Senior Security Engineer

Posted 9 Days Ago
Be an Early Applicant
Washington, DC, USA
In-Office
102K-132K Annually
Senior level
Information Technology • Professional Services
The Role
Leads cybersecurity engineering, SOC support, vulnerability and risk analysis, security assessments, hands-on testing, and secure Azure solution implementation. Develops SOC procedures, evaluates architectures and security documentation, creates testing methodologies, analyzes alerts, and recommends mitigations. Implements Azure Zero Trust controls, including identity hardening, micro-segmentation, Conditional Access, continuous monitoring, least privilege, governance, secure landing zones, AKS, Azure Policy, and Entra ID. Requires coordination across cybersecurity teams and communication with leadership.
Summary Generated by Built In

The Senior Security Engineer combines senior cybersecurity engineering, SOC support, security assessment, vulnerability and risk analysis, and secure Microsoft Azure engineering. The engineer develops and improves security processes, conducts hands-on testing, supports alert triage and response, and designs and implements secure cloud solutions aligned with the cybersecurity strategy and federal requirements including NIST, FISMA, FedRAMP, and Zero Trust principles.

** This Role is Contingent Upon Award**

Responsibilities:

  • Develop, enhance, and maintain Security Operations Center (SOC) SOPs and security assessment operations processes.
  • Protect the integrity, confidentiality, and accountability of operational security processes and data.
  • Perform vulnerability analysis and review system requirements, architectures, design documents, test plans, and security plans; provide senior technical recommendations.
  • Develop security evaluation plans, test procedures, and assessment methodologies; conduct hands-on security testing and analyze results.
  • Assess and calculate risk based on threats, vulnerabilities, security-control weaknesses, and testing results; document mitigation strategies and countermeasures.
  • Support the design, development, and implementation of security-related systems, tools, and assessment capabilities.
  • Lead or participate in technical exchange meetings, document outcomes and action items, and brief leadership on security engineering status and results.
  • Support SOC alert analysis, triage, escalation, containment actions, and continuous improvement of detection and response use cases.
  • Lead engineering and implementation of secure Microsoft Azure solutions aligned with NIST, FISMA, FedRAMP, and NTIA cybersecurity requirements.
  • Implement Zero Trust controls across Azure, including identity hardening, micro-segmentation, Conditional Access, continuous monitoring, RBAC/least privilege, and governance.
  • Configure and secure Azure services and controls including AKS, Azure Policy, secure Landing Zones, Azure AD/Entra, Conditional Access, RBAC, resource tagging, naming standards, and governance controls.
  • Other duties as assigned.

Qualifications

  • Years of Experience: Minimum 8 years of cybersecurity experience.
  • Education Level: Bachelor’s degree (BS/BA) in Information Technology, Computer Science, Cybersecurity, or a related technical field.
  • Clearance Requirements: Secret clearance or higher.
  • Certification Requirements: Security+ or CISSP CISSP or equivalent recognized cybersecurity certification AND a Cloud Architecture/Engineer or similar certification. Network/security engineering or other relevant industry certifications are also desirable.  See Certification examples below:

Cybersecurity certification (CISSP or equivalent)

  • Certified Information Systems Security Professional (CISSP) — (ISC)²
  • Systems Security Certified Practitioner (SSCP) — (ISC)²
  • Certified Information Security Manager (CISM) — ISACA
  • CompTIA Security+ — CompTIA
  • CompTIA Advanced Security Practitioner (CASP+) — CompTIA

OR

GIAC (SANS) cybersecurity certifications:

  • GIAC Security Essentials Certification (GSEC) — GIAC / SANS
  • GIAC Certified Incident Handler (GCIH) — GIAC / SANS
  • GIAC Certified Intrusion Analyst (GCIA) — GIAC / SANS
  • GIAC Certified Enterprise Defender (GCED) — GIAC / SANS
  • GIAC Continuous Monitoring Certification (GMON) — GIAC / SANS

 And

Cloud Architecture / Cloud Engineer (or similar) certification — choose at least ONE

  • Microsoft Azure (most aligned to this PWS and preferable):

  • Microsoft Certified: Azure Solutions Architect Expert
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Vendor-neutral cloud security:

  • Certified Cloud Security Professional (CCSP) — (ISC)²
  • Amazon Web Services (AWS):

  • AWS Certified Solutions Architect – Associate
  • AWS Certified Solutions Architect – Professional
  • AWS Certified Security – Specialty
  • Google Cloud Platform (GCP):

  • Google Professional Cloud Architect
  • Google Professional Cloud Security Engineer
  • Any other work-related qualifications needed for the role: Demonstrated experience securing Azure services including AKS, Azure Policy, Azure AD/Entra, Conditional Access, RBAC, secure Landing Zones, and Zero Trust controls. Ability to evaluate security documentation, build security test plans and evaluation methodologies, coordinate across cybersecurity teams, and communicate technical issues to leadership.

Salary Range: $102,000 to $132,000

The compensation range listed for this position represents the good faith salary range Diné Development Corporation (DDC) and its subsidiaries reasonably expect to pay for the role, in accordance with applicable state and local pay transparency laws. Actual compensation will be determined based on a variety of factors, including the position's responsibilities, the candidate's education, experience, skills, internal equity, market considerations, and any applicable collective bargaining agreements or legal requirements.

About Us

Diné Development Corporation (DDC) is a Navajo Nation–owned family of companies that provides government agencies and commercial organizations with high-quality IT, professional, environmental, and research and development services. DDC is dedicated to empowering the Navajo Nation and the communities we serve.

 

Benefits

Eligible full-time employees receive a comprehensive benefits package, including medical, dental, vision, life and disability coverage, retirement savings with company match, and paid time off. Additional benefits include voluntary supplemental benefits, access to an employee assistance program, and educational assistance with tuition reimbursement.

 

Equal Opportunity & Compliance Statement

This contractor and subcontractor shall abide by the requirements of 41 CFR 60-1.4(a), 60-300.5(a), and 60-741.5(a). These regulations prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, religion, sex, sexual orientation, gender identity, national origin, or for inquiring about, discussing, or disclosing information about compensation, or any other basis prohibited by law.

We participate in E-Verify.

 

DDC is committed to providing equal employment opportunities to all applicants and employees. If you require a reasonable accommodation to participate in the application or interview process, please contact Recruiting for assistance [email protected]

 

 

Skills Required

  • Minimum 8 years of cybersecurity experience
  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related technical field
  • Secret clearance or higher
  • CISSP or equivalent recognized cybersecurity certification
  • Cloud Architecture, Cloud Engineer, or similar certification
  • Experience securing Azure services, including AKS, Azure Policy, Azure AD/Entra, Conditional Access, RBAC, secure Landing Zones, and Zero Trust controls
  • Ability to evaluate security documentation and build security test plans and evaluation methodologies
  • Ability to coordinate across cybersecurity teams and communicate technical issues to leadership
  • Security+ certification
  • Network, security engineering, or other relevant industry certifications
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Scottsdale, AZ
120 Employees
Year Founded: 2004

What We Do

Diné Development Corporation (DDC) is a family of subsidiaries that delivers IT, professional, and environmental services to solve the dynamic challenges of government agencies and commercial firms. Inspired by our Navajo legacy, we lead with quality and ingenuity to advance our clients’ missions. We deliver exceptional solutions while creating sustainable prosperity for the Navajo Nation and communities across the world.

Similar Jobs

Crexi Logo Crexi

Senior Security Engineer

Real Estate • Sales • Software • PropTech
Easy Apply
Remote or Hybrid
United States
400 Employees
167K-227K Annually

CoreWeave Logo CoreWeave

Field Engineer

Cloud • Information Technology • Machine Learning
In-Office
Washington, DC, USA
1450 Employees
165K-220K Annually
In-Office or Remote
4 Locations
20990 Employees
55K-122K Hourly

PwC Logo PwC

Site Reliability Engineer

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
9 Locations
370000 Employees
124K-280K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account