{"schemaVersion":"jobsearcher.job.v1","id":"ed3dd95980b6d28ce9bc571c","url":"https://jobsearcher.com/jobs/ed3dd95980b6d28ce9bc571c","canonicalUrl":"https://jobsearcher.com/jobs/ed3dd95980b6d28ce9bc571c","title":"Security Engineer","description":"Overview\nIn this role you safeguard ASI’s cloud and software environments to meet U.S. government security standards. You’ll harden AWS GovCloud and Microsoft GCC High, and drive compliance with NIST 800-171/CMMC and NIST 800-53. You collaborate with product, platform, and compliance teams to embed security across the SDLC and respond to incidents. The position offers hands-on work with government-grade cloud security, threat modeling, and automation at scale. This is a mission-driven role at the intersection of security, defense tech, and critical infrastructure.\n\nResponsibilitiesHarden and maintain cloud and endpoint environments to meet federal security standardsSupport compliance efforts for NIST 800-171/CMMC and NIST 800-53 in AWS GovCloud and GCC HighInvestigate and remediate vulnerabilities; escalate complex issues as neededLead threat modeling sessions using STRIDE, PASTA, and related methodologiesAutomate configuration management, patching, and policy enforcement for networks, servers, and endpointsOperate and monitor security events with SIEM tools (e.g., Microsoft Sentinel, Splunk)Collaborate with product, Platform, and compliance teams to embed security in the SDLCSupport incident response and post-incident reviews, with growth toward leadership in this area\nKey requirementsProficient in Python or RustKnowledge of container and CI/CD security (Kubernetes, image hardening, vulnerability scanning)Experience with supply chain security (SBOM, artifact generation, dependency management)Hands-on with cloud-native security services (GuardDuty/Security Hub, Azure Defender)Experience with IaC (Terragrunt/Terraform)Exposure to federal security frameworks (CMMC, NIST 800-53, FedRAMP)Experience securing government cloud environments (AWS GovCloud)On-call incident response and remediation experienceSecurity Clearance eligibility; U.S. citizenship requiredOn-site presence in Boston at least three days per weekcollaborationproblem-solvingcommunicationPythonRustKubernetes","company":"Air Space Intelligence","rawCompany":"air space intelligence","city":"Somerville","state":"MA","isRemote":false,"isActive":false,"createdAt":"2026-09-15T03:23:16.779Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Security Engineer","description":"Overview\nIn this role you safeguard ASI’s cloud and software environments to meet U.S. government security standards. You’ll harden AWS GovCloud and Microsoft GCC High, and drive compliance with NIST 800-171/CMMC and NIST 800-53. You collaborate with product, platform, and compliance teams to embed security across the SDLC and respond to incidents. The position offers hands-on work with government-grade cloud security, threat modeling, and automation at scale. This is a mission-driven role at the intersection of security, defense tech, and critical infrastructure.\n\nResponsibilitiesHarden and maintain cloud and endpoint environments to meet federal security standardsSupport compliance efforts for NIST 800-171/CMMC and NIST 800-53 in AWS GovCloud and GCC HighInvestigate and remediate vulnerabilities; escalate complex issues as neededLead threat modeling sessions using STRIDE, PASTA, and related methodologiesAutomate configuration management, patching, and policy enforcement for networks, servers, and endpointsOperate and monitor security events with SIEM tools (e.g., Microsoft Sentinel, Splunk)Collaborate with product, Platform, and compliance teams to embed security in the SDLCSupport incident response and post-incident reviews, with growth toward leadership in this area\nKey requirementsProficient in Python or RustKnowledge of container and CI/CD security (Kubernetes, image hardening, vulnerability scanning)Experience with supply chain security (SBOM, artifact generation, dependency management)Hands-on with cloud-native security services (GuardDuty/Security Hub, Azure Defender)Experience with IaC (Terragrunt/Terraform)Exposure to federal security frameworks (CMMC, NIST 800-53, FedRAMP)Experience securing government cloud environments (AWS GovCloud)On-call incident response and remediation experienceSecurity Clearance eligibility; U.S. citizenship requiredOn-site presence in Boston at least three days per weekcollaborationproblem-solvingcommunicationPythonRustKubernetes","datePosted":"2026-09-15T03:23:16.779Z","dateModified":"2026-09-15T03:23:16.779Z","hiringOrganization":{"@type":"Organization","name":"Air Space Intelligence","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Somerville","addressRegion":"MA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"ed3dd95980b6d28ce9bc571c"},"url":"https://jobsearcher.com/jobs/ed3dd95980b6d28ce9bc571c"}}