Principal Information Security Engineer
Posted 6hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Principal Information Security Engineer securing ASRC Federal’s DSOP platform for the U.S. Department of Defense. Assessing Kubernetes and containers, managing vulnerabilities, and integrating zero-trust controls across DevSecOps environments.
Responsibilities:
- Conduct container and Kubernetes security assessments
- Develop hardened configurations and STIG-aligned baselines
- Build and maintain security controls for container registries, images, and pipelines
- Perform vulnerability scanning, remediation tracking, and reporting
- Support RMF accreditation, continuous monitoring, and security engineering tasks
- Collaborate with DevSecOps and infrastructure teams to integrate security into CI/CD
- Implement zero-trust security patterns and secure deployment workflows
- Manage secrets, certificate rotation, and identity enforcement
Requirements:
- 8–10+ years of cybersecurity or security engineering experience
- Active DoD Secret clearance or higher; candidates without at least a Secret clearance will not be considered
- Expertise with Kubernetes security, container scanning tools, and image hardening
- Bachelor’s degree in Computer Science, Engineering, or a technical discipline with an Information Security or Cyber Security concentration, or an advanced degree with such a concentration is preferred; alternatively, 4+ additional years of equivalent professional work experience
- Familiarity with DoD STIGs, RMF, ACAS, Nessus, and OpenSCAP
- Experience supporting secure cloud or platform environments
- Security certifications preferred, including Security+, CEH, CISSP, and CCSK
Benefits:
- Active DoD Secret clearance or higher is required for consideration
- Security certifications are preferred (Security+, CEH, CISSP, CCSK, etc.)


















