The Cyber Engineer will assist CDM Smith in their Continuous Threat Exposure Management (CTEM) journey. Items such as identifying, tracking, and verifying remediation of vulnerabilities across internal and external applications and systems. This role requires broad knowledge of enterprise applications, operating systems, networking, cloud infrastructure, and emerging threats. Working with IT infrastructure, application development and security operations teams, the engineer helps reduce vulnerabilities and attack surface risk while staying current on threats affecting both advanced and legacy technologies. You will help architect, deploy and operate secure cloud application infrastructure aligned to business needs. This advanced technical role supports operational innovation, provides cloud security direction, and helps deliver resilient applications at scale. The engineer is expected to apply strong administrative, troubleshooting, architecture, engineering, and design skills while maintaining policies and controls that support business direction. Working with security leadership, cloud security engineers assess the threat landscape and adapt quickly to reduce business risk. They should be highly technical, with 5–7+ years of security and systems administration experience across SaaS, IaaS, and PaaS environments. Strong analytical thinking, adaptability, work ethic, listening, and communication skills are essential. This role will also lead vulnerability management and collaboration with technology leadership and business units to secure company digital assets. They report on vulnerability criticality, exploit probability, business impact and remediation progress to security and IT leadership. The role requires pragmatic collaboration, urgency when needed and support for strategic and tactical initiatives that reduce attack surface through automation, innovation and operational efficiency. Develop and maintain secure, resilient enterprise-grade cloud & on-prem processes in tandem with architects and system engineers. Secure AI & NHI at scale Secure business applications and computing environments across public, private, or hybrid cloud infrastructures. Protect business applications in compliance with privacy, security, business resiliency, and compliance frameworks as defined in corporate policies. Maintain a consistent, secure environment using configuration management solutions (e.g., Puppet, Chef, Ansible, etc.). Conduct rigorous oversight of security systems and security configuration administration to reduce risk to enterprise systems and accounts. Deploy strong identity and access management (IDAM) controls across applications and computing environments. Assist with development, maintenance and utilization of scripts (e.g., Python, Ruby, etc.) to support custom extract, transform load (ETL) tools with a security focus for data flow. Attend regular technical project and implementation meetings and serve as the security consultant to help guide secure application and infrastructure configurations. Actively monitor, assess and recommend tactical and strategic initiatives based on new and emerging threats posing risk to cloud computing environments. Manage remediation efforts after security assessment findings outline weaknesses requiring attention. Document, formulate and enforce areas of security improvement that balance risk with business operations and do not diminish efficiencies or innovation. Stay apprised of current and proposed security changes impacting regulatory, privacy and security industry best practice guidance. Apply learned knowledge across key lines of business, including products, practices and procedures. #LI-LP1 #LI-REMOTE
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior