Summary
What you’ll impact
The Security Engineer will monitor and analyze system activity, lead incident response, and improve detection capabilities for federal government clients. The role involves reporting on security trends and collaborating with internal teams while ensuring compliance with FedRAMP/FISMA and NIST standards.
Responsibilities
What you'll do
- Monitor systems for abnormal activity.
- Analyze alerts, distinguish threats from false positives, categorize incidents by risk.
- Lead incident response: containment, eradication, recovery, post-incident analysis, documenting steps.
- Optimize detection capabilities: refine alert thresholds, tune SIEM rules, integrate new data sources, reduce false positives.
- Compile weekly/monthly reports on incident trends, threat activity, and security posture for internal stakeholders.
- Actively participate in team meetings, threat Client reviews, and cross-departmental syncs.
Requirements
What you’ll bring
- 5+ yrs security engineering for a FedRAMP or FISMA Moderate system in an AWS GovCloud environment.
- Hands-on UiPath architecture experience: Orchestrator, attended/unattended robots,and Credential Stores, queues, and robot host builds.
- Design and implementation of service account models, credential vaulting, RBAC, separation of duties, and session/audit logging.
- Applied NIST SP 800-53 Rev 5 Moderate controls in build decisions across the AC, AU, CM, IA, and SC families.
- STIG/CIS hardening, vulnerability scanning, patch and configuration management.
- Secure SDLC and code review of automation workflows and scripts.
- Ability to translate engineering decisions into control language for the A&A team.
- Microsoft Excel
- Excellent verbal and written communication skills
- Microsoft Word