
51 - 200 Mitarbeiter
☁️ SaaS
🎖️ Verteidigung
🏛️ Regierung
SaaS • Defense • Government
Second Front Systems ist ein gemeinnütziges, von Risikokapital unterstütztes Unternehmen, das kritische Softwarelösungen hauptsächlich für Demokratien auf der ganzen Welt bereitstellt. Ihr Produktsortiment, das die 2F Suite, 2F Workshop, 2F Game Warden und 2F Frontier umfasst, vereinfacht und beschleunigt den Prozess der Softwareentwicklung und -bereitstellung. Das Unternehmen wird von führenden Softwareanbietern und Regierungsbehörden für seine sicheren DevSecOps-Lösungen geschätzt, die eine sichere Softwarebereitstellung in klassifizierten und nicht klassifizierten Netzwerken ermöglichen. Ihre Angebote umfassen Tools für sichere Entwicklung, Software-Akkreditierung, Cloud-Hosting der Regierung und Edge-Bereitstellung, insbesondere zur Unterstützung des Regierungs- und Verteidigungssektors. Second Front Systems arbeitet mit Partnern zusammen, um aufstrebende Technologien zugänglicher zu machen, beschleunigt den Akkreditierungs- und Compliance-Prozess und bietet Lösungen, die in abgelegenen oder getrennten Umgebungen wie Drohnen und Fahrzeugen betrieben werden können.
🕒 vor 14 Tagen
⛰️ Colorado, District of Columbia, +5 weitere Bundesländer – Remote
💵 $125.000 - $140.000 / Jahr
⏰ Vollzeit
🟡 Mittelstufe
🟠 Senior
👮♂️ IT-Sicherheitsingenieur
🗣️🇺🇸🇬🇧 Englisch erforderlich
Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

51 - 200 Mitarbeiter
☁️ SaaS
🎖️ Verteidigung
🏛️ Regierung
SaaS • Defense • Government
Second Front Systems ist ein gemeinnütziges, von Risikokapital unterstütztes Unternehmen, das kritische Softwarelösungen hauptsächlich für Demokratien auf der ganzen Welt bereitstellt. Ihr Produktsortiment, das die 2F Suite, 2F Workshop, 2F Game Warden und 2F Frontier umfasst, vereinfacht und beschleunigt den Prozess der Softwareentwicklung und -bereitstellung. Das Unternehmen wird von führenden Softwareanbietern und Regierungsbehörden für seine sicheren DevSecOps-Lösungen geschätzt, die eine sichere Softwarebereitstellung in klassifizierten und nicht klassifizierten Netzwerken ermöglichen. Ihre Angebote umfassen Tools für sichere Entwicklung, Software-Akkreditierung, Cloud-Hosting der Regierung und Edge-Bereitstellung, insbesondere zur Unterstützung des Regierungs- und Verteidigungssektors. Second Front Systems arbeitet mit Partnern zusammen, um aufstrebende Technologien zugänglicher zu machen, beschleunigt den Akkreditierungs- und Compliance-Prozess und bietet Lösungen, die in abgelegenen oder getrennten Umgebungen wie Drohnen und Fahrzeugen betrieben werden können.
• Review web application artifacts of customer developed applications and provide customer feedback • Primary face of the cybersecurity team to software development and mission success teams • Assist with incident response plans to respond to application outages or downtime • Technical Security Validation: Conduct comprehensive assessments of cloud infrastructure, applications, and containerized environments to verify compliance with DISA STIGs, SRGs, and CIS Benchmarks. • Authorization Lifecycle Management: Author, review, and maintain high-quality security artifacts, including System Security Plans (SSP), Security Assessment Plans (SAP), and Security Assessment Reports (SAR). • Continuous Monitoring (ConMon): Monitor and report on the ongoing effectiveness of security controls, ensuring the platform maintains a robust and authorized security posture. • Vulnerability & Risk Analysis: Utilize automated scanning suites (e.g., Anchore, Trivy, Tenable) to identify vulnerabilities, distinguish true positives, and provide actionable remediation guidance to dev teams. • Supply Chain Security: Implement and manage technical workflows for SBOMs (Software Bill of Materials) to support modern, continuous authorization standards. • Cross-Functional Collaboration: Partner with DevOps and Software Engineering teams to translate complex NIST 800-53 controls into implementable technical requirements.
• Experience solving complex and sometimes ill-defined problems • Intermediate knowledge of DevSecOps tools and software development • Ability to create and implement incident response plans • Background in cybersecurity and understanding of vulnerability risk analysis • Hands-on experience assessing or securing services within AWS, Azure, or GCP, particularly within PaaS or Kubernetes-based environments. • Proficient knowledge of NIST SP 800-37 (RMF) and NIST SP 800-53 rev 5 security controls • Deep understanding of the FedRAMP authorization process and Department of Defense (DoD) security standards. • 3-5 years of relevant experience • Ability to attain DOD 8570 Baseline Certification for IAT II within 6 months of hire date (preferably CYSA+)
• Competitive Salary • 100% Healthcare, vision and dental coverage • 401(k) + 3% company contribution • Wellness perks (Fitness classes, mental health resources) • Equity incentive plan • Tech + office supplies stipend • Annual professional development stipend • Flexible paid time off + federal holidays off • Parental leave • Work from anywhere • Referral Bonus
Jetzt Bewerben🕒 vor 14 Tagen
Security Specialist managing cybersecurity, compliance, and risk management for Grants.gov operations. Collaborating with federal security teams and ensuring compliance with federal regulations and standards.
🇺🇸 Vereinigte Staaten – Remote
💵 $98.000 - $163.000 / Jahr
💰 Grant im 2023-02
⏰ Vollzeit
🟡 Mittelstufe
🟠 Senior
👮♂️ IT-Sicherheitsingenieur
🦅 H1B-Visum-Sponsor
🗣️🇺🇸🇬🇧 Englisch erforderlich
🕒 vor 14 Tagen
Senior Field Security Investigator at GEICO investigating fraud and illegal activities against the company. Collaborating with departments, evaluating information, and ensuring credible investigations.
🇺🇸 Vereinigte Staaten – Remote
💵 $3.205 - $4.986 / Jahr
⏰ Vollzeit
🟠 Senior
👮♂️ IT-Sicherheitsingenieur
🦅 H1B-Visum-Sponsor
🗣️🇺🇸🇬🇧 Englisch erforderlich
🕒 vor 14 Tagen
Associate Security Engineer providing hands-on support for identity security services in a global cybersecurity organization. Collaborating with teams on identity management and security technologies.
🗣️🇺🇸🇬🇧 Englisch erforderlich
🕒 vor 14 Tagen
Microsoft Security Consultant working with clients to enhance security across Microsoft services. Assessing risks, designing solutions and implementing technologies in a collaborative environment.
🗣️🇺🇸🇬🇧 Englisch erforderlich
🕒 vor 14 Tagen
Microsoft Security Engineer delivering hands-on security engagements for diverse clients in Microsoft ecosystem. Focusing on identity and data protection with collaboration across various industries.
🇺🇸 Vereinigte Staaten – Remote
⏰ Vollzeit
🟢 Junior
🟡 Mittelstufe
👮♂️ IT-Sicherheitsingenieur
🦅 H1B-Visum-Sponsor
🗣️🇺🇸🇬🇧 Englisch erforderlich