SECURITY ENGINEER/ARCHITECT

Emagine IT•Rockville, MD
•$0 - $170,000•Remote

About The Position

Emagine IT is seeking a Security Engineer / Architect to build the security automation, DevSecOps, and analytics capabilities of the Government's cybersecurity program under the direction of the Lead Security Engineer. This role designs and delivers the program's GitLab CI/CD security pipeline, configuration-as-code baselines, Power BI security dashboards, and machine-readable (OSCAL) security documentation, and provides architecture guidance that helps Government systems meet Department security requirements. Consistent with the CIO-SP3 Systems Architect – Level II labor category, the role establishes system information requirements, designs architecture to support total and cross-functional requirements, and ensures compliance with the Agency enterprise architecture and applicable reference models.

Requirements

  • Undergraduate degree.
  • At least 5 years of enterprise security architecture, security engineering, and system administration experience.
  • U.S. citizen or lawful permanent resident.
  • Ability to obtain and maintain a Public Trust suitability determination (tier to be confirmed with the Government), obtain a Government PIV card, and sign the Government Contractor Non-Disclosure Agreement and Government Rules of Behavior before receiving access to Government systems or data.
  • Must complete Government security awareness, privacy, and records management training before performing work and annually thereafter.

Nice To Haves

  • Hands-on experience with CI/CD security tooling, infrastructure/configuration as code, and AWS cloud security.
  • GitLab, Ansible, and Power BI experience.
  • Experience with NIST OSCAL, SSDF, SBOM, and federal DevSecOps programs.

Responsibilities

  • Establish system information requirements and design security architecture, including software, hardware, and communications, to support the total requirements as well as present and future cross-functional requirements and interfaces.
  • Ensure solutions are compatible with open systems architecture standards and applicable reference models, and that the common operating environment complies with the Agency enterprise architecture.
  • Evaluate analytically and systematically problems of workflows, organization, and planning, and develop appropriate corrective action.
  • Design and implement GitLab CI/CD security scanning (SAST, DAST, dependency scanning, secret detection) and security gates, generating OMB M-24-04 / SSDF attestation artifacts and SBOMs.
  • Convert Department and agency security configuration settings into automated configuration management (e.g., Ansible) for standard operating systems within 6 months of award.
  • Build and maintain the NIST CSF Dashboard and Enterprise Security Metrics Dashboard (6 months, then monthly) by correlating SIEM, IDS, CDM, GRC, and tool data.
  • Develop OSCAL-formatted control catalogs, baselines, SSPs, and assessment artifacts within 12 months of NIST official release, validated against the OSCAL schema.
  • Provide architecture reviews and technical solutions for vulnerability findings and security gaps; analyze Government design requirements for Government systems.
  • Support GRC tool deployment, Zero Trust implementation, PQC inventory, and AI security assessments.
  • Collaborate with the Government infrastructure team on DevSecOps workflows and automated security configuration for on-premises and cloud infrastructure.
  • Document all automation in version-controlled repositories with runbooks for the COR and infrastructure team.

Benefits

  • medical, dental, and vision insurance
  • a 401(k) with company match
  • paid time off and holidays
  • professional development and certification support
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service