Cybersecurity Engineer 4

  • Location: Irving, Texas
  • Type: Contract
  • Job #105275

Title: Cybersecurity Engineer 4 (Lead Cybersecurity Engineer)
Location: Irving, TX/ Chicago, IL (Local candidates only)
Work Arrangement: Hybrid (1 day onsite every Wednesday)
Future Requirement: Expected return to office 5 days/week; must be comfortable with full onsite attendance when required
Duration: 1 Year W2 Contract
Expected Start Date: August 31, 2026
Compensation: $88-90/hr

Summary

We are seeking an experienced Lead Cybersecurity Engineer to support a large enterprises application security and cloud security initiatives.

This individual will work directly with software engineering teams to implement Security by Design practices, secure software development lifecycle (SDLC) processes, vulnerability management programs, cloud security controls, and DevSecOps initiatives across enterprise applications and cloud environments.

This role serves as a trusted security advisor to development teams, helping identify, assess, and remediate security vulnerabilities while enabling secure software delivery in AWS and Azure environments.

The ideal candidate will possess strong application security expertise, vulnerability management experience, cloud security knowledge, secure development background, and the ability to communicate technical security concepts to both technical and non-technical stakeholders.

Key Responsibilities

  • Partner with software development teams to identify and remediate application security vulnerabilities
  • Lead Security by Design initiatives and promote secure SDLC practices
  • Perform threat modeling, risk assessments, and vulnerability analysis
  • Analyze security findings from CodeQL, Rapid7, penetration testing, and other assessment tools
  • Provide security consulting and architectural guidance to engineering teams and leadership
  • Support AWS and Azure cloud security initiatives
  • Drive vulnerability remediation and security risk reduction efforts
  • Manage and enable SAST, DAST, and SCA security testing programs
  • Coordinate penetration testing engagements and security assessments
  • Secure APIs, web services, cloud-native applications, and Infrastructure as Code (IaC)
  • Support DevSecOps initiatives and security integration within CI/CD pipelines
  • Collaborate across multiple teams to improve security processes, compliance, and enterprise standards

Required Qualifications

  • Bachelor’s degree with 8+ years of Cybersecurity/Information Security experience OR Master’s degree with 6+ years
  • Strong application security expertise (OWASP, CWE/CVE, SANS Top 25)
  • Experience with threat modeling, vulnerability assessments, and risk analysis
  • Knowledge of enterprise security architecture, Defense-in-Depth, and secure SDLC practices
  • Experience with Identity & Access Management (IAM) and API security
  • Hands-on experience with SCA, SAST, and DAST security testing tools
  • Cloud security experience with AWS and/or Microsoft Azure
  • Development experience with Java, Python, .NET, JavaScript, or similar languages
  • Automation and scripting experience
  • Strong communication skills and ability to partner with technical and non-technical teams

Preferred Experience

  • Professional security certifications such as CISSP, CCSP, CSSLP, GWAPT, GWEB, or AWS Security certifications
  • Experience securing web services, APIs, and cloud-native applications
  • Infrastructure as Code (IaC) and DevSecOps experience
  • Experience with CodeQL, Rapid7, and vulnerability management tools
  • Penetration testing support, remediation management, and security assessment programs
  • AI fluency and understanding of AI-related security risks and controls
  • Strong enterprise application and cloud security engineering background

Travel & Work Environment

  • Hybrid work arrangement beginning Day 1 (Wednesday onsite)
  • Expected transition to full-time onsite attendance in the future
  • Candidate will be assigned a dedicated portfolio of applications and partner directly with development teams
  • Part of a larger Cybersecurity Engineering organization establishing security standards and best practices
  • Highly collaborative environment working with software engineers, architects, product owners, and engineering leaders
  • Focused on application security, cloud security, vulnerability management, and DevSecOps initiatives

#LI-RG1
#INDOEM

Scroll to Top