Security Engineer II

Posted 3 Days Ago
Be an Early Applicant
Raleigh, NC, USA
In-Office
65K-109K Annually
Mid level
Information Technology • Legal Tech • Professional Services • Analytics • Business Intelligence
The Role
Perform FedRAMP continuous monitoring and vulnerability lifecycle management: run scans, track POA&Ms, validate remediation, maintain audit-ready documentation, coordinate remediation with engineering, and support assessments and auditors.
Summary Generated by Built In

What You’ll Do

  • Execute monthly FedRAMP Continuous Monitoring activities, ensuring timely and accurate completion of deliverables

  • Maintain and update Plans of Action and Milestones (POA&Ms), including tracking remediation progress and validating closure

  • Review and analyze vulnerability scan results (e.g., Nessus) and assist with prioritization and escalation

  • Maintain an accurate, up-to-date view of vulnerability status across the environment

  • Track vulnerabilities through the full lifecycle: identification, validation, remediation, and closure

  • Monitor and report on aging vulnerabilities and SLA adherence

  • Ensure consistency between scan results, ticketing systems (e.g., ServiceNow), and POA&M records

Operational Visibility & Monitoring

  • Maintain continuous operational visibility into the security posture of FedRAMP systems, including vulnerabilities, assets, and control status

  • Validate that security-relevant data (scan results, logs, asset inventory, and tracking systems) is complete, accurate, and aligned across sources

  • Identify gaps in visibility (e.g., missing assets, incomplete scan coverage, inconsistent data) and escalate appropriately

  • Support continuous monitoring activities aligned with FedRAMP and NIST 800-137 (ISCM) expectations

  • Assist in ensuring that logging, monitoring, and security tooling provide sufficient coverage to support ongoing risk awareness and audit readiness

Additional Responsibilities

  • Prepare and maintain audit-ready documentation and ConMon artifacts, including monthly summaries

  • Partner with engineering, cloud, and security teams to support timely remediation efforts

  • Assist with annual assessments and audit preparation, including coordination with internal and external auditors

  • Identify recurring issues or trends and escalate to the senior lead for resolution

What We’re Looking For

  • 2–4 years of experience in cybersecurity, vulnerability management, or compliance operations

  • Exposure to FedRAMP, NIST 800-53, or similar security frameworks

  • Hands-on experience working with vulnerability scanning tools (e.g., Nessus, Qualys)

  • Experience tracking vulnerabilities or security findings in a ticketing or tracking system (e.g., ServiceNow, Jira)

  • Strong organizational skills with the ability to manage and track large volumes of findings accurately

  • High attention to detail and commitment to maintaining data accuracy and consistency

  • Ability to identify and investigate discrepancies across multiple data sources

  • Understanding of the importance of continuous monitoring, system visibility, and audit readiness in regulated environments

  • Strong written and verbal communication skills, with the ability to clearly convey status and risk

  • Ability to work independently while collaborating closely with a senior lead and cross-functional teams

  • BS Engineering/Computer Science or equivalent experience required

Nice to Have

  • Experience with FedRAMP Continuous Monitoring processes or reporting

  • Familiarity with POA&M management and audit support activities

  • Exposure to logging, monitoring, or SIEM platforms

  • Experience improving workflows through automation or scripting (e.g., PowerShell, Python, Power Automate)

What Success Looks Like

Success in this role means maintaining a clear, accurate, and continuously updated view of system security posture, ensuring that:

  • Vulnerability status is consistently tracked and reported

  • Security data is aligned across tools and reporting artifacts

  • ConMon deliverables are completed on time

  • The environment remains audit-ready with strong operational visibility and minimal surprises

This role requires comfort working in a structured, compliance-driven environment with recurring monthly deliverables and a strong focus on consistency and detail.

Additional Requirements

  • U.S. Citizenship required

  • Must meet IAL2 (Identity Assurance Level 2) requirements

  • This is a hybrid position

U.S. National Base Pay Range: $65,100 - $108,500. Geographic differentials may apply in some locations to better reflect local market rates. This job is eligible for an annual incentive bonus.

We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.

We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.

Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here.

Please read our Candidate Privacy Policy.

We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.

USA Job Seekers:

EEO Know Your Rights.

Skills Required

  • 2-4 years of experience in cybersecurity, vulnerability management, or compliance operations
  • Exposure to FedRAMP, NIST 800-53, or similar security frameworks
  • Hands-on experience with vulnerability scanning tools (Nessus, Qualys)
  • Experience tracking vulnerabilities or security findings in a ticketing/tracking system (ServiceNow, Jira)
  • BS Engineering/Computer Science or equivalent experience
  • Strong organizational skills and ability to manage large volumes of findings accurately
  • High attention to detail and commitment to data accuracy and consistency
  • Ability to identify and investigate discrepancies across multiple data sources
  • Strong written and verbal communication skills
  • Ability to work independently while collaborating with a senior lead and cross-functional teams
  • U.S. Citizenship
  • Must meet IAL2 (Identity Assurance Level 2) requirements
  • Experience with FedRAMP Continuous Monitoring processes or reporting
  • Familiarity with POA&M management and audit support activities
  • Exposure to logging, monitoring, or SIEM platforms
  • Experience improving workflows through automation or scripting (PowerShell, Python, Power Automate)

LexisNexis Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about LexisNexis and has not been reviewed or approved by LexisNexis.

  • Healthcare Strength Healthcare options are often described as comprehensive, spanning medical, dental, and vision coverage alongside life and disability protection. Wellbeing programming such as wellness initiatives and fitness support is also positioned as part of the overall package.
  • Retirement Support Retirement benefits are repeatedly framed as a meaningful component of total rewards through 401(k) matching and access to stock purchase opportunities. Performance bonuses and charitable matching are also included as financial-support features within the broader rewards mix.
  • Leave & Time Off Breadth Time-off offerings are portrayed as broad, including PTO, paid holidays, sick leave, and paid volunteer time. Flexible work arrangements, including remote options and flexible hours, further strengthen the overall rewards experience.

LexisNexis Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Alpharetta, GA
10,001 Employees
Year Founded: 1970

What We Do

LexisNexis Legal & Professional is a leading global provider of legal, regulatory and business information and analytics that help customers increase productivity, improve decision-making and outcomes, and advance the rule of law around the world. We help lawyers win cases, manage their work more efficiently, serve their clients better and grow their practices. We assist corporations in better understanding their markets, monitoring their brands and competition, and in mitigating business risk. We collaborate with universities to educate students, and we support nation-building with governments and courts by making laws accessible and strengthening legal infrastructures. We partner with leading global associations and customers to collect evidence against war criminals and provide tools to combat human trafficking. LexisNexis Legal & Professional, which serves customers in more than 130 countries with 10,000 employees worldwide, is part of RELX Group, a global provider of information and analytics for professional and business customers across industries.

Similar Jobs

LexisNexis Logo LexisNexis

Senior Security Engineer

Information Technology • Legal Tech • Professional Services • Analytics • Business Intelligence
In-Office
Raleigh, NC, USA
10001 Employees
95K-159K Annually

Deepgram Logo Deepgram

Research Staff, Voice AI Foundations

Artificial Intelligence • Machine Learning • Natural Language Processing • Software • Conversational AI
In-Office or Remote
3 Locations
150 Employees
150K-250K Annually

Capital One Logo Capital One

Sr. Risk Manager, Controls

Fintech • Machine Learning • Payments • Software • Financial Services
Hybrid
4 Locations
55000 Employees
162K-203K Annually

CrowdStrike Logo CrowdStrike

Sr. Director, Program Management – Tailored Solutions (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
210K-300K Annually

Similar Companies Hiring

NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Legora Thumbnail
Artificial Intelligence • Legal Tech • Software
New York, New York
700 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account