What are the responsibilities and job description for the Cyber Security Engineer position at LIGHTFEATHER IO LLC?
LightFeather is seeking a highly skilled Cyber Security Engineer to join our team in Washington D.C. and enhance the security posture of enterprise applications across a diverse technology stack. This hybrid role involves implementing security controls, automating security processes, and ensuring compliance with federal cybersecurity standards. You will work closely with development, platform engineering, and compliance teams to proactively identify and mitigate risks while supporting modernization efforts.
This position requires an onsite presence in Washington, DC (2–3 days per week) and the ability to collaborate with multidisciplinary teams to safeguard critical systems and sensitive data.
This is a Full Time, Hybrid Position. Must be local to the DC Metro area.
Responsibilities:
Cyber Security Design and Implementation
- Collaborate with development teams, platform engineers, and customer engagement teams to evaluate security implications of change requests and system enhancements.
- Implement and configure security controls per federal standards (NIST SP 800-53 Rev. 5, FISMA, FedRAMP), as well as system/application-specific best practices.
- Apply security measures to diverse platforms, including ServiceNow, .NET applications, WordPress, cloud environments (AWS, Azure, GCP), UiPath, Unqork, GitLab, Atlassian suite, and containerized workloads.
- Conduct threat modeling, security architecture reviews, and risk assessments to enhance system security.
Security Operations and Automation
- Implement and integrate DevSecOps security best practices, including SAST, DAST, IAST, IaC (Terraform, Ansible), vulnerability scanning, and threat detection across the application portfolio.
- Develop and automate security functions using low-code/no-code solutions (UiPath, Unqork) and RPA toolsets to strengthen baseline security posture.
- Enhance continuous monitoring mechanisms by leveraging tools like Splunk, Azure Sentinel, Databricks, and other SIEM platforms.
- Configure and optimize security logging, auditing, and incident response mechanisms to provide real-time threat visibility.
Compliance and Risk Management
- Work closely with compliance officers, federal leadership, and security teams to ensure adherence to federal cybersecurity frameworks, including NIST 800-53, FISMA, FedRAMP, and the Department’s Ongoing Authorization (OA) program.
- Support Authorization to Operate (ATO) efforts, ensuring systems meet rigorous security assessment and authorization (SA&A) requirements.
- Develop automated compliance verification mechanisms to identify and remediate risks proactively.
Required Qualifications and Skills:
- US Citizenship.
- Active Top Secret clearance is strongly preferred (Secret clearance holders will be considered).
- Bachelor’s degree in Computer Science, Cyber Security, Information Systems, or a related field.
- CompTIA Security (required) and at least one additional certification such as CISSP, SSCP, GSEC, CEH, or equivalent.
- Minimum 5 years of experience in cybersecurity engineering within federal environments.
- Security Engineering: Hands-on experience securing at least one of the following platforms: ServiceNow, .NET applications, WordPress, AWS/Azure/GCP, UiPath, Unqork, GitLab, Atlassian suite.
- DevSecOps: Strong proficiency in Agile development, CI/CD pipelines, and secure software delivery.
- Security Automation & Analytics: Experience with IaC (Terraform, Ansible), SAST/DAST/IAST, vulnerability scanning, continuous monitoring, and cloud-native security controls.
Preferred:
- Experience supporting multiple concurrent development teams as a security engineer across diverse platforms.
- Familiarity with CI/CD pipeline security hardening and automated security testing.
- Hands-on experience building security dashboards, reports, and alerting mechanisms using Splunk, Databricks, Azure Sentinel, or other SIEM tools.
- Experience securing low-code/no-code solutions and cloud environments under a shared responsibility model.
Why Join LightFeather?
You'll be part of a team dedicated to meaningful impact, working on solutions that address mission-critical needs. Experience variety, fulfillment, and the opportunity to work with some of the best in the industry. We are committed to fostering a diverse and inclusive environment where everyone is valued and respected.
Commitment to Diversity
LightFeather is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.