(#5934) Security Engineer (Lead) in Austin, TX (HYBRID)
Esolvit Inc.,
Austin, TX 78751Remote$80 - $90 an hourContract
Job Description
Job title: *Security Engineer (Lead)*
Location: *Austin, TX (HYBRID)-only local to Austin or near Austin*
Duration: *5+ Months Contract (Extendable)*
Job No: *529601637*
*Interview: IN- PERSON*
*The Security Engineer* will project work by leading security governance, compliance, and risk management activities, with a strong focus on System Security & Privacy Plans (SSP/SSPP). This role bridges technical security operations and regulatory compliance, ensuring audit readiness, effective vulnerability remediation, and secure delivery of public-facing services across complex, multi-platform environments.
*Lead end to end System Security & Privacy Plan (SSP/SSPP) development, maintenance, and updates for enterprise systems*
Drive remediation activities through POA&M management, ensuring timely closure of compliance gaps
Translate penetration testing and vulnerability findings into actionable remediation work items (EPICs/user stories)
Coordinate with application, infrastructure, and security teams to validate remediation through re-testing and evidence
Oversee risk-based vulnerability management, including prioritization and SLA-driven remediation
Provide governance oversight for endpoint protection, web application security, and cloud security controls
Produce assessor ready documentation, including configurations, monitoring evidence, approvals, and incident traceability
Support continuous audit readiness and reduce repeat findings through disciplined governance and documentation practices
*Required skills:*
12 years of deep focus on: Governance, Risk, and Compliance (GRC), Enterprise Security and Security Architecture, Vulnerability Management and Penetration Testing , Cloud Security and hybrid environments
10 years of Proven experience owning SSP development end to end
10 years Hands on experience with CMS MARS E v2.2 or comparable federal/state security frameworks
10 years Strong expertise in: Control implementation documentation, Audit evidence collection and validation, POA&M creation, tracking, and remediation management
8 years of Ability to translate technical security issues into compliance aligned remediation actions
8 years of Strong stakeholder management skills across security, infrastructure, and application teams
8 years of Excellent written and verbal communication skills, particularly for executive stakeholders
8 years Knowledge of NIST 800 53, NIST RMF, and privacy controls
8 years Knowledge of Secure SDLC and DevSecOps practices
*Preferred skills:*
5 years of Experience with operating in multi-vendor, multi-platform environments
5 years of Demonstrated ability to reduce repeat audit findings and improve compliance maturity
5 years of Experience mentoring or guiding teams on security governance best practices
1 year of Experience supporting HHSC systems, including SSP development and compliance
The primary work location(s) will be at *4601 W 51st, Austin, Texas 78751*. The working position is *Hybrid - On Site and Telework*.
*Position will be 3 days remote with 2 days (Mon & Thurs) required to be onsite at the location listed above. *
*Program will only allow candidates who are LOCAL TO THE AUSTIN AREA ONLY (Within 50-mile radius). \*\*Subject to change per the hiring team\*\**
Job Type: Contract
Pay: $80.00 - $90.00 per hour
Work Location: Hybrid remote in Austin, Texas 78751
Location: *Austin, TX (HYBRID)-only local to Austin or near Austin*
Duration: *5+ Months Contract (Extendable)*
Job No: *529601637*
*Interview: IN- PERSON*
*The Security Engineer* will project work by leading security governance, compliance, and risk management activities, with a strong focus on System Security & Privacy Plans (SSP/SSPP). This role bridges technical security operations and regulatory compliance, ensuring audit readiness, effective vulnerability remediation, and secure delivery of public-facing services across complex, multi-platform environments.
*Lead end to end System Security & Privacy Plan (SSP/SSPP) development, maintenance, and updates for enterprise systems*
Drive remediation activities through POA&M management, ensuring timely closure of compliance gaps
Translate penetration testing and vulnerability findings into actionable remediation work items (EPICs/user stories)
Coordinate with application, infrastructure, and security teams to validate remediation through re-testing and evidence
Oversee risk-based vulnerability management, including prioritization and SLA-driven remediation
Provide governance oversight for endpoint protection, web application security, and cloud security controls
Produce assessor ready documentation, including configurations, monitoring evidence, approvals, and incident traceability
Support continuous audit readiness and reduce repeat findings through disciplined governance and documentation practices
*Required skills:*
12 years of deep focus on: Governance, Risk, and Compliance (GRC), Enterprise Security and Security Architecture, Vulnerability Management and Penetration Testing , Cloud Security and hybrid environments
10 years of Proven experience owning SSP development end to end
10 years Hands on experience with CMS MARS E v2.2 or comparable federal/state security frameworks
10 years Strong expertise in: Control implementation documentation, Audit evidence collection and validation, POA&M creation, tracking, and remediation management
8 years of Ability to translate technical security issues into compliance aligned remediation actions
8 years of Strong stakeholder management skills across security, infrastructure, and application teams
8 years of Excellent written and verbal communication skills, particularly for executive stakeholders
8 years Knowledge of NIST 800 53, NIST RMF, and privacy controls
8 years Knowledge of Secure SDLC and DevSecOps practices
*Preferred skills:*
5 years of Experience with operating in multi-vendor, multi-platform environments
5 years of Demonstrated ability to reduce repeat audit findings and improve compliance maturity
5 years of Experience mentoring or guiding teams on security governance best practices
1 year of Experience supporting HHSC systems, including SSP development and compliance
The primary work location(s) will be at *4601 W 51st, Austin, Texas 78751*. The working position is *Hybrid - On Site and Telework*.
*Position will be 3 days remote with 2 days (Mon & Thurs) required to be onsite at the location listed above. *
*Program will only allow candidates who are LOCAL TO THE AUSTIN AREA ONLY (Within 50-mile radius). \*\*Subject to change per the hiring team\*\**
Job Type: Contract
Pay: $80.00 - $90.00 per hour
Work Location: Hybrid remote in Austin, Texas 78751