Stability and mission-driven work in a regulated environment: this 12-month contract role provides hands-on exposure to AWS GovCloud and security activities tied to federal-style compliance and assurance. You will contribute to application and cloud security work in a collaborative DevSecOps-focused environment, with remote potential depending on location and project needs.
Based in St. Louis, MO (hybrid preferred), this position supports the Security Engineering team by performing application security assessments, remediating vulnerabilities and compliance findings, and helping harden cloud infrastructure. The work centers on AWS GovCloud, custom applications, and support of SA&A, monitoring, and regulatory compliance efforts.
What you’ll do
- Conduct application security assessments and implement remediation recommendations.
- Evaluate and remediate KEVs, CVEs, and compliance-related security findings.
- Review and secure custom applications built with VB.NET, SQL, and Python.
- Harden and secure AWS CDK Infrastructure as Code (IaC) deployed in AWS GovCloud.
- Support SA&A activities, including documentation, continuous monitoring, and regulatory compliance efforts.
What you bring
- Bachelor’s degree in Computer Science, Cybersecurity, Software Engineering, or equivalent experience.
- 3-5+ years of application security or secure software development experience.
- Hands-on experience with Python, SQL, VB.NET, AWS CDK, and AWS security services.
- Experience with vulnerability management, SBOM analysis, SAST, DAST, and penetration testing.
Contract details
Job type: contract
Location: St. Louis, MO (Hybrid Preferred) | Remote Considered
Pay range: $90-$120/hr (depends on experience)
Key skills and tools
VB.NET, SQL, Python, AWS CDK, AWS GovCloud, AWS security services, SBOM analysis, SAST, DAST, penetration testing