Cybersecurity Engineer
Ai Security
Api Security
Application Security
Cloud Platforms
Cloud Security
Data Security
DevSecOps
Dynamic Application Security Testing
Engineer
Identity and Access Management
Information Security
InfoSec
Pen Testing
Secrets Detection
Security
Security Automation
Security Testing
Software Security
Static Application Security Testing
Static Code Analysis
Threat Modeling
Web Application Firewall
Web Application Security
Job Description
Delta Defense, LLC is seeking a Cybersecurity Engineer to build and advance a modern security engineering program across product engineering, cloud infrastructure, and analytics teams. This onsite role focuses on application and web/API security, offensive security, AI security and governance, incident response and detection, vulnerability management, and security automation.
Location
- West Bend, WI (onsite)
Compensation
- USD 100,000 - 125,000 per year
- Eligible for Company Incentive Bonus
Responsibilities
- Lead application security across the software development lifecycle by partnering with Engineering and DevOps to integrate security into design, development, testing, and deployment.
- Conduct threat modeling, perform secure design reviews and code reviews, and implement automated SAST, DAST, SCA, and secrets detection within CI/CD pipelines.
- Design, implement, and continuously improve web application and API security controls across the enterprise.
- Develop and tune WAF policies, execute API security assessments, identify business logic vulnerabilities, and establish secure-by-design standards.
- Plan and execute penetration testing across web applications, APIs, cloud environments, and supporting infrastructure.
- Validate vulnerabilities through manual testing, prioritize by business risk, and partner with engineering teams to drive timely remediation and measurable risk reduction.
- Develop and enforce security controls for enterprise AI platforms and internally developed AI capabilities.
- Establish policies for data classification, model usage, access controls, audit logging, and secure AI integrations to support responsible adoption.
- Perform security assessments of Retrieval-Augmented Generation (RAG), agentic AI systems, MCP integrations, and large language model applications.
- Identify and mitigate risks such as prompt injection, indirect prompt injection, insecure tool use, excessive agent permissions, model abuse, and data leakage, guided by OWASP LLM Top 10 and MITRE ATLAS.
- Contribute to technical investigation and response for security incidents, including threat analysis, digital forensics, containment, eradication, and root cause analysis.
- Operate a risk-based vulnerability management program that prioritizes remediation using exploitability, business impact, and threat intelligence.
- Measure remediation effectiveness, track risk reduction, and align security controls with frameworks including NIST CSF, CIS Controls, OWASP, PCI DSS, and organizational security standards.
- Maintain secure cloud environments across AWS, Google Cloud, and DigitalOcean.
- Design and implement cloud security architecture covering IAM, Kubernetes security, container security, Infrastructure-as-Code security scanning, secrets management, workload protection, and Zero Trust network controls.
- Build security automation using scripting, APIs, Infrastructure as Code, and AI-assisted workflows to improve operational efficiency and security outcomes.
- Develop integrations between security platforms, automate repetitive security processes, and apply AI responsibly to support detection, investigation, and response with governance and oversight.
- Serve as a trusted technical advisor by providing security guidance, mentoring engineers, evaluating emerging technologies, and translating complex security risks into practical engineering solutions.
- Continuously research evolving threats, techniques, and defensive capabilities to improve the organization’s overall security posture.
Requirements
- Deep cybersecurity engineering capability across application security, cloud and infrastructure security, data platform security, detection engineering, and vulnerability management, with practical experience securing modern cloud-first environments and large-scale SaaS and data platforms.
- Hands-on application security experience with SAST, DAST, SCA, secure code review, API security, WAF tuning, threat modeling, CI/CD security, and secrets management using tools such as Doppler, Semgrep, Snyk, Burp Suite, OWASP ZAP, Cloudflare, HashiCorp Vault, or equivalent.
- Proficiency in at least one programming or scripting language for security-focused code work; Python, JavaScript, PHP, Golang, or Rust preferred.
- Working knowledge of AI security risks and controls, including prompt injection, indirect prompt injection, model abuse, data leakage, and agentic workflow vulnerabilities, with familiarity such as OWASP LLM Top 10 and MITRE ATLAS.
- Practical cloud and infrastructure security experience across DigitalOcean, AWS, GCP, Kubernetes, IAM, CSPM, IaC scanning, container security, and security tooling including EDR, SIEM, CASB, SWG, DLP, IDS/IPS, and PAM.
- Ability to communicate risk clearly in business terms, influence cross-functional stakeholders without direct authority, and remain composed and decisive during active incidents while driving remediation to closure and demonstrating Delta Defense’s Core Values.
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, Information Technology, or a related field is preferred; equivalent work experience and relevant certifications may be considered in lieu of a degree.
- Minimum 3 years of cybersecurity engineering experience working with application, software, data engineering, DevOps, cloud, infrastructure, or security operations teams.
- Experience securing applications, APIs, cloud platforms, CI/CD pipelines, Kubernetes environments, and data platforms using technologies including JavaScript, PHP, PostgreSQL, Kafka, NeonDB, GitLab, Python, Snowflake, dbt, Fivetran, Databricks, Tableau, Informatica, Kestra, or related technologies.
- Strong understanding of security frameworks and control models including NIST CSF, CIS Controls, PCI DSS, Cyber Defense Matrix, ISO 27001, OWASP, and MITRE ATT&CK.
- Preferred certifications: CCSP, CASP+, Security+, CEH, GPEN, GWAPT, or other relevant cloud, application security, AI security, offensive security, or security engineering certifications.
- Authorization to work in the United States without the need for current or future sponsorship.
Technologies
- SAST, DAST, SCA, secrets detection, CI/CD pipelines, threat modeling, secure design reviews, code reviews
- WAF, OWASP LLM Top 10, MITRE ATLAS, Retrieval-Augmented Generation (RAG), agentic AI systems, MCP integrations
- Prompt injection, indirect prompt injection, Insecure tool use, enterprise AI platforms, internally developed AI capabilities
- Digital forensics, containment, eradication, root cause analysis
- NIST CSF, CIS Controls, OWASP, PCI DSS, AWS, Google Cloud, DigitalOcean
- IAM, Kubernetes security, container security, Infrastructure-as-Code security scanning, secrets management, workload protection, Zero Trust network controls
- Security automation, Infrastructure as Code, AI-assisted workflows, scripting, APIs, Python, JavaScript, PHP, Golang, Rust
- Doppler, Semgrep, Snyk, Burp Suite, OWASP ZAP, Cloudflare, HashiCorp Vault
- CSPM, IaC scanning, zero-trust/SASE architectures, EDR, SIEM, CASB, SWG, DLP, IDS/IPS, PAM
- CCSP, CASP+, Security+, CEH, GPEN, GWAPT
- PostgreSQL, Kafka, NeonDB, GitLab, Snowflake, dbt, Fivetran, Databricks, Tableau, Informatica, Kestra
- Cyber Defense Matrix, ISO 27001, MITRE ATT&CK, Zero Trust
Working Conditions
- Remote or Hybrid