Senior Security Engineer

 Posted 12 days ago
     
 $153K - $220K per year
  
5-10 years experience
Apply Now

Please mention DailyRemote when applying

AI Summary

The role focuses on ensuring the security and resilience of the FedRAMP environment through security operations engineering. Key duties include managing CI/CD pipelines, access management, patch cycles, and responding to security incidents.

About the Role

Abnormal AI is seeking a Senior Security Engineer to ensure Abnormal’s FedRAMP environment operates securely, resiliently, and efficiently. This role focuses on security operations engineering, with responsibilities spanning CI/CD pipelines, access management, patch management, change reviews, incident response, and security automation. The engineer will directly own and improve the technical workflows that keep Abnormal Gov systems compliant and resilient at scale. The ideal candidate combines deep cloud and infrastructure security expertise with operational discipline, and is AI-enabled to maximize efficiency and reduce overhead.

What you will do

  • Maintain and improve CI/CD pipelines to support secure deployments and infrastructure workflows.
  • Manage infrastructure-as-code (IaC) PR and Change Control Board reviews, ensuring changes are tested, approved, and secure before release.
  • Perform security impact analyses (SIAs) for system/application changes and provide recommendations.
  • Run OS and infrastructure patch cycles; manage hardened images and patch workflows for FedRAMP environments.
  • Govern access management, including account provisioning, RBAC module maintenance, and periodic reviews.
  • Manage logging and monitoring pipelines; tune SIEM ingestion and alerting for coverage and accuracy.
  • Triage and respond to security incidents, from alert investigation through containment, recovery, and after-action reporting.
  • Maintain and refine runbooks, SOPs, and documentation to ensure consistent operations and audit readiness.
  • Collaborate with DevInfra, FedOps, Product, and Compliance teams to embed secure practices into operations and development.

Must Haves 

  • 5 - 7 years in security engineering or infrastructure operations within federal or regulated cloud environments. 
  • Strong familiarity with NIST 800-53 controls and continuous monitoring practices.
  • Proven delivery of AWS/SaaS security best practices.
  • Hands-on expertise with CI/CD, infrastructure automation, and IaC security practices.
  • Experience in patch management, hardened baselines, and secure image pipelines.
  • Strong knowledge of identity and access management (IAM) design and enforcement in large-scale environments.
  • Proven ability to manage SIEM pipelines and lead Tier 1/ Tier 2 incident response.
  • Strong technical documentation, collaboration, and incident/project management skills.

Nice to Have 

  • Experience integrating security automation into CI/CD pipelines and SecOps workflows.
  • Prior experience supporting federal audits or 3PAO engagements.
  • Knowledge of SaaS security operations and monitoring at scale.
  • Experience driving automation in security operations, compliance tracking, and evidence management.
  • Knowledge of SaaS security operations and modern cloud environments; exposure to DevSecOps pipelines or security reviews for Terraform/containers.


#LI-JT1

Actual compensation will be determined based on several non-discriminatory factors including skills, experience, qualifications, and geographic location.
In addition to base salary, this role may be eligible for bonus or incentive compensation, equity, and a comprehensive benefits package.

Base salary range:
$153,000$220,000 USD


Abnormal AI is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status or other characteristics protected by law. For our EEO policy statement please click here. If you would like more information on your EEO rights under the law, please click here.

Similar Jobs

See all Remote Software Development jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Security Engineer

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified