
Security Engineer III
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Take ownership of the monitoring and upkeep of security controls in both cloud and corporate settings.
• Configure, manage, and enhance SIEM, firewalls, IDS/IPS, WAF, endpoint protection, vulnerability management, and IAM tools.
• Identify security vulnerabilities, evaluate business implications, and promote improvements in security posture.
• Lead initiatives for infrastructure hardening and secure configurations.
• Establish and supervise operational security standards, SOPs, and SLAs.
• Manage the entire incident response lifecycle, from detection to post-incident analysis.
• Oversee incident response efforts, coordinating with internal teams and external partners.
• Maintain playbooks, SOPs, runbooks, and escalation protocols for incident response.
• Conduct root cause analyses and monitor corrective and preventive actions.
• Stay abreast of emerging threats and evaluate their potential impact.
• Manage vulnerability processes across infrastructure, applications, endpoints, and cloud environments.
• Prioritize vulnerabilities and guide remediation efforts to resolution.
• Monitor remediation against SLAs, observe aging vulnerabilities, and escalate risks as needed.
• Implement security controls and automate repetitive security tasks.
• Develop scripts, tools, and integrations for security monitoring, reporting, and response.
• Engage in security architecture reviews and assess security technologies.
• Maintain a security roadmap and monitor initiatives against timelines and KPIs.
• Collaborate with Omnissa on platform updates, security enhancements, vulnerabilities, and remediation efforts.
• Assist in vendor security evaluations and keep track of third-party security risks.
• Provide technical support for SOC 2, HIPAA, PCI-DSS, GDPR, and other compliance programs.
• Maintain policies, procedures, audit documentation, and technical records.
• Coordinate evidence gathering and respond to audit inquiries.
• Manage the security scorecard and communicate KPIs and operational metrics to leadership.
• Analyze trends and risks in security metrics and provide actionable recommendations.
• Collaborate across functions with Engineering, Product, Support, Operations, Compliance, and other teams.
• Offer guidance on secure design and implementation while effectively communicating risks to both technical and non-technical stakeholders.
• 5-8 years of experience in security engineering, cybersecurity, infrastructure security, or a related technical field.
• Experience in a cloud-based or SaaS environment.
• Proven hands-on experience managing security monitoring, vulnerability management, incident response, and security controls.
• Working knowledge of cloud security principles, particularly within AWS, Azure, or GCP.
• Familiarity with security technologies such as SIEM, firewalls, IDS/IPS, WAF, endpoint protection, vulnerability scanners, or IAM.
• Strong understanding of prevalent security threats, attack methodologies, and mitigation tactics.
• Ability to work independently, prioritize competing risks, and take ownership until resolution.
• Experience tracking tasks against established SLAs, KPIs, or operational metrics.
• Excellent written and verbal communication skills, with the ability to convey security risks and status clearly to leadership.
• High attention to detail and a disciplined approach to documentation, SOPs, SLAs, and follow-through.
• Experience in supporting security and compliance requirements within a regulated or compliance-focused environment.
• Preferred experience with Omnissa Horizon or VMware Horizon, AWS, Azure, Google Cloud Platform, Kubernetes and container security, Infrastructure as Code, Terraform or CloudFormation, IAM, security automation and orchestration, threat intelligence or digital forensics, Python, PowerShell, Go, MITRE ATT&CK, Zero Trust architecture, or compliance frameworks.
• Relevant certifications are a plus, including Security+, CISSP, CCSP, CISM, AWS Security Specialty, Azure Security Engineer Associate, or GIAC certifications.
• Comprehensive medical (including telehealth), dental, and vision plans.
• Employee Assistance Program.
• Employer-paid basic life insurance and AD&D.
• 401(k) retirement plan.
• Flexible paid time off.
• Generous holiday schedule.
• Voluntary short and long-term disability.
• Collaborative teammates who enjoy solving challenging problems together.
Atos
Meridian Bioscience Inc.
Providence
Frontera
Get handpicked remote jobs straight to your inbox weekly.