Senior Security Engineer

By Light Professional IT Services

Orlando, USonsitePosted Jul 23, 2026
Posting intelligenceActively listedReposted 5×, possible evergreen/ghost posting

Skills

terraformansiblepythoncicd

About the role

Company Overview:

By Light Professional IT Services LLC readies warfighters and federal agencies with technology and systems engineered to connect, protect, and prepare individuals and teams for whatever comes next. Headquartered in McLean, VA, By Light supports defense, civilian, and commercial IT customers worldwide.

Cole Engineering Services (CESI), a By Light company, is recognized as a premier provider of modeling and simulation (M&S) training solutions to the Federal Government and industry. Since 2004, CESI has been at the forefront of developing, maintaining, and integrating simulation-based training, serious gaming, technical services, training and other support in live, virtual, constructive, and gaming (LVCG) domains. CESI also designs, builds and runs infrastructure, platforms, applications and processes that enable cyber training for the integrated multi-domain force. Our vision is to become a worldwide full spectrum LVCG and cyber training/analysis developer, integrator and services provider.

Position Overview:

This position is for the NCRC Range Modernization (RM) Senior Security Engineer position providing senior-level development, testing, and security support associated with their designated NCRC product scrum teams.

Responsibilities:

Vulnerability Management

Implement patching procedures for multiple Operating Systems (Linux, Windows, VMware, Cisco)

Run and review vulnerability scans and STIGs

Prioritize vulnerability remediation efforts across endpoints, networks, and applications

Automate patching process for multiple Operating Systems (Linux/Windows)

Responsible for securing and hardening hardware and software systems.

Governance, Risk & Compliance

Support tracking resolution and milestones for program's Plan of Action and Milestones (POA&M) items

Develop and maintain security policies, procedures, and standards

Ensure compliance with relevant standards, directives and regulations

Conduct risk assessments and support audit activities

Remain abreast of emerging technologies, cyber threats and security tools

Security Architecture & Engineering

Design, implement, and manage security solutions (e.g., SIEM, EDR, firewalls, IDS/IPS, IAM, VPN)

Evaluate and integrate new security technologies and tools

Advise ISSO and ISSM on issues related to securing and monitoring classified DoD networks

Creation and maintaining of data flow and system boundary diagrams

Agile/Scrum process

Required Experience/Qualifications:

Bachelor’s (BS) degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)

Security+ Certification

Strong understanding of network protocols, security architecture, and security practices

Experience with Linux-based and Windows-based systems

Proficient in scripting (e.g., Python, PowerShell, Bash)

Experience with automation tools (e.g., Ansible, Terraform, Chef, Puppet)

Understanding of CI/CD

In-depth knowledge of modern threat landscapes, vulnerabilities, mitigation techniques, and security tools and processes

Familiarity with NIST 800-53, NIST 800-171, SOC 2 and/or ISO 27001

Ability to write clear and concise cybersecurity guidance, procedures and documentation

Preferred Experience/Qualifications:

DoD RMF security practices and regulations

Virtualization (preferably VMware)

Familiarity with open-source security tools

Familiarity with ACAS, Tenable Security Center, and Tenable Nessus

Special Requirements/Security Clearance:

In accordance with the specifications of a government contract, eligibility for this position mandates U.S. Citizenship status and a minimum SECRET security clearance with the ability to obtain a TOP SECRET The precise security clearance requisites will be detailed in the Government's Task Order.

This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. The above is intended to describe the general contents of and requirements for the performance of this job.

Benefits Overview:

CESI recognizes that our strength is our people. We support every employee as an individual to build strong teams across the enterprise. Our benefit package includes:

Medical, Dental & Vision Coverage

Wellness Program

401(k) Matching

Disability (Short Term & Long Term)

Employee Assistance Program

Life Insurance

Education & Training

Generous Leave Policy (11 Federal Holidays, PTO, Military Leave, Bereavement and Jury Duty)

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for Security Engineer roles in United States varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Security Engineer hub for United States medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, Personio, Teamtailor and other major ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.