Ampcus Incorporated logo

Information Technology - Engineer, Cyber Security Sr

Ampcus Incorporated

  • Reston, VA
  • 29 days ago

    Highlights

    Direct experience mapping application and cloud native controls to frameworks such as NIST CSF, NIST 800-53, ISO 27001, SOC2, CIS Benchmarks, MITRE ATT&CK or similar frameworks. Hands-on experience securing AWS cloud environments, including strong understanding of IAM, networking, logging, monitoring, encryption, workload security, and cloud security posture management.

    Numbers & Facts

    LocationReston, VA
    IndustryStaffing/Employment Agencies
    Company Size500 to 999 employees
    Websitehttp://www.ampcus.com

    Description

    Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.

    Job Title: Sr. Cybersecurity Engineer - 49965-1

    Location(s): Reston, VA (Hybrid – Once a month/quarter onsite)

    Job Summary:

    Develops and implements security solutions. Administers security technology systems by architecting and engineering/developing trusted systems into secure systems. Assists in the development of implementation and deployment plans that are aligned to the organizational strategic plan objectives and security requirements. Advises management in developing cybersecurity policies, processes, and procedures.

    Key Responsibilities:

    • Assists with day-to-day support of security solutions (20%).
    • Assists with engineering support and system administration of specialized cybersecurity solutions (20%).
    • Solves complex problems and answers routine questions about the installation, operation, configuration, and customization of cybersecurity software (15%).
    • Identifies potential conflicts with the implementation of any cybersecurity solutions (15%).
    • Answers routine questions about the installation, operation, configuration, and customization of cybersecurity solutions (10%).
    • Reviews and analyzes appropriate cybersecurity solution system logs for performance and functional anomalies (10%).
    • Works with system design architects and project managers to provide security requirements (10%).

    Required Qualifications:

    • Bachelor's Degree in Computer Science, Information Technology, or related field.
    • 5 plus years of relevant IT security experience.
    • In lieu of a bachelor's degree, an additional 4 years of relevant work experience is required in addition to the required work experience.

    Preferred Qualifications:

    • Strong hands-on experience in Application security, secure SDLC, DevSecOps, Cloud Security, and vulnerability management.
    • Deep understanding of OWASP top 10, API security top 10, common vulnerability classes, secure coding practices, and modern exploit techniques.
    • Hands-on experience with security testing tools and techniques, including SAST, DAST, IAST, SCA, manual penetration testing, secure code review, and threat modeling.
    • Extensive experience with CNAPP, CSPM, KSPM, CWPP, or cloud native security platforms, preferably tools such as Wiz, CrowdStrike, or similar solutions.
    • Hands-on experience securing cloud environments, preferable AWS, including services such as IAM, EC2, S3, Lambda, EKS, CloudTrail, Security Hub, Guard Duty, or similar services.
    • Deep knowledge of Kubernetes and container security, including Amazon EKS, pod security, RBAC, network policies, image security, runtime security, and container hardening best practices.
    • Direct experience mapping application and cloud native controls to frameworks such as NIST CSF, NIST 800-53, ISO 27001, SOC2, CIS Benchmarks, MITRE ATT&CK or similar frameworks.
    • Strong working knowledge of CI/CD platforms, DevOps toolchain and secure pipeline practices, including building security, artifact management, secrets protection, and code signing.
    • Experience working directly with development teams to explain security findings, recommend practical remediation and validation fixes.
    • Hands-on experience securing AWS cloud environments, including strong understanding of IAM, networking, logging, monitoring, encryption, workload security, and cloud security posture management.
    • Experience with infrastructure-as-code and policy-as-code practices using tools such as Terraform, Helm, CloudFormation, Rego/OPA, or similar technologies.
    • Strong written and verbal communication skills, with the ability to translate complex technical risks into clear recommendations for developers, architects, leadership, and governance stakeholders.
    • Security certifications such as CISSP, AWS certified Security-specialty, CISA, GWEB, or similar credentials are preferred.

    Ampcus is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veterans or individuals with disabilities.

    About Company

    Ampcus Inc is a global technology and business consulting firm specializing in Digital Transforrmation, Big Data, Analytics, Cyber Security, Testing, IV&V, Infrastructure Management and Enterprise Solutions. Ampcus Inc is an SBA 8(a) certified Women and Minority Owned global Provider of broad range of consulting Services. From strategy to execution, our disciplined yet flexible approach starts and ends with our clients. By listening hard and working harder, their goals become our goals. We are an ISO 9000, ISO 20000, ISO 27000 and CMMi Level certified company.

    Ampcus consultants have significant business, engineering and technology experience. Our consultants have over 20 years of business experience and an average of over 10 years of engineering and technology experience. This means that the project teams understand how systems work and how the technology impacts the business processes of organizations.

    We believe that success of an engagement is determined by strong project management, clear communication and mutual commitment working collaboratively. Our methodology begins by listening to the customer needs, then working with their teams to gain a clear understanding of the requirements, while providing a knowledge transfer of best practices for the organization. As a recognized leader providing customized software services, management and engineering solutions to companies around the world, our ability to deliver is a "granted"​ that makes companies put their trust in us to answer their day-to-day business challenges and put them on a path for greater success. We are the choice for our clients because we look at our clients business from a growth perspective.

    Industry: Information Technology and Services

    Specialties: Digital Transformation, Big Data and Analytics, Infrastructure Management Services, Testing and IV&V, Cyber Security, Active Directory and E-mail Infrastructure, Project Management, Training, and ERP, CRM. EAI, BI

    Similar Jobs

    See more jobs