Senior Security Engineer, FedRAMP
No longer in the current catalog. Last included 2026-09-09. Check the employer’s posting for availability.
Technologies
CI/CD · AWS · SaaS · IaC · NIST 800-53 · SIEM · IAM · FedRAMP · Terraform · containers
About Abnormal AI
Behavioral-AI platform that replaces legacy email security gateways and now ships autonomous AI agents for phishing training and SOC analytics.
Private Late · 1000–2000 people
Job description
The full responsibilities and requirements are on the employer’s site.
Read the job description ↗Source and classification
Internal deployment & tooling · Evidence for this classification:
About the Role Abnormal AI is hiring a Senior Cloud Security Engineer to build and operate the security systems that protect our FedRAMP authorized environment. You will own secure delivery pipelines, infrastructure as code security, patch automation, identity controls, security telemetry, and incident response across a growing federal platform. You will design and build the capabilities that allow this environment to scale safely. Your work will include creating policy gates for cloud deployments, automating patch and access workflows, strengthening identity controls, improving security telemetry, and generating audit evidence directly from engineering systems. You will have meaningful ownership of both architecture and operational results, with the opportunity to replace repetitive work with reliable automation across the environment. You will work closely with DevInfra, FedOps,
More from the job description
About the Role Abnormal AI is hiring a Senior Cloud Security Engineer to build and operate the security systems that protect our FedRAMP authorized environment. You will own secure delivery pipelines, infrastructure as code security, patch automation, identity controls, security telemetry, and incident response across a growing federal platform. You will design and build the capabilities that allow this environment to scale safely. Your work will include creating policy gates for cloud deployments, automating patch and access workflows, strengthening identity controls, improving security telemetry, and generating audit evidence directly from engineering systems. You will have meaningful ownership of both architecture and operational results, with the opportunity to replace repetitive work with reliable automation across the environment. You will work closely with DevInfra, FedOps, Product Security, Detection and Response, and Compliance to solve cloud security problems that cross traditional team boundaries. You will also use approved AI coding tools, such as Claude Code, to accelerate scripting, testing, documentation, and security automation. What you will do Build and improve secure delivery workflows for applications and infrastructure deployed into the federal environment. Create policy gates that evaluate infrastructure changes, security requirements, test results, [... source excerpt omitted ...] ly in the development process. Review infrastructure as code changes that affect the federal boundary and help engineering teams resolve security risks before those changes reach production. Design automation that produces change records, approval history, test results, and required evidence directly from engineering workflows. Build and maintain hardened system image pipelines that consistently apply approved configurations, security controls, and operating system updates. Automate patch deployment across the environment, including testing, scheduling, rollout, validation, exception management, and compliance reporting. Improve fleet visibility so teams can quickly identify s [... source excerpt omitted ...] referably Python, with a record of automating recurring operational work. Working knowledge of identity and access management design and enforcement in large cloud environments. Production experience with security monitoring and incident response, including investigation, containment, recovery, and operational follow through. Nice to Have Experience integrating security automation into CI/CD pipelines and SecOps workflows. Prior experience supporting federal audits or 3PAO engagements. Knowledge of SaaS security operations and monitoring at scale. Experience driving automation in security operations, compliance tracking, and evidence management. Knowledge of SaaS security o
Employer postings · Data from · Sources