ICFIC

Senior AWS Security Engineer- Remote

ICF is a global consulting and technology services provider that partners with government and commercial clients to deliver professional services and technology solutions. They address complex challenges in areas like energy, environment, health, and public safety.

ICF

Employee count: 5000+

Salary: 98k-167k USD

United States only

*We are open to supporting 100% remote work anywhere within the continental US*

ICF’s Digital Modernization Division is a rapidly growing, entrepreneurial, technology department. Our team is a leading provider of Digital Transformation services for Federal agencies. Our services focus on enabling agency mission and business transformation using industry-leading low-code platforms, mobile applications, robotics process automation and data analytics platforms. We are partnered with some of the world’s leading and most innovative companies like Salesforce, ServiceNow, Microsoft and UiPath. We focus on offering a full range of architecture and planning, system implementation, integration, analytics and O&M for our customers.

We are seeking a Senior Security Engineer to support our Federal customer’s CIO Cyber Security organization and manage all vulnerability remediation activities, including Binding Operational Directive (BOD) compliance.

Responsibilities:

  • Perform Security Impact Analyses on application releases and provide recommendations to federal leadership

  • Perform software vulnerability scans, interpret the results, and provide vulnerability mitigation recommendations

  • Support and develop analyses of alternatives and decisions on courses of action by providing security insights to project teams and federal leadership

  • Review and provide recommendations on requests for AWS policy changes

  • Work with development teams and other stakeholders to review code and accurately flag False Positives in SonarQube and improve the overall utility of the tool

  • Perform new software evaluation for cyber compliance and mitigation, section 508 compliance and privacy reviews of the software for authorization Approved Software list.

  • The ability to write and review policy documentation based on industry standards.

  • Support regular updates to secure coding standards documentation and the ongoing assessment of the customer organization against the NIST Cyber Security Framework

  • Support Information Security Center vulnerability management groups by performing asset inventory, secure configurations and continuous monitoring, tracking and reporting and vulnerability service catalog.

  • Support Vulnerability Management activities related specifically to Cloud systems, High Value Assets (HVAs), Mobile Device, and Internet of Things (IoT) assets including testing, certifying, verification and authorization activities.

  • Based on your experiences and interests, we may ask you as a technology professional to support growth-related activities, including (but not limited to) RFI, RFP, prototypes, and oral presentations.

  • Team members are also expected to uphold and maintain appropriate certifications necessary for their practice expertise.

Basic Qualifications:

  • 4+ years of Cyber/Network security management activities, including developing, writing and implementing procedures to ensure compliance with FISMA and NIST requirements, 508 compliance and other Federal IT security management guidelines.

  • 3+ years of experience with AWS Security

  • 3+ years of Application Security experience

  • 3+ years of experience with software vulnerability scanning tools such as Fortify WebInspect, Qualys, and SonarQube, and familiarity of AWS policy.

  • 2+ years of experience using SDLC Methodologies

  • Due to federal contract, candidate must have been US Citizen or Green Card holder for 3 or more years.

  • Must be able to obtain Public Trust clearance.

  • MUST RESIDE IN THE United States (U.S.) and the work MUST BE PERFORMED in the United States (U.S.), as this work is for a federal contract and laws do apply.

Preferred Qualifications:

  • B.S. degree in Computer Science, Engineering or similar discipline

  • 5+ years of Cyber/Network security management activities, including developing, writing and implementing procedures to ensure compliance with FISMA and NIST requirements, 508 compliance and other Federal IT security management guidelines.

  • Experience with OWASP, Splunk, Java, SQL

  • Experience with DAST and SAST

  • Working Knowledge of CI/CD, APIs and WAF

Working at ICF

ICF is a global advisory and technology services provider, but we’re not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer.Together, our employees are empowered to share theirexpertiseand collaborate with others to achieve personal and professional goals. For more information, please read our EEOpolicy.

Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals withsincerely heldreligious beliefs, in all phases of the application and employment process. To requestan accommodation,please email [email protected] and we will be happy toassist. All information you provide will be kept confidential and will be used only to the extentrequiredto provide needed reasonable accommodations. 

Read more about workplace discrimination rightsor our benefit offerings which are included in the Transparency in (Benefits) CoverageAct.

Candidate AI Usage Policy

At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate orassistwith responses during interviews (whether in-person or virtual) is notpermitted. This policy is in place tomaintainthe integrity and authenticity of the interview process. 

However, we understand that some candidates may require accommodation that involves the use of AI. Ifsuch anaccommodation is needed, candidates are instructed to contact us in advance at [email protected]. Weare dedicated to providingthe necessary support to ensure that all candidates have an equal opportunity to succeed. 

Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:

$98,124.00 - $166,810.00Nationwide Remote Office (US99)

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Senior

Salary

Salary: 98k-167k USD

Location requirements

Hiring timezones

United States +/- 0 hours

About ICF

Learn more about ICF and their company culture.

View company profile

We are ICF, a global consulting and technology services company. For over 50 years, we've been partnering with clients to help them solve their most complex challenges and navigate change. Our journey began in 1969 when Clarence 'Lucky' Lester, a Tuskegee Airman, along with three U.S. Department of Defense analysts, founded the Inner City Fund. Initially, our mission was to finance and support minority-owned businesses in winning government contracts. However, our consulting expertise soon became our primary strength, leading us to reorganize as a consulting firm named ICF Incorporated. Throughout the 1970s and 1980s, we focused on providing consulting services on energy issues to U.S. federal agencies.

Our growth and evolution have been marked by strategic expansions and a broadening of our service offerings. We went public in 1989 after acquiring Kaiser Engineering, becoming ICF Kaiser and venturing into engineering and construction services. Though ICF and Kaiser later split, our consulting business continued to thrive. In 2006, we became ICF International, reflecting our expanding global presence and the increased scope of our services, which now range from advisory to implementation and improvement. Today, with approximately 9,000 dedicated professionals across more than 90 offices worldwide, we combine deep industry expertise with cutting-edge innovation. We're passionate about making a positive impact and work across diverse sectors including energy, environment, infrastructure, health, education, social programs, public safety, and consumer and financial markets. Our commitment extends to fostering a culture where our employees feel their values align with ours, and where their work truly matters. We strive to be a catalyst for shaping a more resilient and prosperous future for our clients and the communities we serve.

Employee benefits

Learn about the employee benefits and perks provided at ICF.

View benefits

401(k) Retirement Matching

ICF offers 401(k) retirement matching.

Pet Insurance

Pet insurance is offered as a benefit.

Flexible Work Arrangements

Flexible work arrangements are offered.

Life Insurance

Life insurance is offered to employees.

View ICF's employee benefits
Claim this profileICF logoIC

ICF

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

101 remote jobs at ICF

Explore the variety of open remote roles at ICF, offering flexible work options across multiple disciplines and skill levels.

View all jobs at ICF

Remote companies like ICF

Find your next opportunity by exploring profiles of companies that are similar to ICF. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 85,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan