Summary
HTX Labs is a company focused on innovative training solutions for the Department of Defense. They are seeking an Information Systems Security Engineer (ISSE) intern to design, implement, and maintain secure cloud and edge infrastructure while collaborating with engineering teams to ensure security compliance and effectiveness, particularly in AI Security Engineering.
Responsibilities
- Harden and maintain secure cloud and edge infrastructure supporting DoW workloads
- Partner with the DevSecOps Engineer to build secure CI/CD pipelines using modern software delivery and Infrastructure as Code (IaC) practices
- Implement Zero Trust principles including RBAC, workload identity, network segmentation, private networking, and least privilege
- Engineer and maintain security controls for cloud IAM, WAF, container security, runtime protection, and Kubernetes policy enforcement
- Automate security validation, compliance monitoring, evidence collection, vulnerability remediation, and configuration management using PowerShell, Python, Bash, Azure CLI, and YAML
- Implement and maintain NIST SP 800-53 Rev. 5, RMF, CMMC Level 2, STIG, and DISA security controls through technical implementations
- Support ATO packages, Cybersecurity Impact Analyses (CIAs), SSP updates, POA&M remediation, security assessments, and continuous monitoring
- Collaborate with engineering teams to secure software supply chains through SBOM generation, image signing, container security, and secure CI/CD
- Design and implement security controls for AI-enabled applications, LLMs, Retrieval-Augmented Generation (RAG), AI agents, and Model Context Protocol (MCP) integrations
- Evaluate AI technologies for security, privacy, compliance, and supply chain risks before deployment
- Mitigate AI-specific threats including prompt injection, model poisoning, jailbreak attacks, insecure tool usage, and data leakage
- Integrate AI security testing and policy validation into CI/CD pipelines
- Perform AI threat modeling and architecture reviews using the NIST AI Risk Management Framework (AI RMF) and OWASP Top 10 for LLM Applications
- Support secure deployment of AI workloads in Azure Government and disconnected Edge environments
Skills
- U.S. Citizen
- 5+ years of experience in cybersecurity, cloud engineering, DevSecOps, or information systems security engineering
- Experience with Azure or Azure Government, Kubernetes, Linux administration, networking, scripting, and Infrastructure as Code
- Experience implementing RMF, CMMC, STIGs, or other government cybersecurity frameworks
- Strong troubleshooting and communication skills
- Experience supporting DoW IL4/IL5 environments and Authority to Operate (ATO) efforts
- Experience with managed/self-managed Kubernetes
- Experience with CI/CD platforms, GitOps deployment solutions, IaC tools, Kubernetes policy enforcement, container runtime security, cloud IAM, and WAF technologies
- Experience securing AI-enabled applications, Azure AI Foundry, Azure OpenAI, RAG architectures, or MCP integrations
- Knowledge of NIST AI RMF, OWASP Top 10 for LLM Applications, secure AI software supply chains, and AI governance
- Preferred certifications include Security+, CASP+, CKA, CKS, Azure Security Engineer Associate, Azure Administrator Associate, Terraform Associate, or RHCSA
Qualifications
Must Haves
- U.S. Citizen
- 5+ years of experience in cybersecurity, cloud engineering, DevSecOps, or information systems security engineering
- Experience with Azure or Azure Government, Kubernetes, Linux administration, networking, scripting, and Infrastructure as Code
- Experience implementing RMF, CMMC, STIGs, or other government cybersecurity frameworks
- Strong troubleshooting and communication skills
Nice to Haves
- Experience supporting DoW IL4/IL5 environments and Authority to Operate (ATO) efforts
- Experience with managed/self-managed Kubernetes
- Experience with CI/CD platforms, GitOps deployment solutions, IaC tools, Kubernetes policy enforcement, container runtime security, cloud IAM, and WAF technologies
- Experience securing AI-enabled applications, Azure AI Foundry, Azure OpenAI, RAG architectures, or MCP integrations
- Knowledge of NIST AI RMF, OWASP Top 10 for LLM Applications, secure AI software supply chains, and AI governance
- Preferred certifications include Security+, CASP+, CKA, CKS, Azure Security Engineer Associate, Azure Administrator Associate, Terraform Associate, or RHCSA