Senior Cybersecurity Engineer

Overview

On Site
$36.55 - $49.45 hourly
Accepts corp to corp applications
Contract - Independent
Contract - W2
Contract - Temp

Skills

Version Control
Security Controls
API
Network Design
Access Control
Management
Data Loss Prevention
Standard Operating Procedure
Documentation
Workflow
Threat Modeling
Risk Assessment
Vulnerability Management
Incident Management
DevOps
Mentorship
Knowledge Sharing
Security Engineering
Software Development
Software Development Methodology
OWASP
Continuous Integration
Continuous Delivery
GitHub
Jenkins
SIEM
Splunk
Cloud Security
Amazon Web Services
DLP
Cloud Computing
Computer Networking
TLS
DNS
Dragon NaturallySpeaking
HTTP
Web Applications
Linux
Microsoft Windows
Email Security
SPF
Technical Writing
Scripting
Programming Languages
Python
Bash
JavaScript
NIST SP 800 Series
ISO/IEC 27001:2005
Terraform
Orchestration
Docker
Kubernetes
RBAC
Amazon Lambda
Artificial Intelligence
Messaging

Job Details

RESPONSIBILITIES:
Kforce has a client seeking a Senior Cybersecurity Engineer in Miami, FL.

Responsibilities:
* Lead secure software development lifecycle (SDLC) practices across engineering teams
* Design, implement, and maintain secure CI/CD pipelines, integrating tools for SAST, DAST, and dependency scanning (e.g., CodeQL, GitHub Advanced Security)
* Configure and maintain security in source control systems, preferably GitHub
* Develop, maintain, and monitor security controls across cloud environments, with a strong preference for AWS
* Configure and manage security logging and monitoring solutions, particularly SIEM tools
* Guide secure infrastructure using Terraform and other Infrastructure-as-Code (IaC) tools
* Ensure security in serverless environments and API-based architectures
* Implement and support Zero Trust Network Architecture, working with SASE platforms and identity-based access controls
* Deploy and manage DLP (Data Loss Prevention) strategies across cloud services, endpoints, and email
* Build and maintain Standard Operating Procedures (SOPs) and engineering documentation, including internal guides, playbooks, and runbooks
* Identify security gaps in systems, workflows, or architecture and develop actionable solutions to address them
* Perform security investigations and respond to alerts; fine-tune detection rules to reduce false positives and increase detection accuracy
* Build and implement automation to streamline and optimize repetitive security tasks and incident response procedures
* Conduct threat modeling, risk assessments, and vulnerability management activities
* Lead incident response and forensic investigations on both Windows and Linux systems
* Work collaboratively with IT, DevOps, and engineering teams to drive security best practices
* Guide and mentor junior team members, fostering a knowledge-sharing culture

REQUIREMENTS:
* 5+ years of experience in security engineering with a strong application and cloud security background
* Deep understanding of secure development practices and integrating security into the Software Development Life Cycle (SDLC)
* In-depth knowledge of OWASP Top 10, CWE, and secure web practices

Hands-on experience with:
* Code scanning tools: CodeQL, SAST/DAST, dependency scanners
* CI/CD tooling: GitHub Actions, Jenkins, or similar
* SIEM: Implementation and log ingestion (e.g., Splunk, ELK, or equivalent)
* Cloud security: AWS preferred; experience with IAM, VPCs, KMS, and other AWS services
* Proven experience designing and implementing Zero Trust architectures and working with SASE platforms (e.g., Zscaler, Netskope, or Prisma Access)
* Strong experience with DLP solutions across endpoints, cloud, and messaging platforms
* Strong grasp of networking protocols, TLS, DNS, HTTP, and web application architectures
* Strong experience with both Linux and Windows environments
* Experience with email security (e.g., DMARC, SPF, DKIM, phishing detection)
* Ability to create and maintain technical documentation, SOPs, playbooks, and automation scripts
* Proficiency in scripting or programming languages (Python, Bash, JS, etc.)
* Familiarity with bug bounty platforms or responsible disclosure programs
* Experience with security frameworks like Zero Trust, NIST 800-207, or ISO 27001
* Infrastructure as Code: Terraform (primary), CloudFormation or others
* Comfortable with on-call rotations
* Containers and orchestration: Docker, Kubernetes, including RBAC, pod security policies, etc.
* Serverless architectures: AWS Lambda or similar

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.

This job is not eligible for bonuses, incentives or commissions.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

By clicking ?Apply Today? you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About Kforce Technology Staffing