
Senior Security Engineer, FedRAMP
Abnormal Security4 days ago
Base Salary
$153k - $220k/yr
Responsibilities
- Build secure delivery workflows and policy gates for applications and infrastructure deployed to the federal environment.
- Integrate security scanning, control validation, and infrastructure-as-code reviews into delivery workflows.
- Build hardened system image pipelines and automate patch testing, rollout, validation, exception management, and compliance reporting.
- Design and enforce cloud identity, access, organization, resource, and configuration controls.
- Build preventive guardrails that block insecure or unauthorized configurations.
- Own security logging and monitoring pipeline reliability, including ingestion coverage, data quality, source health, retention, and alerting.
- Develop telemetry health checks, tune detections, and build automation for alert enrichment, evidence preservation, investigation, and containment.
- Lead security incident response, including investigation, containment, recovery, evidence preservation, and after-action reporting.
- Partner with cross-functional infrastructure, security, operations, incident response, and compliance teams.
Requirements
- 8+ years of experience in cloud security engineering, DevSecOps, infrastructure security, or a closely related engineering discipline.
- Deep hands-on experience with AWS.
- Strong experience building or securing cloud deployment pipelines and infrastructure-as-code workflows.
- Proficiency in at least one scripting or programming language, preferably Python, with experience automating recurring operational work.
- Working knowledge of identity and access management design and enforcement in large cloud environments.
- Production experience with security monitoring and incident response, including investigation, containment, recovery, and operational follow-through.
- Experience integrating security automation into CI/CD or SecOps workflows is preferred.
- Experience with federal audits, 3PAO engagements, FedRAMP, DoD IL4, DoD IL5, NIST SP 800-53, continuous monitoring, or technical evidence requirements is preferred.
- Experience with SaaS security operations, Terraform or container security reviews, compliance automation, continuous control monitoring, or automated evidence management is preferred.
Benefits
- Base salary range is $153,000—$220,000 USD.
- The role may be eligible for bonus or incentive compensation, equity, and a comprehensive benefits package.
- The position supports a FedRAMP-authorized federal environment and includes regulated-cloud security and compliance work.
About Abnormal Security
Abnormal AI is the leading AI-native human behavior security platform, leveraging machine learning to stop sophisticated inbound attacks and detect compromised accounts across email and connected applications.