In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.
Description of Task to be Performed:
The Security Infrastructure & Exposure Engineer willdesign, build, and scale our attack surface management and threat exposure detection capabilities. You will engineer internal tools and automated pipelines that proactively map assets, model attack paths, and eliminate security blind spots before they can be exploited.
Core Responsibilities:
Attack Surface Management: Architect and maintain Continuous Asset Attack Surface Management (CAASM) solutions for real-time asset discovery.
Attack Path Modeling: Map network topologies, analyze segmentation, and build automated attack path graphs to identify choke points.
Telemetry & Correlation: Integrate active/passive scanning data with Identity Provider (IdP) telemetry to pinpoint exposed or unmanaged infrastructure.
Pipeline Integration: Embed automated vulnerability and exposure testing into Infrastructure-as-Code (IaC) and CI/CD deployment pipelines.
Cloud Architecture Defense: Evaluate and harden complex cloud architectures against emerging exposure techniques.
Primary Languages & Technical Stack
Go, Rust, and Python (at least one required)
Required Qualifications:
Clearance: Active TS/SCI Clearance with CI Polygraph
Education & Years of Experience: Bachelor’s degree and 8 years of experience related to specific functional area.
Certifications: Active certifications for both IAT Level II (e.g. CompTIA Security+) and Cyber Security Service Provider (CSSP) Infrastructure Support (e.g. CompTIA Cloud+) by program onboarding date.
The following individual certifications cover both certification requirements for this program: CompTIA Cybersecurity Analyst, CySA+; EC-Council Certified Network Defender (CND); GlAC Global Industrial Cyber Security Professional, GICSP; (ISC)2 System Security Certified Practitioner (SCCP).
Hands-on experience and knowledge with the following:
Asset Discovery: Proven experience with CAASM tooling and building inventory systems.
Network & Graph Modeling: Deep understanding of network topology, segmentation verification, and graph-based attack path analysis.
Scanning & Identity: Hands-on experience with active/passive network scanning and correlating data with identity registries (e.g., Okta, Azure AD).
Cloud & DevOps: Strong background in cloud security architecture (AWS, GCP, or Azure), IaC (Terraform, OpenTofu), and CI/CD security validation.
Preferred Qualifications:
Experience leveraging advanced AI models (e.g., ChatGPT, Grok, Claude) to automate security workflows: (ChatGPT, Grok, Claude, Claude Code, Codex)
Multiple scripting and development languages
Familiarity with developer-focused AI tools like Claude Code or OpenAI Codex to accelerate engineering velocity
Additional Information
Benefits
Generous cost sharing for medical insurance for the employee and dependents
100% company paid dental insurance for employees and dependents
100% company paid long-term and short-term disability insurance
100% company paid vision insurance for employees and dependents
401k plan with generous match and 100% immediate vesting
Competitive Pay
Generous paid leave and holiday package
Tuition and training reimbursement
Life and AD&D Insurance
About AnaVation
AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team.
If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you!
AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.
Diese Cookies sind für das Funktionieren der Website erforderlich und können in unseren Systemen nicht abgeschaltet werden. Sie können Ihren Browser so einstellen, dass er diese Cookies blockiert, aber dann könnten einige Teile der Website nicht funktionieren.
Sicherheit
Benutzererfahrung
Zielgruppenorientierte Cookies
Diese Cookies werden über unsere Website von unseren Werbepartnern gesetzt. Sie können von diesen Unternehmen verwendet werden, um ein Profil Ihrer Interessen zu erstellen und Ihnen an anderer Stelle relevante Werbung zu zeigen.
Google Analytics
Google Ads
Wir benutzen Cookies
🍪
Unsere Website verwendet Cookies und ähnliche Technologien, um Inhalte zu personalisieren, das Nutzererlebnis zu optimieren und Werbung zu indvidualisieren und auszuwerten. Indem Sie auf Okay klicken oder eine Option in den Cookie-Einstellungen aktivieren, stimmen Sie dem zu.
Die besten Remote-Jobs per E-Mail
Schliess dich über 5'000+ Personen an, die wöchentlich Benachrichtigungen über Remote-Jobs erhalten!