we will be happy to assist. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

Read more about workplace discrimination rights or our benefit offerings which are included in the Transparency in (Benefits) Coverage Act.

Candidate AI Usage Policy

At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate or assist with responses during interviews (whether in-person or virtual) is not permitted. This policy is in place to maintain the integrity and authenticity of the interview process.

However, we understand that some candidates may require accommodation that involves the use of AI. If such an accommodation is needed, candidates are instructed to contact us in advance at [email protected]. We are dedicated to providing the necessary support to ensure that all candidates have an equal opportunity to succeed.

Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:

$98,614.00 - $167,644.00

Nationwide Remote Office (US99)

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against ICF's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on ICF's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    ICF's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.