- Страна
- США
- Зарплата
- 150 000 $ – 180 000 $
Откликайтесь
на вакансии с ИИ

Secure Infrastructure Engineer
Отличная вакансия с высокой зарплатой, четко определенными технологиями и возможностью работать над критически важными проектами в сфере здравоохранения и национальной безопасности.
Сложность вакансии
Высокая сложность обусловлена необходимостью глубоких знаний в специфических стандартах безопасности (DISA STIGs), опытом работы с контейнеризацией и требованием к гражданству США для получения допуска к секретной информации.
Анализ зарплаты
Предлагаемая зарплата ($150k - $180k) находится на верхней границе рыночного диапазона для инженеров по безопасности инфраструктуры в США, особенно для позиций, требующих допуска к секретной информации.
Сопроводительное письмо
I am writing to express my strong interest in the Secure Infrastructure Engineer position at Dark Wolf Solutions. With over four years of experience in systems engineering and a deep focus on infrastructure hardening, I am confident in my ability to contribute to your mission of building secure "Gold Images" for your major medical technology client. My background includes extensive work with Windows Server administration and the automated application of DISA STIGs and CIS Benchmarks using PowerShell and Ansible, which aligns perfectly with the core requirements of this role.
Throughout my career, I have specialized in balancing strict federal compliance with operational functionality. I have a proven track record of integrating secure baselines into CI/CD pipelines and managing container security within Kubernetes environments. Furthermore, my experience with cloud-native architectures in AWS and Azure, combined with my commitment to maintaining low-CVE environments, makes me a strong fit for your surgical engineering team. I am a US citizen and am fully prepared to undergo the necessary clearance processes required for this position.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в darkwolfsolutions уже сейчас
Присоединяйтесь к команде Dark Wolf и создавайте защищенную инфраструктуру будущего для лидеров медтеха!
Описание вакансии
Dark Wolf is seeking a Secure Infrastructure Engineer to join our team. This engineer will be responsible for designing, hardening, and automating the deployment of secure baseline images for a major medical technology client. The ideal candidate will have deep expertise in Windows operating systems and database hardening, specifically aligning with STIGs. You will work within a surgical engineering team to define and build "Gold Images" that balance strict federal compliance with operational functionality. This position will call for support at a main DW office location at a hybrid capacity. Tasks may include assisting with:
- Designing and creating hardened "Gold Images" for core technologies including Windows Server 2025, Windows 11, and MS SQL.
- Automating the application of DISA STIGs and CIS Benchmarks using PowerShell, Ansible, or similar scripting tools.
- Integrating secure baselines into a centralized artifact repository for consumption by product teams.
- Developing and maintaining documentation for security policies, configuration changes, and exception handling.
- Collaborating with offensive security teams to validate image resilience against vulnerabilities.
- Analyzing vulnerability scan results (from tools like Nessus or proprietary pipelines) and remediating configuration drift.
- Deploying and maintaining a centralized artifact repository on cloud-native architecture (AWS/Azure).
- Building and maintaining CI/CD pipelines to automate the ingestion, scanning, and publishing of secure container images.
- Integrating low-CVE base images (e.g., via Chainguard) into the development supply chain.
- Implementing and managing automated compliance scanning tools (SAST/DAST/Fuzzing) within the build pipeline.
Required Qualifications:
- Bachelor’s degree in IT Security, Information Systems, or equivalent
- Minimum of 4+ years of experience in Systems Engineering, Infrastructure Operations, or working with commercial cloud providers (AWS, Azure, or GCP)
- Deep expertise in Windows Server and Desktop administration and configuration
- Proven experience applying and managing DoD DISA STIGs or CIS Benchmarks in an enterprise environment
- Extensive experience with Containerization (Docker, Kubernetes) and Container Security
- Strong proficiency in scripting and automation (PowerShell, Python, Ansible, or Terraform) to enforce security configurations
- Solid problem-solving skills and the ability to troubleshoot complex application failures caused by security hardening
- US Citizenship and ability to be clearable up to the Top Secret clearance with SCI eligibility
Desired Qualifications:
- Experience working in the healthcare industry or with medical device software
- Experience with Platform One, Iron Bank, or similar DoD software factories
- Understanding of the Risk Management Framework (RMF) and accreditation processes
- Experience hardening PostgreSQL or other relational databases
- Experience with automated compliance scanning tools and proprietary fuzzing or scanning pipelines
- Industry certifications, such as AWS Certified Solutions Architect, Security+, or MCSE.
This position will be supported at a hybrid capacity at any of the following DW Office locations: Herndon, VA, Omaha, NE, Colorado Springs, CO, Tampa, FL.
The estimated salary range for this position is $150,000.00 - $180,000.00, commensurate on experience and technical skillset.
We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.
We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- Windows Server
- Microsoft SQL Server
- DISA STIGs
- CIS Benchmarks
- PowerShell
- Ansible
- AWS
- Azure
- Docker
- Kubernetes
- Python
- Terraform
- CI/CD
- Nessus
- Chainguard
Возможные вопросы на собеседовании
Проверка практического опыта автоматизации комплаенса.
Опишите ваш опыт автоматизации применения DISA STIGs с использованием Ansible или PowerShell: с какими основными трудностями вы сталкивались?
Оценка навыков решения проблем при конфликте безопасности и функциональности.
Как вы подходите к отладке приложения, которое перестало работать после применения жестких политик безопасности (hardening)?
Проверка знаний в области безопасности контейнеров.
Какие стратегии вы используете для минимизации уязвимостей (CVE) в базовых образах контейнеров перед их публикацией в репозиторий?
Оценка опыта работы с облачной инфраструктурой.
Каким образом вы организуете процесс управления конфигурациями в гибридной среде (on-prem и AWS/Azure) для обеспечения единообразия политик?
Проверка понимания жизненного цикла разработки ПО в госсекторе.
Знакомы ли вы с концепцией DevSecOps в контексте DoD (например, Platform One) и как вы интегрируете сканирование соответствия в CI/CD пайплайны?
Похожие вакансии
Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)
Эксперт по защите периметра (WAF)
DevOps-инженер/ИБ (devops engineer, information security)
Application Security Еngineer (AppSec)
Инженер по сетевой безопасности
Администратор по информационной безопасности
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- США
- Зарплата
- 150 000 $ – 180 000 $