Principal Information Security Engineer

Posted 6hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Principal Information Security Engineer securing ASRC Federal’s DSOP platform for the U.S. Department of Defense. Assessing Kubernetes and containers, managing vulnerabilities, and integrating zero-trust controls across DevSecOps environments.

Responsibilities:

  • Conduct container and Kubernetes security assessments
  • Develop hardened configurations and STIG-aligned baselines
  • Build and maintain security controls for container registries, images, and pipelines
  • Perform vulnerability scanning, remediation tracking, and reporting
  • Support RMF accreditation, continuous monitoring, and security engineering tasks
  • Collaborate with DevSecOps and infrastructure teams to integrate security into CI/CD
  • Implement zero-trust security patterns and secure deployment workflows
  • Manage secrets, certificate rotation, and identity enforcement

Requirements:

  • 8–10+ years of cybersecurity or security engineering experience
  • Active DoD Secret clearance or higher; candidates without at least a Secret clearance will not be considered
  • Expertise with Kubernetes security, container scanning tools, and image hardening
  • Bachelor’s degree in Computer Science, Engineering, or a technical discipline with an Information Security or Cyber Security concentration, or an advanced degree with such a concentration is preferred; alternatively, 4+ additional years of equivalent professional work experience
  • Familiarity with DoD STIGs, RMF, ACAS, Nessus, and OpenSCAP
  • Experience supporting secure cloud or platform environments
  • Security certifications preferred, including Security+, CEH, CISSP, and CCSK

Benefits:

  • Active DoD Secret clearance or higher is required for consideration
  • Security certifications are preferred (Security+, CEH, CISSP, CCSK, etc.)