Why This Role Stands Out
This remote Security Engineer role offers significant growth potential as you'll directly shape a maturing security program, focusing on critical areas like IAM and cloud security. You'll thrive here if you're an experienced engineer eager for broader ownership and the chance to develop your skills across a comprehensive security landscape. Apply today to make a substantial impact!
Quick Overview
Job Description
Position Summary
We are seeking a hands-on Security Engineer to help build and mature our security program, with a primary focus on Identity and Access Management (IAM), infrastructure security, security operations, cloud security, and SOC 2 Type II readiness.
This role will work closely with IT, Engineering, Operations, and leadership to strengthen identity governance, implement practical security controls, protect cloud and endpoint environments, and support ongoing compliance initiatives.
This is an excellent opportunity for an experienced IAM, infrastructure, cloud, or security engineer who wants broader ownership and the opportunity to help shape a growing security program. Candidates do not need to be experts in every area of cybersecurity or compliance.
Key Responsibilities
- Administer and enhance IAM platforms such as Microsoft Entra ID / Azure AD, Okta, or similar technologies.
- Manage permissions, roles, and access controls across corporate, cloud, and SaaS applications.
- Develop and improve joiner, mover, and leaver processes, user provisioning/deprovisioning, and identity governance.
- Conduct periodic access reviews and enforce least-privilege and role-based access controls (RBAC).
- Implement and maintain security controls supporting SOC 2 Type II readiness and ongoing compliance.
- Assist with audit evidence collection, remediation efforts, documentation, and auditor requests.
- Develop and maintain security policies, procedures, standards, and supporting documentation.
- Help secure AWS cloud infrastructure, endpoints, networks, and SaaS applications.
- Support endpoint protection, EDR, vulnerability management, logging, monitoring, and security alerting tools.
- Coordinate vulnerability assessments and partner with Infrastructure and Engineering teams to remediate identified risks.
- Assist with security incident investigation, response, documentation, and remediation.
- Support third-party and vendor security assessments.
- Help coordinate employee security awareness and phishing training.
- Partner with Development and DevOps teams on security initiatives while primarily serving as an IAM and infrastructure-focused security resource.
- Identify security gaps and help prioritize practical remediation efforts.
Required Qualifications
- Professional experience in Information Security, Cybersecurity, IAM, Infrastructure Security, Systems Engineering, Cloud Security, or a related discipline.
- Hands-on experience with at least one enterprise IAM platform such as Microsoft Entra ID / Azure Active Directory, Okta, or similar.
- Experience with:
- SSO
- MFA
- RBAC
- User provisioning and deprovisioning
- Access reviews
- Least-privilege access
- Working knowledge of cloud and infrastructure security concepts.
- Experience with security technologies such as EDR, endpoint protection, vulnerability management, logging, monitoring, firewalls, or related tools.
- Ability to independently investigate technical issues, implement solutions, and document processes.
- Strong communication skills with the ability to work effectively across technical and non-technical teams.
- Comfortable taking ownership and expanding responsibilities as the security program matures.
Preferred Qualifications
- Experience supporting a SOC 2 Type I or Type II audit, readiness assessment, or compliance initiative.
- Experience collecting audit evidence or implementing SOC 2 controls.
- HIPAA or healthcare security experience.
- AWS security experience.
- Familiarity with the NIST Cybersecurity Framework or CIS Controls.
- Privileged Access Management (PAM) experience.
- Security incident response experience.
- Vendor or third-party security risk assessment experience.
- SIEM or centralized security monitoring experience.
- Experience supporting security awareness or phishing programs.
- Familiarity with application security, CI/CD security, or DevSecOps.
What Success Looks Like
The ideal candidate brings a strong foundation in IAM, infrastructure, and security fundamentals along with the ability to take ownership, solve problems, and learn quickly.
Initial priorities will include:
- Strengthening IAM, access governance, and permissions.
- Establishing and documenting core security controls.
- Supporting SOC 2 Type II readiness.
- Improving endpoint and AWS cloud security.
- Establishing repeatable security operations processes.
- Identifying security gaps and driving remediation efforts.
As the organization grows, this position will have the opportunity to expand its responsibilities and influence across the broader security program.
Work Environment
- Full-time, remote position.
- Ability to sit and work at a computer for prolonged periods.
**MUST LIVE IN ONE OF THE BELOW STATES:
1. Arkansas
2. Arizona
3. California
4. Colorado
5. Florida
6. Georgia
7. Illinois
8. Louisiana
9. Maryland
10. Massachusetts
11. Michigan
12. Mississippi
13. Missouri
14. Nevada
15. North Carolina
16. Ohio
17. Oklahoma
18. Pennsylvania
19. South Carolina
20. Texas
21. Virginia
22. Utah
Similar jobs
- CF
Cybersecurity Engineering Specialist III with Security Clearance
Cherokee Federal
Springfield, VA🇺🇸$150k - $155k/yrHybrid2 weeks agoTechnology - TR
Senior Security Engineer - Azure Cloud
NewTranzeal, Inc.
San Francisco, CA🇺🇸Hybrid18 hours agoOWASPAzurePenetration Testing+1Technology - CG
Cyber Security Engineer with Security Clearance
NewCSA Global LLC
Fort Leavenworth, KS🇺🇸Hybrid18 hours agoLESSTechnology - SE
Computer Network Defense Analyst CNDA Level 14 with Security Clearance
NewSentar Inc
Annapolis Junction, MD🇺🇸Hybrid18 hours agoAdministrative - SG
Cybersecurity Engineer
NewSM Global IT LLC
Columbus, OH🇺🇸Hybrid18 hours agoEncryptionTCP/IPDNSTechnology - II
Information System Security Engineer (ISSE) II - Hybrid with Security Clearance
NewIshpi Information Technologies, Inc.
Philadelphia, PA🇺🇸Hybrid18 hours agoTechnology