Cyber Engineer
CDM Smith
- Location
- South United States
- Employment
- Full Time
- Work model
- On-Site
- Level
- Senior
- Salary
- $214.5k/yr
- Sponsorship
- Sponsors visa
- Posted
- 2h ago
Skills
About this role
Company Overview Check out this video and find out why our team loves to work here! Join Us! CDM Smith – where amazing career journeys unfold. Imagine a place committed to offering an unmatched employee experience. Where you work on projects that are meaningful to you. Where you play an active part in shaping your career journey. Where your co-workers are invested in you and your success. Where you are encouraged and supported to do your very best and given the tools and resources to do so. Where it’s a priority that the company takes good care of you and your family. Our employees are the heart of our company. As an employer of choice, our goal is to provide a challenging, progressive and inclusive work environment which fosters personal leadership, career growth and development for every employee. We value passionate individuals who challenge the norm, deliver world-class solutions and bring diverse perspectives. Join our team, and together we will make a difference and change the world.
Job Description
The Cyber Engineer will assist CDM Smith in their Continuous Threat Exposure Management (CTEM) journey. Items such as identifying, tracking, and verifying remediation of vulnerabilities across internal and external applications and systems. This role requires broad knowledge of enterprise applications, operating systems, networking, cloud infrastructure, and emerging threats. Working with IT infrastructure, application development and security operations teams, the engineer helps reduce vulnerabilities and attack surface risk while staying current on threats affecting both advanced and legacy technologies. You will help architect, deploy and operate secure cloud application infrastructure aligned to business needs. This advanced technical role supports operational innovation, provides cloud security direction, and helps deliver resilient applications at scale. The engineer is expected to apply strong administrative, troubleshooting, architecture, engineering, and design skills while maintaining policies and controls that support business direction. Working with security leadership, cloud security engineers assess the threat landscape and adapt quickly to reduce business risk. They should be highly technical, with 5–7+ years of security and systems administration experience across SaaS, IaaS, and PaaS environments. Strong analytical thinking, adaptability, work ethic, listening, and communication skills are essential. This role will also lead vulnerability management and collaboration with technology leadership and business units to secure company digital assets. They report on vulnerability criticality, exploit probability, business impact and remediation progress to security and IT leadership. The role requires pragmatic collaboration, urgency when needed and support for strategic and tactical initiatives that reduce attack surface through automation, innovation and operational efficiency. Develop and maintain secure, resilient enterprise-grade cloud & on-prem processes in tandem with architects and system engineers. Secure AI & NHI at scale Secure business applications and computing environments across public, private, or hybrid cloud infrastructures. Protect business applications in compliance with privacy, security, business resiliency, and compliance frameworks as defined in corporate policies. Maintain a consistent, secure environment using configuration management solutions (e.g., Puppet, Chef, Ansible, etc.). Conduct rigorous oversight of security systems and security configuration administration to reduce risk to enterprise systems and accounts. Deploy strong identity and access management (IDAM) controls across applications and computing environments. Assist with development, maintenance and utilization of scripts (e.g., Python, Ruby, etc.) to support custom extract, transform load (ETL) tools with a security focus for data flow. Attend regular technical project and implementation meetings and