1,426,201open jobs
83,292companies
213,671added this week
Browse all
Location
In office
Seniority
Senior · 5+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 9, 2026. First seen by Alion on Sep 9, 2026. Neumo scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Neumo is a cloud-based government software platform for courts, revenue compliance, public administration, DMV, and payments — replacing legacy systems.

Job Summary:

Neumo is a PE-backed govtech company formed from the merger of Avenu, ITI, and GovOS, delivering payments, DMV, justice, revenue compliance, and public administration solutions to state and local government clients nationwide. Our InfoSec program operates under SOC 1, SOC 2, and PCI DSS, and active pursuit of FedRamp High and GovRamp.

We're growing our InfoSec team and looking for a hands-on Security Engineer who blends deep technical depth across the security stack with fluency in AI-assisted tooling. You'll own and harden our perimeter and cloud defenses, build detection and automation as code, and be a first responder when incidents happen..

Duties and Responsibilities:

Perimeter, Cloud & Application Security

  • Own perimeter security controls: WAF, firewall, and CDN policy - including authoring and tuning bot management rules to block automated abuse without harming legitimate traffic.
  • Write and maintain Terraform to manage security infrastructure as code across cloud and edge environments (version-controlled, peer-reviewed, repeatable).
  • Secure our AWS/Azure environments: harden configurations, close CSPM findings, and partner with engineering on secure-by-design reviews.
  • Own email security end-to-end: configure and tune the secure email gateway, enforce DMARC/SPF/DKIM (including moving DMARC toward quarantine/reject), and manage attachment sandboxing and URL rewriting/detonation.
  • Run phishing simulation and awareness campaigns, report on click/report rates, and use results to tighten filtering rules and target training.
  • Detect and respond to business email compromise and account takeover, mailbox forensics, inbox-rule abuse, OAuth/app-consent abuse, and coordinating with IT on containment.

SIEM, Logging & Detection Engineering

  • Own log source onboarding across cloud (AWS/Azure), identity, endpoint, network/perimeter, and email systems, ensuring coverage gaps are identified and closed.
  • Build, tune, and maintain correlation rules and detection content in the SIEM, continuously reducing false positives/negatives and improving signal-to-noise for the team.
  • Define and maintain log retention, normalization, and parsing standards to support investigations, audits, and PCI DSS / SOC 2 / FedRAMP logging requirements.
  • Build dashboards and alerting for key telemetry (identity, servers, endpoint, cloud, perimeter, email, critical systems) and report on SIEM health, coverage, and detection efficacy to the CISO.
  • Map detection content to a framework such as MITRE ATT&CK and close identified coverage gaps.

Detection, Response & Endpoint

  • Operate and tune EDR and MDR tooling; triage alerts across the security stack and drive them to resolution.
  • Participate in incident management as needed, including after-hours response: investigation, containment, remediation, and clear post-incident write-ups.
  • Support annual incident response tabletop exercises and help mature our IR runbooks.
  • Contribute to red team / adversarial simulation exercises and support annual third-party penetration testing, translating findings into fixes.

Identity, Endpoint & Zero Trust

  • Advance our Zero Trust architecture across identity, network segmentation, and access policy.
  • Administer MDM and BYOD programs, balancing usability with device compliance and data protection standards.

AI-Augmented Security Engineering

  • Use AI coding assistants and agentic tooling to accelerate detection engineering, automation, and Terraform development, while applying sound judgment about what AI-generated output ships to production.
  • Evaluate and pilot AI-driven security tooling (e.g., AI-assisted triage, threat detection, or bot/traffic classification) and help set guardrails for safe internal use of AI.

Education and Experience:

  • 5+ years in a security engineering or security operations role, with direct, hands-on experience across most of: perimeter/WAF and bot management, EDR/MDR, SIEM, MDM/BYOD, Zero Trust, cloud security, and email security.
  • Hands-on SIEM experience: onboarding log sources, writing/tuning correlation and detection rules, and managing retention and parsing.
  • Hands-on email security experience: secure email gateway administration, DMARC/SPF/DKIM enforcement, and BEC/phishing investigation (e.g., Proofpoint, Abnormal Security, Mimecast, or Microsoft Defender for Office 365).
  • Experience participating in incident response, including on-call or after-hours response to active incidents.
  • Experience in a regulated or compliance-heavy environment (PCI DSS, SOC 2, FedRAMP/GovRAMP, or similar).
  • Relevant certifications: OSCP, GPEN, GCIH, Security+, or CISSP.
  • Experience with tools such as Cloudflare, SentinelOne, Tenable, Wiz, or Delinea (or direct equivalents).

Knowledge, Skills and Abilities:

  • Working proficiency with Terraform or another IaC tool, plus scripting ability (Python, Bash, or similar) for automation.
  • Exposure to red teaming or offensive security: as a practitioner, or in close partnership with red team / pen test engagements.
  • Comfort using AI tools (Copilot-style coding assistants, LLM-based analysis, agentic workflows) as part of daily engineering work, with a clear-eyed view of their limits.
  • Clear written communication: you can document an incident or a control decision so a non-technical exec or an auditor can follow it.

Work Environment:

  • Office setting with a moderate noise level.
  • The employee will work at an individual workstation, using a telephone and computer.

Physical Demands:

  • Must be able to remain seated for extended periods.
  • Regular use of a computer and other office machinery, such as printers and copy machines.
  • Occasional movement around the office.
  • Frequent communication via telephone.

Neumo Summary:

With the backing of four decades of public sector expertise and corporate capability, Neumo has successfully supported government services. Neumo was honored and recognized for four (4) consecutive years as a GovTech 100 Company representing the top 100 companies focused on making a difference in and selling to state and local government agencies across the United States.

Neumo is committed to helping communities thrive and brings a wealth of experience combined with innovation. Today, Neumo offers more administrative and financial support to government officials than any other organization. And with a responsive, client-focused approach, we foster partnerships that give our customers the certainty they need to accomplish more.

Neumo offers a competitive benefits and compensation package and are looking for team members who will thrive in our dynamic environment.

Neumo is an Equal Opportunity Employer. Selection for a position will be made without regard to race, religion, national origin, sex, political affiliation, marital status, non-disqualifying physical handicap, and age.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,426,201 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
≈ $28k – $65k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Timișoara
Apply
≈ $85k – $155k per year (Estimated) • In office • Full-Time • Munich
DevOps
Azure DevOps
Azure
Cybersecurity
Microsoft Sentinel
OWASP
Apply
≈ $16k – $39k per year (Estimated) • Remote (Philippines) • Full-Time • 4+ years exp • Quezon City
Python
PowerShell
DevOps
Windows
Cybersecurity
ISO 27001
SOC 2
Least Privilege
SIEM
Apply
≈ $40k – $113k per year (Estimated) • In office • Prague
Cybersecurity
MITRE ATT&CK
SIEM
Apply
≈ $20k – $44k per year (Estimated) • In office • Full-Time • 7+ years exp • Bachelor's Degree • Chennai
Cybersecurity
Threat Modeling
Apply
DevOps Engineer 1 hour ago
Equity • In office • Full-Time • 1+ year exp • Bachelor's Degree • Cork
Python
Java
Bash
Groovy
Perl
Java
Maven
Gradle
Databases
MySQL
AI/ML
Copilot
ChatGPT
Claude Code
DevOps
GCP
Azure
CI/CD
Jenkins
Git
AWS
Docker
Bitbucket
Linux
Apply
$141k – $184k per year • Hybrid • Full-Time • Bachelor's Degree • Reston • Plano
Python
JavaScript
Java
Node JS
AI/ML
Copilot
Claude
ChatGPT
Model Context Protocol
Function Calling
Structured Outputs
Context Engineering
Tool Use
DevOps
Rest API
Splunk
Terraform
OpenTelemetry
Datadog
Dynatrace
Prometheus
CI/CD
Git
AWS
Kubernetes
Grafana
Platform Engineering
Backstage
Amazon EKS
AWS Lambda
GitLab
Amazon S3
Amazon ECS
AWS Step Functions
Management
Jira
Apply
$187k – $281k per year • Equity • In office • Full-Time • 12+ years exp • Bachelor's Degree • Pleasanton • Atlanta
Python
DevOps
Terraform
Ansible
CI/CD
AWS
AIOps
Wi-Fi
BGP
Cybersecurity
Okta
Zscaler
Zero Trust
Apply
≈ $57k – $147k per year (Estimated) • Remote (United States) • 2+ years exp • United States
JavaScript
SQL
DevOps
Rest API
GCP
Azure DevOps
Azure
AWS
SOAP
Management
Jira
ServiceNow
ITSM
Apply
≈ $41k – $109k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Cork
Python
Java
Management
Jira
Agile
Scrum
Kanban
QA
TestRail
Apply
≈ $114k – $225k per year (Estimated) • In office • Full-Time • 6+ years exp • United States
AI/ML
LLM
DevOps
Incident Management
SLI/SLO/SLA
Cybersecurity
ISO 27001
NIST CSF
PCI DSS
SOC 2
Management
Jira
ServiceNow
Apply
≈ $114k – $226k per year (Estimated) • In office • Full-Time • 7+ years exp • United States
Python
AI/ML
LLM
DevOps
Terraform
GCP
Azure
AWS
Incident Management
Cybersecurity
SIEM
DLP
Apply
≈ $159k – $286k per year (Estimated) • Remote (United States) • Full-Time • 12+ years exp • United States
C#
C#
.NET
AI/ML
AI Agents
Apply
$160k – $180k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • Dallas
JavaScript
Java
TypeScript
SQL
Groovy
Java
Spring Framework
Spring Boot
Hibernate
Spring MVC
Databases
ActiveMQ
Frontend
Angular
DevOps
Rest API
Terraform
Azure
Bicep
SOAP
Apply
In office • Full-Time • 3+ years exp • Bachelor's Degree
Apply
See all jobs
This is one of many
1,426,201 more open roles from verified company boards, updated every day.