Logo for Oddball

Security Engineer

Role overview

Qualifications

  • Hands-on experience remediating POAMs and navigating the federal ATO process
  • Proficiency with AWS environments and cloud security practices
  • Experience with CI/CD pipelines, CloudFormation, and infrastructure as code
  • Familiarity with Zero Trust principles and federal cybersecurity frameworks including FISMA and NIST 800-53

Responsibilities

  • Deploy and automate CI/CD pipelines and establish IaC using modern DevSecOps techniques including serverless and Zero Trust patterns
  • Own the POAM process end to end — develop a plan of attack with target dates, track progress in real time, and close findings proactively
  • Assess incoming security findings, identify duplicates and dependencies, and develop LOEs for remediation
  • Conduct Security Impact Analyses (SIAs) to achieve and maintain ATO

Key facts

Hard skills

Other skills

  • Organizational Skills
  • Communication
  • Collaboration

About the company

Oddball logo

Oddball

GovTech & Civic Tech

Oddball is a service-disabled veteran-owned small business (SDVOSB) dedicated to digital modernization of federal citizen-centric services. As a unique digital agency, Oddball supports federal clients from design to deployment of scalable software solutions that are purpose-built for the citizens they serve and the workforces they enable. Experienced teams of full-stack developers, human-centered designers, product managers and project managers offer a proven record of delivery excellence in enterprise devops, cloud migration, user experience, continuous integration, continuous delivery and continuous deployment.

Company details

Company typeSME
IndustryGovTech & Civic Tech
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Oddball believes that the best products are built when companies understand and value the things they are working on. We value learning and growth and the ability to make a big impact at a small company. We believe that we can make big changes happen and improve the daily lives of millions of people by bringing quality software to the federal space. 

We're looking for a Security Engineer to join our SEC team, working alongside our DevSecOps engineers to harden our cloud environment, maintain our ATO, and actively drive down the program's POAM backlog.

What you'll be doing:

  • Deploy and automate CI/CD pipelines and establish IaC using modern DevSecOps techniques including serverless and Zero Trust patterns
  • Own the POAM process end to end — develop a plan of attack with target dates, track progress in real time, and close findings proactively
  • Assess incoming security findings, identify duplicates and dependencies, and develop LOEs for remediation
  • Conduct Security Impact Analyses (SIAs) to achieve and maintain ATO
  • Implement data tagging and sensitivity management practices to reduce the SEC's ATO management burden
  • Engage directly with engineers and external stakeholders to drive remediation forward
  • Maintain a live dashboard and tracker for all security findings and POAM status

What you’ll bring:

  • Hands-on experience remediating POAMs and navigating the federal ATO process
  • Proficiency with AWS environments and cloud security practices
  • Experience with CI/CD pipelines, CloudFormation, and infrastructure as code
  • Familiarity with Zero Trust principles and federal cybersecurity frameworks including FISMA and NIST 800-53
  • Strong organizational skills with the ability to manage multiple findings, timelines, and stakeholders simultaneously
  • Comfortable engaging directly with engineers and external stakeholders to move remediation forward
  • Experience with Docker and containerized environments is a plus
  • Thrives in a remote, collaborative Agile environment and genuinely enjoys working closely with a cross-functional team
  • Communicates clearly and openly, whether updating a tracker or presenting findings to leadership
  • Performs other related duties as assigned

Requirements:

  • Applicants must be authorized to work in the United States. In alignment with federal contract requirements, certain roles may also require U.S. citizenship and the ability to obtain and maintain a federal background investigation and/or a security clearance.

Education:

  • Bachelor’s degree 

Benefits:

  • Fully remote
  • Annual stipend
  • Comprehensive Benefits Package
  • Company Match 401(k) plan
  • Flexible PTO, Paid Holidays

Oddball is an Equal Opportunity Employer and does not discriminate against applicants based on race, religion, color, disability, medical condition, legally protected genetic information, national origin, gender, sexual orientation, marital status, gender identity or expression, sex (including pregnancy, childbirth or related medical conditions), age, veteran status or other legally protected characteristics. Any applicant with a mental or physical disability who requires an accommodation during the application process should contact an Oddball HR representative to request such an accommodation by emailing hello@Oddball.io

Compensation:

At Oddball, it’s important each employee is compensated competitively and fairly. In alignment with state legal requirements. A range for the included position is listed below. Be advised, actual offer details are determined by job category, job location, and candidate skill level.

United States Wage Range: $120,000 – $155,000

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Engineer Related jobs

Other jobs at Oddball

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.