Lead Security Engineer
Analytica · Bethesda, MD
Apply & track with Apply EdgeWe are seeking an experienced Lead Security Engineer to design, implement, and lead cybersecurity engineering for a secure, on-premises Federal data, analytics, and AI platform supporting sensitive grants and awards information within a Government-approved security boundary.This role will serve as a technical security lead across the platform architecture, infrastructure, applications, data, APIs, DevSecOps pipelines, and AI services. The Lead Security Engineer will translate Federal security requirements into practical technical controls and engineering patterns while ensuring those controls are implemented, tested, monitored, and supported with the evidence necessary for Risk Management Framework (RMF) activities and ongoing authorization.Analytica has been recognized by Inc. Magazine as the fastest-growing private US small business. We work with U.S. government customers in health, civilian, and national security missions. As a core member you’ll work with a diverse team of professionals to solve matters, architect nuisances, and come up with alternatives. We offer competitive compensation with opportunities for bonuses, employer paid health care, training and development funds, and 401k match.Key ResponsibilitiesTranslate FISMA Moderate and NIST SP 800-53 Rev. 5 requirements into actionable technical controls and evidence. Support Risk Management Framework activities, security planning, control implementation, assessment readiness, and remediation tracking. Engineer access control, audit logging, authentication, encryption, configuration management, secure communications, and data-protection safeguards. Integrate security scanning and compliance checks into the CI/CD process. Validate read-only interaction with authoritative source systems and safeguards against unauthorized data modification or external action. Support incident response procedures, vulnerability management, secure configuration, and continuous monitoring. Coordinate with security, CIO/CISO stakeholders, platform teams, and program leadership. Required Qualifications8+ years of experience in cybersecurity engineering, security architecture, information assurance, or a related fieldDemonstrated experience designing and implementing security controls for Federal information systems, preferably in FISMA/RMF environmentsStrong knowledge of FISMA, NIST SP 800-53 Rev. 5, RMF, and secure software development/DevSecOpsExperience securing enterprise infrastructure, applications, databases, APIs, networks, and on-premises or hybrid platformsHands-on experience with Linux, Docker/containerization, and Kubernetes and/or RancherExperience implementing IAM, RBAC, privileged access, authentication, authorization, encryption, certificates, secrets, and key-management controlsExperience with vulnerability management, security scanning, patching, configuration management, and remediationExperience integrating security into CI/CD pipelines, preferably with Jenkins and/or self-hosted Azure DevOpsUnderstanding of application security, including SAST/SCA/DAST, dependency management, container security, secrets detection, and secure API designExperience with security logging, monitoring, alerting, audit trails, and incident responseExperience supporting security assessments, audits, POA&Ms, vulnerability assessments, and continuous monitoringAbility to conduct threat modeling and evaluate security risks associated with new technologies and architecturesStrong technical documentation, communication, and problem-solving skillsAbility to collaborate across platform, infrastructure, application, data, AI/ML, DevOps, and Government teamsU.S. citizenship and ability to obtain and maintain Top Secret eligibility, as required for contractor personnel supporting the effort. Active Top Secret clearance highly preferred.Preferred QualificationsExperience supporting Federal financial management, budget execution, grants management, payment systems, award oversight, financial reporting, or financial stewardshipExperience securing Federal grants, payment, financial, or award-oversight platformsExperience securing AI/ML or open-source LLM workloads in on-premises, restricted, or disconnected environmentsExperience with SIEM, SOAR, EDR, security automation, infrastructure-as-code security, or related technologiesFamiliarity with FedRAMP-authorized environments, FISMA Moderate, NIST SP 800-53, Section 508, and Federal records/privacy requirementsRelevant security certifications such as CISSP, Security+, SecurityX/CASP+, CCSP, CISM, or GIACAbout ANALYTICA: Analytica is a leading consulting and information technology solutions provider to public sector organizations supporting health, civilian, and national security missions. Founded in 2009 and headquartered in Bethesda, MD, the company is an established SBA small business that has been recognized by Inc. Magazine each of the past three years as one of the 250 fastest-growing companies in the U.S. Analytica specializes in providing software and systems engineering, information management, analytics & visualization, agile project management, and management consulting services. The company is appraised by the Software Engineering Institute (SEI) at CMMI® Maturity Level 3 and is an ISO 9001:2008 certified provider.