- Job type
- Not listed
- Work mode
- Not listed
- Level
- Principal
- Department
- Information Technology
- Experience
- Not listed
- Posted
- Sep 11, 2026
About the role
Role Description:
The Security/AI Assurance Engineer will ensure that all capabilities developed by the team comply with security requirements, classification boundaries, IC security policies, and applicable RMF/cATO processes. Security will be incorporated throughout architecture, development, testing, deployment, and sustainment rather than treated as a final approval activity.
The engineer will conduct security architecture reviews, threat modeling, vulnerability assessment, security testing, AI-specific risk assessment, and compliance documentation. The position will also support the Government's software approval process and work closely with the platform and software engineers to automate security controls wherever practical.
Technical Skills:
- RMF
- cATO/DevSecOps security practices
- Security architecture
- Threat modeling
- Vulnerability management
- Security testing
- Application security
- API security
- Container security
- Kubernetes security
- Cloud security
- Identity and access management
- Authentication/authorization
- Encryption and key management
- Logging and security monitoring
- Linux security
- Network segmentation
- Data classification and handling
- Secure SDLC
- SBOM and software supply-chain security
- NIST cybersecurity frameworks
- STIGs and/or applicable government security controls
- AI/ML security and AI assurance