Dragonfli Group logo
Dragonfli Group
Posted 18 days agoVerified live 2d ago

Junior Security Engineer

Brief overview

Remote
UndergradOr in progress
1+ yrsMinimum
Microsoft AzureAccess ControlEncryptionLogging and MonitoringVulnerability ManagementPythonPowerShellBashSplunkQualysTenableTCP/IPDNSFirewallsNetwork SegmentationNIST SP 800-53Security Technical Implementation Guides (STIGs)

About the company

Dragonfli Group logo
Dragonfli Groupdragonfligroup.com

The Dragonfli Group is a Washington, DC based LLC specializing in management and technology consulting.

Job description

Summary

Dragonfli Group is a cybersecurity and IT consulting firm serving federal agencies and Fortune 100 enterprises. The company is seeking a Junior Security Engineer to support cybersecurity modernization through cloud systems management, security solution integration, automation, and AI-based solutions in a fully remote environment.

Responsibilities

  • Help ensure appropriate security controls are in place to safeguard digital files and vital electronic infrastructure
  • Support the design and integration of security solutions for complex problems, system administration issues, and network concerns
  • Perform systems management and integration functions, primarily in cloud environments
  • Support the integration and development of automated and AI-based solutions in complex cloud environments
  • Assist senior engineers with configuration, hardening, and monitoring of security tooling
  • Support evidence collection, control testing, and documentation for the agency’s security engineering activities
  • Help maintain and enhance the agency’s cybersecurity environment and toolsets under the direction of the engineering team
  • Assist with maintaining Security Configuration Baseline Management (SCBM) artifacts and STIG-based hardening checklists to help reduce configuration drift
  • Support Security Controls Traceability Matrix (SCTM) updates and help prepare materials for Change Advisory Board (CAB) review of proposed engineering changes
  • Escalate technical issues promptly, documenting what was tried, what was observed, and what remains open

Skills

  • Bachelor's degree in cybersecurity, computer science, information technology, or a closely related field
  • A demonstrated cybersecurity background through coursework, internships, labs, certifications, or prior professional work
  • Working familiarity with Microsoft Azure
  • Understanding of core security concepts: access control, encryption, logging and monitoring, vulnerability management
  • U.S. Citizenship or Permanent Residency, with all work performed within the continental U.S
  • Ability to pass a federal agency suitability or background investigation
  • Cloud fundamentals and cloud systems integration (Microsoft Azure)
  • Security control concepts and secure configuration basics
  • Scripting and task automation (Python, PowerShell, Bash)
  • Familiarity with SIEM (Splunk), vulnerability scanning (Qualys, Tenable), and endpoint security tooling
  • Logging, monitoring, and basic incident triage concepts
  • Networking fundamentals: TCP/IP, DNS, firewalls, and segmentation
  • Exposure to AI-assisted and low-code/no-code security capabilities
  • Exposure to configuration baseline management (SCBM), STIG-based hardening, control traceability (SCTM), and change management (CAB) processes
  • Technical documentation and evidence capture
  • Clear written and verbal communication with both technical and non-technical audiences
  • Ability to work independently and as a contributing member of a distributed team
  • Comfort operating in a fully remote setting with a camera-on meeting culture
  • Sound judgment about when to decide and when to escalate
  • Collaborative posture with system owners, business owners, developers, and assessors
  • Attention to documentation quality and follow-through on commitments
  • Internship, co-op, or 1 to 2 years of professional experience in a security or IT operations role
  • Scripting experience in Python, PowerShell, or Bash
  • Exposure to security automation, low-code/no-code platforms, or AI-assisted tooling
  • Familiarity with NIST SP 800-53 control families
  • Security+ or an equivalent entry-level certification
  • Prior exposure to federal or otherwise regulated environments
  • Candidates with previous federal contracting experience are preferred

Qualifications

Must Haves

  • Bachelor's degree in cybersecurity, computer science, information technology, or a closely related field
  • A demonstrated cybersecurity background through coursework, internships, labs, certifications, or prior professional work
  • Working familiarity with Microsoft Azure
  • Understanding of core security concepts: access control, encryption, logging and monitoring, vulnerability management
  • U.S. Citizenship or Permanent Residency, with all work performed within the continental U.S
  • Ability to pass a federal agency suitability or background investigation
  • Cloud fundamentals and cloud systems integration (Microsoft Azure)
  • Security control concepts and secure configuration basics
  • Scripting and task automation (Python, PowerShell, Bash)
  • Familiarity with SIEM (Splunk), vulnerability scanning (Qualys, Tenable), and endpoint security tooling
  • Logging, monitoring, and basic incident triage concepts
  • Networking fundamentals: TCP/IP, DNS, firewalls, and segmentation
  • Exposure to AI-assisted and low-code/no-code security capabilities
  • Exposure to configuration baseline management (SCBM), STIG-based hardening, control traceability (SCTM), and change management (CAB) processes
  • Technical documentation and evidence capture
  • Clear written and verbal communication with both technical and non-technical audiences
  • Ability to work independently and as a contributing member of a distributed team
  • Comfort operating in a fully remote setting with a camera-on meeting culture
  • Sound judgment about when to decide and when to escalate
  • Collaborative posture with system owners, business owners, developers, and assessors
  • Attention to documentation quality and follow-through on commitments

Nice to Haves

  • Internship, co-op, or 1 to 2 years of professional experience in a security or IT operations role
  • Scripting experience in Python, PowerShell, or Bash
  • Exposure to security automation, low-code/no-code platforms, or AI-assisted tooling
  • Familiarity with NIST SP 800-53 control families
  • Security+ or an equivalent entry-level certification
  • Prior exposure to federal or otherwise regulated environments
  • Candidates with previous federal contracting experience are preferred

Benefits

  • Medical: Multiple POS health plan options including an HSA-compatible plan
  • Dental: PPO coverage for preventive, basic, and major services
  • Vision: Annual exam, frames, lenses, and contact lens allowance
  • 401(k): Employer match up to 5% of eligible compensation
  • Long-Term Disability: 100% employer-paid coverage at 50% of pre-disability earnings
  • Life Insurance & AD&D: 100% employer-paid coverage valued at $10,000 each
  • PTO: 15–25 days annually based on tenure
  • Paid Federal Holidays: All 11 federal holidays observed

More jobs like this