11 days ago
Continuous Monitoring Engineer
Piper Companies
Hybrid
Full Time
$122,500
Hybrid
Job Overview
Job TitleContinuous Monitoring Engineer
Job TypeFull Time
CategoryCommerce
Experience5 Years
DegreeMaster
Offered Salary$122,500
LocationHybrid
Who's the hiring manager?
Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Job Description
Continuous Monitoring Engineer at Piper Companies
Piper Companies is seeking a Continuous Monitoring Engineer to join a fully remote (U.S.-based) cybersecurity and compliance services firm. This client-facing cybersecurity role focuses on vulnerability management, compliance monitoring, and cloud security across AWS, Azure, and GCP environments.
Responsibilities
- Manage the full POA&M lifecycle, including risk justifications and deviation requests.
- Collect and maintain security evidence for monthly continuous monitoring (FedRAMP, HITRUST, PCI).
- Run and analyze vulnerability scans across OS, databases, web apps, and containers.
- Identify false positives and prepare risk assessments for federal stakeholders.
- Maintain system inventories and boundary documentation.
- Support vulnerability tools (Tenable, Qualys, Rapid7, Wiz, Prisma, Microsoft Defender).
- Collaborate with engineering and SRE teams to integrate scanning into CI/CD pipelines.
- Track remediation activities and coordinate timelines with technical teams.
- Produce monthly compliance deliverables and vulnerability summaries.
Qualifications
- 3–5 years of experience in vulnerability management, continuous monitoring, or security operations.
- Hands-on experience scanning OS, networks, databases, containers, and web apps.
- Experience with at least two cloud platforms (AWS, Azure, GCP).
- Familiarity with FedRAMP, HITRUST, or PCI frameworks.
- Administrator-level cloud certification (AWS/Azure/GCP).
- Strong understanding of CVSS/CMSS scoring and NIST 800‑53 (RA‑5, SI‑2, CM‑6).
- Experience with STIGs, SCAP/SCC, and CIS Benchmarks.
- Scripting skills (Python, PowerShell, Bash).
- Strong communication and documentation skills.
Preferred Qualifications
- Cloud security certifications (AWS/Azure/GCP).
- Security+ or CISSP.
- Experience with container security tools (Trivy, Anchore, Snyk) and Kubernetes.
- Familiarity with SCA and SAST/DAST tools.
- Experience integrating security controls into CI/CD workflows.
Position Details
- Fully remote (U.S.)
- Up to 10% travel
- Collaboration with engineering, SRE, compliance, and federal client teams
Compensation
- Salary Range: $115,000 – $130,000
- Benefits: Medical, Dental, Vision, 401K, PTO, Sick Leave (as required), Holidays
Key skills/competency
- Vulnerability Management
- Compliance Monitoring
- Cloud Security (AWS, Azure, GCP)
- FedRAMP, HITRUST, PCI
- Risk Assessment
- CI/CD Integration
- Python, PowerShell, Bash
- Tenable, Qualys, Rapid7
- NIST 800-53
- Container Security
How to Get Hired at Piper Companies
- Research Piper Companies' culture: Study their mission, values, recent news, and employee testimonials on LinkedIn and Glassdoor.
- Tailor your resume for continuous monitoring: Highlight vulnerability management, compliance frameworks, and cloud security experience.
- Showcase cloud security expertise: Emphasize hands-on experience with AWS, Azure, GCP and relevant certifications.
- Prepare for technical and framework questions: Master FedRAMP, HITRUST, PCI, NIST 800-53, and security tools like Tenable.
- Demonstrate strong client-facing communication: Discuss past experiences collaborating with technical teams and federal stakeholders.
Frequently Asked Questions
Find answers to common questions about this job opportunity
01What does a Continuous Monitoring Engineer do at Piper Companies?
02What are the key technical skills required for this Continuous Monitoring Engineer role?
03How does Piper Companies approach continuous monitoring for clients?
04What compliance frameworks are relevant to the Continuous Monitoring Engineer role at Piper Companies?
05Is a cloud certification mandatory for this Piper Companies position?
06What scripting languages are useful for a Continuous Monitoring Engineer at Piper Companies?
07How is CI/CD integration relevant to this Continuous Monitoring Engineer role at Piper Companies?
08What is the typical team structure for a Continuous Monitoring Engineer at Piper Companies?
09How will my client-facing skills be utilized in this Continuous Monitoring Engineer role at Piper Companies?
10What are the core vulnerability management tools used by Piper Companies for the Continuous Monitoring Engineer role?
Explore similar opportunities that match your background