JobHabor

Endpoint Security Engineer

RIVA Solutions
Location
United States
Workplace
Remote
Employment
Salary
Apply on the employer’s site

Posted 6d ago

RESULTS. INNOVATION. VALUES. ACCOUNTABILITY.

That’s RIVA.

We’re a mission-driven IT services company and systems integrator supporting digital transformation and modernization for federal government agencies. Since 2009, we’ve partnered with our customers to solve complex challenges through smart, practical innovation to deliver real outcomes where they matter most. Our teams are made up of industry-leading experts who are passionate about doing great work and making a difference. We don’t just develop solutions, we support efforts that strengthen communities and serve the public good.

RIVA’s culture is built on four core values

Results, Innovation, Values, and Accountability. They guide how we work, how we collaborate, and how we measure success. Our employee-first approach is rooted in trust, ownership, and meaningful work. By investing in our people and fostering a flexible, supportive environment, employees have the opportunity to grow their skills, contribute ideas, and make an impact from day one. all while supporting missions that matter.

POSITION OVERVIEW

RIVA is seeking a mission-driven Endpoint Security Engineer to support the Department of Health and Human Services (HHS) Office of Inspector General (OIG). This individual will provide technical security engineering, endpoint device protection, and vulnerability reporting services. This position plays a key role in ensuring cybersecurity compliance across HHS systems and endpoints while aligning with federal mandates such as NIST, FISMA, FedRAMP, and CISA directives.

The Endpoint Security Engineer will be responsible for engineering and maintaining secure endpoint systems, delivering vulnerability reports, and supporting Certification & Accreditation (C&A) processes. The role requires experience working in federal environments and familiarity with compliance standards, technical documentation, and presenting remediation strategies to leadership.

CORE RESPONSIBILITIES

Endpoint Security Engineering

  • Hands-on experience with vulnerability assessment, CVE/KEV reporting, and remediation tracking.
  • Experience preparing and presenting security findings and compliance reports to executive management.
  • Expertise in endpoint engineering and SIEM integration.
  • Strong documentation and technical writing skills, including C&A documentation

Vulnerability Management & Compliance Reporting

  • Monitor and assess CVE and Known Exploited Vulnerabilities (KEVs) published by CISA.
  • Report and track vulnerabilities in compliance with CISA Binding Operational Directives (BODs).
  • Deliver vulnerability and risk assessments to senior stakeholders.
  • Support documentation related to SSPs, POA&Ms, and penetration test reports.

Security Support & Accreditation

  • Assist with system security documentation, audit responses, and remediation efforts.
  • Provide log forwarding support to SIEM systems for continuous monitoring.
  • Safeguard Personally Identifiable Information (PII) following NIST SP 800-122 guidelines.

MINIMUM QUALIFICATIONS

  • Bachelor’s degree in Information Systems, Computer Science, Engineering, or equivalent experience.
  • 5–8 years of experience in cybersecurity engineering and endpoint management.
  • Familiarity with federal cybersecurity standards and compliance documentation, including:
  • NIST SP 800 series (800-53, 800-207, etc.)
  • FISMA, FedRAMP, and FIPS 140-2
  • CISA Binding Operational Directives
  • Hands-on experience with vulnerability management and reporting tools.
  • Experience with system hardening, patching, and SIEM integrations.
  • Strong technical writing and communication skills.

PREFERRED QUALIFICATIONS

  • Advanced degree in Cybersecurity, Computer Science, or related field.
  • Security certifications (e.g., Security+, CISSP, CISM, CEH).
  • Prior experience supporting HHS, DHS, DoD, or other federal agencies.
  • Familiarity with Zero Trust Architecture and endpoint detection tools.

EQUAL EMPLOYMENT OPPORTUNITY & ACCOMMODATION

We believe great teams are built from different backgrounds, perspectives, and lived experiences, and we mean that beyond the buzzwords.

RIVA is an equal opportunity employer. We welcome applicants of every race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, and any other characteristic protected by law.

If you need an accommodation at any point in our process, send an email to talent@rivasolutionsinc.com, we'll be happy to help.

VETERAN SUPPORT & ACCESSIBILITY

As a federal contractor, RIVA follows the requirements of the Vietnam Era Veterans' Readjustment Assistance Act (VEVRAA) and Section 503 of the Rehabilitation Act, supporting the employment and advancement of protected veterans and individuals with disabilities. If you're a veteran, we encourage you to self-identify during the application process, it helps us track our hiring commitments and, in some cases, may support priority referral for open roles.

RIVA also invites applicants to voluntarily self-identify as having a disability during the application process, not because it affects your chances of being hired, but because it helps us measure how well we're living up to our commitments and identify where we can do better. Your response is confidential and entirely optional.

Skills

  • NIST
  • FISMA
  • FedRAMP
  • SIEM
  • Security+
  • CISSP
  • Zero Trust

More jobs at RIVA Solutions

All 25

Similar roles