Mid-Level Security Engineer
Job Description
Halvik is seeking a Mid-Level Security Engineer to support enterprise AI governance, data discovery and classification, and AI security within a federal agency's hybrid environment. Based in Alexandria, VA with a hybrid work arrangement, the role combines on-site collaboration with remote tasks to manage policy-driven data management across cloud, on-premises, SaaS, and developer repositories. The position carries a salary range of USD 100,000 - 115,000 per year.
Responsibilities
- Set up and maintain data discovery and classification rules across cloud, on-premises, SaaS, and developer repositories, with prioritized rollout to high-risk systems.
- Oversee AI content governance by monitoring prompts, outputs, and related signals for sensitive exposure, enforcing approved actions (allow, block, alert, redact, route) per governance policies.
- Assist in detecting and labeling sensitive content within AI-native artifacts such as Markdown prompt files, cursor rules, GitHub Copilot guidance, and MCP configuration files.
- Collaborate with the Lead Senior Security Engineer, stakeholders, and program teams to support deployment tasks, testing, and validation activities.
- Maintain operational dashboards and compliance reports, track exceptions and remediation status, and contribute to audit-ready governance documentation.
- Support vulnerability scanning and detection across code, containers, and infrastructure-as-code templates, including potential security issues introduced by AI components or data pipelines feeding AI models.
Requirements
- Bachelor's degree in Computer Science, Information Security, or a related field. A Master's degree with at least 3 years of relevant experience, or an equivalent combination of education and experience (9+ years) may be considered in lieu of a degree.
- Minimum of 5 years of professional experience in cybersecurity, IT security operations, or data security/DLP support, preferably within a Federal environment.
- Working knowledge of data classification or DLP tooling, cloud platforms such as AWS or Azure, and basic SIEM/log monitoring concepts.
- Familiarity with NIST SP 800-53, FISMA, and the Risk Management Framework (RMF).
- Current CISSP certification, if required.
- Ability to obtain and maintain a Public Trust security clearance.
Technologies
- AWS
- Azure
- GitHub Copilot
- Markdown
Benefits
- Company-sponsored medical, dental, vision, life insurance, plus short-term and long-term disability coverage
- 11 federal holidays and paid time off
- Performance-based incentives
- 401(k) with company matching
- Flexible Spending Accounts for commuter, medical, and dependent care expenses
- Tuition assistance
- Charitable contribution matching
Preferred Expertise
- Prior experience supporting a Federal contract or Federal agency IT security program
- Exposure to generative AI tools, prompt engineering practices, or AI development workflows
- Familiarity with Agile/Scrum team environments
- Strong attention to detail and willingness to grow into an AI governance or data security specialization
- Solid analytical and problem-solving capabilities with clear written communication
- Ability to work collaboratively with others and contribute to a team environment