Information Security Engineer
Anywhere
Category: Security
Industry: Financial Services
Workplace Type: Remote
Reference ID: JN -062026-107557
Date Posted: 06/22/2026
Shortcut: http://careers.eliassen.com/LEmvVf
Description:
Remote
Our client seeks an Information Security Engineer to support Enterprise Vulnerability Management Application Security operations. The role focuses on vulnerability intake, triage, and validation, including managing submissions from the Vulnerability Disclosure and Bug Bounty Programs and evaluating false positive review requests. The engineer will assess validity and impact, coordinate remediation ownership, track items within centralized processes, and communicate findings and guidance to application and engineering teams.
Due to client requirements, applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $80.00 to $90.00/hr. w2
Responsibilities:
- Review and triage vulnerability submissions from external researchers through VDP and BBP.
- Validate technical accuracy, exploitability, and business impact.
- Assess severity using established scoring models and program standards.
- De-duplicate and disposition invalid or non-actionable submissions.
- Classify vulnerabilities using established taxonomy and assign remediation owners.
- Support vulnerability tracking within centralized tools and processes.
- Evaluate false positive requests from application teams.
- Analyze SAST and SCA findings and perform source code review as needed.
- Provide evidence-based dispositions with clear rationale.
- Contribute to triage standards, playbooks, and procedures.
- Maintain awareness of common application security vulnerabilities and emerging threats.
- Ensure alignment with internal policies, standards, and regulatory expectations.
- Maintain defensible documentation and evidence for audit and reviews.
- Escalate high-risk or time-sensitive vulnerabilities as appropriate.
- Communicate findings, impact, and remediation guidance to stakeholders and partner to enable timely remediation.
Experience Requirements:
- 3–5 years in information security, application security, or vulnerability management.
- Experience with vulnerability triage, validation, and prioritization.
- Strong understanding of application security principles, secure development practices, and common vulnerabilities such as the OWASP Top 10.
- Familiarity with vulnerability scanning tools and outputs including SAST, SCA, and DAST.
- Ability to review and understand source code to validate vulnerabilities.
- Experience with vulnerability management or tracking platforms such as ticketing systems and dashboards.
- Strong analytical skills to assess exploitability and business risk.
- Strong attention to detail and ability to make defensible decisions.
- Effective verbal and written communication tailored to management, business sponsors, and technical resources.
- Previous experience with distributed or offshore teams desired.
- Financial industry experience is a plus.
Education Requirements:
- Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent practical experience.
Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.
W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.
If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:
· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
· Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group.
If you have any indication of fraudulent activity, please contact fraud@eliassen.com.
-
Security Engineer - Software 3
Tysons Corner, VA
Description: Hybrid 3 days onsite / 2 days remote in either Tysons Corner, VA or Rockville, MD Our client seeks a senior application security engineer to plan, coordinate, and implement application security practices across the software development lif...
Date Posted: 06/15/2026 Recommended
-
Mid Systems Engineer, PAM (CyberArk)
Washington, DC
Description: On-site in Washington, DC Step into the role of a Senior-Level CyberArk Engineer supporting our client at the Department of Transportation. You will contribute to deploying and maintaining a Privileged Access Management solution across dev...
Date Posted: 06/16/2026 Recommended
-
SOC Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SOC Analyst to support continuous monitoring, detection, analysis, and response to cybersecurity events across hybrid cloud and on-premises environments. The analyst w...
Date Posted: 06/02/2026 Recommended
-
Lead Cybersecurity Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Lead Cybersecurity Engineer to design and implement enterprise security solutions across a hybrid federal environment. The role will lead engineering initiatives spann...
Date Posted: 06/04/2026 Recommended
-
Tier 2 Senior Cyber Security Analyst
Tustin, CA
Description: Santa Ana, CA | Onsite at OC Data Center Our client seeks a Tier 2 Senior Cyber Security Analyst to support a 24x7x365 Security Operations Center. The analyst will create, tune, monitor, and investigate SIEM alerts and support incident res...
Date Posted: 06/19/2026 Recommended
-
Associate Network Security Engineer
Fenton Cary, NC
Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12‑month contract, with potential for permanent conversion, to support the Information Security organization. This role f...
Date Posted: 05/31/2026 Recommended
-
Salesforce Architect / Senior Developer
Washington, DC
Description: Hybrid Primary place of performance is HYBRID. The role involves travel to the client site in Washington, DC. At a minimum, 1-2 days per week, onsite is required. On-site attendance may also be required during system rollout activities. in...
Date Posted: 05/31/2026 Recommended
-
Automation / SOAR Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks an Automation / SOAR Engineer to design, develop, and implement automation solutions within a federal cybersecurity operations environment. The role focuses on building ...
Date Posted: 06/02/2026 Recommended
-
Senior Cybersecurity Analyst
Anywhere
Description: Remote Our client seeks a Senior Cybersecurity Analyst to lead proactive defense, guide security architecture, and drive incident response and risk mitigation. The role manages and configures enterprise security tools while advancing best ...
Date Posted: 06/09/2026 Recommended
-
Senior Systems Engineer
Fort Meade, MD
Description: On-site in Fort Meade, MD Our client seeks a Senior Systems Engineer to support the Defense Information Systems Agency Citadel mission. The role requires advanced engineering, integration, administration, and operational support for enterp...
Date Posted: 06/18/2026 Recommended
-
Cyber Digital Forensics Analyst
Orange County, CA
Description: On-site in Orange County, CA Our client seeks a Cyber Digital Forensics Analyst to support a 24x7x365 Security Operations Center. The analyst will conduct digital media forensics, contribute to incident response, maintain and enhance the S...
Date Posted: 06/21/2026 Recommended
-
Sr. Solutions Architect III - Cyber
Washington, DC
Description: On-site in Washington, DC Our client seeks a Sr. Solutions Architect III - Cyber to design, implement, and manage scalable cybersecurity solutions across multiple domains. You will lead the implementation of a Security Operations Center an...
Date Posted: 06/17/2026 Recommended
-
NOC Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a NOC Analyst to support enterprise network and infrastructure monitoring within a 24x7 federal operations environment. The role encompasses real-time monitoring, event ...
Date Posted: 06/02/2026 Recommended
-
Cybersecurity Architect
Orange, CA
Description:On-site in Orange, CA Our client seeks a Cybersecurity Architect to support the Orange County Sheriff’s Department. This role provides technical leadership for enterprise security architecture, safeguarding assets, systems, and data against...
Date Posted: 06/22/2026 Recommended
-
Senior Program Manager – Cyber Testing & Release Acceleration (AI Program)
Anywhere
Description: Remote Our client is seeking a Senior Program Manager to lead a critical workstream within a large-scale AI-driven cybersecurity program. The initiative focuses on detecting emerging cyber threats and accelerating remediation timelines to ...
Date Posted: 06/03/2026 Recommended
-
Software Architect III — Security & AI, Web Application Development
Greenwood Village, CO
Description: Hybrid 4 onsite / 1 work from home in Greenwood Village, CO Our client seeks a Software Architect III to design and deliver secure, scalable cloud-native web application platforms on AWS. You will own end-to-end architecture from Terraform...
Date Posted: 06/08/2026 Recommended
-
SIEM Engineer
Washington, DC
Description:Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SIEM Engineer to support enterprise security monitoring, detection engineering, and log management within a federal SOC environment. The role administers SIEM platforms...
Date Posted: 06/02/2026 Recommended
-
Security Analyst/Information Systems Security Officer
Fort Meade, MD
Description: Onsite in Fort Meade, MD Our client seeks a Security Analyst serving as an Information Systems Security Officer to lead implementation and enforcement of security policies aligned to NIST frameworks. The role will conduct continuous monito...
Date Posted: 06/18/2026 Recommended
-
SOC/NOC Operations Manager
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SOC/NOC Operations Manager to lead 24x7 cybersecurity and network operations within a complex federal enterprise environment. The manager will oversee security and net...
Date Posted: 06/02/2026 Recommended
-
Angular Developer
Jersey City, NJ
Description: Hybrid 4 days on site in either Jersey City, NJ or New York, NY Our client seeks an Angular developer to build and maintain modular, component-based front-end applications. The role will implement clean TypeScript, JavaScript, HTML, and CS...
Date Posted: 06/03/2026 Recommended
-
Senior AI Engineer
Anywhere
Description: Remote Our client is assembling a next-generation AI engineering team to reimagine the claims lifecycle with AI and Generative AI. This early-stage, high-impact initiative emphasizes rapid experimentation, iteration, and delivery of real-w...
Date Posted: 06/17/2026 Recommended
-
Backend Support Engineer
Greenwood Village, CO
Description: Hybrid 4 days onsite, 1 remote. in Greenwood Village, CO Our client seeks a Backend Support Engineer to build internal tools and scripts that improve support workflows and operational efficiency while providing Tier 1 support for live APIs...
Date Posted: 06/07/2026 Recommended
-
Senior AWS Cloud Engineer (Infrastructure/IaC)
Anywhere
Description: Remote Our client is seeking an AWS Cloud Engineer III to operate and secure an enterprise AWS environment across multiple accounts. The role will manage account lifecycle processes, provision and maintain infrastructure with Terraform, en...
Date Posted: 06/11/2026 Recommended
-
Vice President, Full Stack Engineer
Pittsburgh, PA
Description: Hybrid 4 days onsite in Pittsburgh, PA We are seeking a Principal Level Java Full Stack Developer to own the end-to-end development and maintenance of critical applications that power our client’s businesses. This role combines hands-on te...
Date Posted: 06/02/2026 Recommended
-
Senior AWS Cloud Engineer (IaC/Networking)
Anywhere
Description: Remote Our client seeks an experienced AWS Cloud Platform Engineer to support an enterprise AWS environment managing 100+ accounts, 250+ serverless functions, and a robust infrastructure-as-code ecosystem aligned to digital transformation ...
Date Posted: 06/11/2026 Recommended
-
PTP Stakeholder Support Lead – Procure-to-Pay Operations
Nashville, TN
Description: On-site 5 days/week in either Nashville, TN or New York, NY Our client seeks an executive-level PTP Stakeholder Support Lead to stabilize and elevate the internal-facing support function for global Procure-to-Pay operations during signific...
Date Posted: 06/09/2026 Recommended
-
Salesforce Developer
Woburn, MA
Description: Hybrid Tuesday-Thursday onsite in Woburn, MA Our client is seeking a Salesforce Developer to support a global Salesforce footprint across multiple organizations. You will lead complex development efforts, including advanced Apex, scalable ...
Date Posted: 06/10/2026 Recommended
-
AWS Cloud Architect
Anywhere
Description: Remote Our client seeks a cloud architect to design, implement, and govern secure AWS environments across development, testing, and production. The role covers enterprise architecture, AI implementation support, infrastructure as code, Dev...
Date Posted: 05/31/2026 Recommended
-
Tier II Helpdesk Specialist
Denver, CO
Description: On-site 5 days/week in Overland Park, KS Our client seeks a Tier II Helpdesk Specialist to provide onsite technical support for desktops, laptops, printers, peripherals, and core applications. The specialist will record, triage, and resolv...
Date Posted: 05/28/2026 Recommended
-
Senior NetSuite Administrator
Berkeley, CA
Description: Hybrid 3 days per week preferred in Berkeley, CA Our client seeks a Senior NetSuite Administrator with full-cycle implementation experience to support a critical go-live. The role requires advanced NetSuite configuration across financials,...
Date Posted: 06/18/2026 Recommended
Eliassen Group is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. Eliassen Group’s Affirmative Action Plan (AAP) is available for inspection by any employee or applicant for employment upon request, during normal business hours of Monday through Friday, 8:30am to 5:30pm EST. Interested persons should contact Phaedra Wells at pwells@eliassen.com for assistance. It is unlawful in Massachusetts and Maryland to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Applicants with disabilities that believe they require an accommodation or assistance with a position, please email our HR team at hradmin@eliassen.com. This email inbox is designed exclusively to assist job seekers whose disability prevents them from being able to apply online. Emails sent for other purposes will not receive a response.
Please be advised that a number of fraudulent job postings have been released under the Eliassen Group brand.
Unfortunately, fraudulent job postings can happen. If anyone reaches out to you about an open position connected with Eliassen Group, never provide personal or financial information to anyone who is not clearly associated with Eliassen Group
If anyone seemingly from Eliassen Group has ever requested this personal information in the past or does so in the future, please contact fraud@eliassen.com.
Please ensure that you are working directly with us by confirming the following:
- When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
- Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group, as indicated above