Jobs and Careers
EC

Senior Security Engineer

ECS
United Statesfull_timeVerifiedPosted 26 Nov 2025
💰 $180,000/yr($156,000/yr$180,000/yr)

About the role

ECS is seeking a Senior Security Engineer to work in our Suitland, MD office.  

 

ECS Federal is a leading information security and information technology company in Washington, DC. We are looking to hire a Senior Security Engineer to support a full range of cyber security services on a long-term contract in Washington DC. The position is full time/permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background clearance.

 

Position Responsibilities:

  • Design and develop cybersecurity or cybersecurity-enabled
  • Design hardware, operating systems, and software applications to adequately address cybersecurity
  • Design or integrate appropriate data backup capabilities into overall system designs and ensure that appropriate technical and procedural processes exist for secure system backups and protected storage of backup data.
  • Develop and direct system testing and validation procedures and documentation
  • Develop detailed security design documentation for component and interface specifications to support system design and development.
  • Develop Disaster Recovery and Continuity of Operations plans for systems under development and ensure testing prior to systems entering a production environment.
  • Develop specific cybersecurity countermeasures and risk mitigation strategies for systems and/or
  • Identify and direct the remediation of technical problems encountered during testing and implementation of new systems (e.g., identify and find workarounds for communication protocols that are not interoperable).
  • Identify and prioritize essential system functions or sub-systems required to support essential capabilities or business functions for restoration or recovery after a system failure or during a system recovery event based on overall system requirements for continuity and availability.
  • Identify, assess, and recommend cybersecurity or cybersecurity-enabled products for use within a system and ensure that recommended products are in compliance with organization's evaluation and validation requirements.
  • Implement security designs for new or existing system(s).
  • Incorporate cybersecurity vulnerability solutions into system designs (e.g., Cybersecurity Vulnerability Alerts).
  • Perform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.
  • Design, implement, test, and evaluate secure interfaces between information systems, physical systems, and/or embedded technologies.
  • Design, develop, integrate, and update system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation.
  • Design to security requirements to ensure requirements are met for all systems and/or applications.
  • Develop mitigation strategies to address cost, schedule, performance, and security risks.
  • Perform security reviews and identify security gaps in architecture. 
  • Trace system requirements to design components and perform gap analysis.
  • Verify stability, interoperability, portability, and/or scalability of system architecture.

 

Salary Range: $156,000 - $180,000

General Description of Benefits

Qualifications
  • Strong written and verbal communication
  • Knowledge of secure configuration management (e.g., Security Technical Implementation Guides (STIGs), cybersecurity best practices on cisecurity.org).
  • Knowledge of software development models (e.g., Waterfall Model, Spiral Model).
  • Knowledge of DevSecOps and software engineering
  • Knowledge of structured analysis principles and methods.
  • Experience designing architectures and frameworks.
  • Knowledge of system design tools, methods, and techniques, including automated systems analysis and design tools.
  • Knowledge of the systems engineering process.
  • Knowledge of Supply Chain Risk Management Practices (NIST SP 800-161)
  • Knowledge of critical infrastructure systems with information communication technology that were designed without system security considerations.
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
  • Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.

Certifications/Licenses:

  • Bachelor’s degree or higher
  • 10+ yea

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

ECS

View company profile →