Job Title: Information Security Engineer III
Location: (City, State)
Duration: Contract - 4 months
Pay Range: $67/hr $77/hr (W2)
Job ID: 409016
About BCforward
BCforward is a leading global IT consulting and workforce solutions firm providing services and support to Fortune 500 and government clients. Founded in 1998, BCforward has grown with our customers needs into a full-service business solutions provider. With delivery centers and offices across North America and India, we take pride in building long-term relationships and delivering excellence through innovation, collaboration, and integrity.
Job Description
We are seeking an Information Security Engineer III to deliver and support enterprise security tooling with a focus on an LLM-based code vulnerability detection and reporting capability. The role will build the scanner, evaluation harness, and CI/CD pipelines in partnership with Principal Engineering, then operate and enhance the solution through patching, tuning, feature development, and sustained support. This position participates in a four-person rotation to provide 24/7 operational coverage, with average scheduled hours of 40 per week and primary focus on engineering work rather than active incident response. Triage and remediation ownership are out of scope for this role.
Responsibilities:
- Implement and operate an LLM-based code vulnerability detection capability on AWS Bedrock, including prompt and agent design, model invocation patterns, cost and token controls, and results normalization.
- Build and maintain an evaluation harness with regression corpora, repeatable test execution, and reporting on detection performance over time.
- Develop and maintain scanning pipelines integrated with GitHub and Jenkins, deployed to ECS and provisioned via Terraform.
- Ingest findings and telemetry into Splunk and build dashboards and alerting for scanner health, coverage, and throughput.
- Engineer well-architected solutions following software development best practices and established architecture.
- Design, test, and implement Story- and Feature-level solutions within defined standards.
- Contribute to standards, procedures, runbooks, and guidelines for Information Security operations.
- Provide ongoing operational support, patching, and defect resolution after go-live.
- Participate in a rotating 24/7 shift schedule, including nights, weekends, and holidays, averaging 40 hours per week.
- Monitor scanner health, pipeline execution, and alert queues during assigned shifts and execute runbooks with proper escalation.
- Perform structured shift handoffs documenting open issues, in-flight changes, and outstanding escalations.
- Maintain controls and documentation to meet company and regulatory requirements.
- Apply knowledge of virtualization and containerization technologies.
- Perform other duties as assigned.
Required Skills & Qualifications:
- 2+ years of related engineering experience in information security or software development.
- Exposure to AWS Bedrock or similar hosted LLM platforms, including model invocation and guardrail configuration.
- Working knowledge of Infrastructure as Code and ability to build and modify Terraform modules.
- Experience with CI/CD pipelines, preferably Jenkins, integrated with GitHub.
- Familiarity with application security concepts, common vulnerability classes, and SAST/SCA tooling behavior.
- Clear written and verbal communication of technical status, risks, and blockers to peers and leadership.
- Willingness and availability to work a rotating 24/7 schedule, including nights, weekends, and holidays.
- Ability to work independently during off-hours with limited supervision.
- Eligibility to work in the United States without current or future sponsorship.
Preferred Skills:
- Hands-on AWS experience, including IAM, ECS, and service-to-service authentication patterns.
- Hands-on AWS Bedrock experience, including model selection and inference optimization.
- Experience with agentic or multi-step LLM workflows and context management across large repositories.
- Experience with RESTful APIs and event-driven architectures.
- Splunk development, including data onboarding, search, and dashboarding.
- Experience with containerized workloads and Linux systems.
- Prior support of a 24/7 operational environment, including shift handoff and runbook execution.
- Experience working within Agile methodologies and development practices.
- Experience in a regulated financial services environment.
- Industry certifications such as AWS Solutions Architect Associate, AWS Security Specialty, or CompTIA Security+.
Why BCforward?
At BCforward, we believe in advancing lives and careers. When you join our team, you gain access to:
- Competitive compensation and benefits.
- Opportunities for growth with global clients.
- A supportive, inclusive culture that values innovation and people.
- Exposure to cutting-edge technologies and projects.
About Our Commitment
BCforward is an equal opportunity employer. We value diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, or veteran status.
Interested? Apply Now!
If this sounds like the right opportunity for you, please apply with your most recent resume.