Information Security Engineer

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of HSP Group

HSP Group

51 - 200 employees

🤝 B2B

💼 Consulting

📋 Compliance

B2B • Consulting • Compliance

HSP Group helps companies manage their international operations and expand globally. We provide HQ-based finance, tax, legal and HR personnel with a simplified, turnkey approach to ensure efficient operations, full compliance with local regulations, and needed consistency across each geography.

📋 Description

• Lead the company’s SOC 2 compliance program, including readiness, control implementation, evidence collection, ongoing monitoring, remediation, and auditor coordination • Lead vulnerability management across SaaS products, cloud infrastructure, containers, and endpoints • Operate and tune SAST, SCA, and dependency-scanning tools and partner with engineering on remediation • Monitor runtime and infrastructure telemetry, investigate alerts, and lead containment and follow-up actions • Track and report vulnerability SLAs, mean-time-to-remediate, and security KPIs to leadership • Enhance Microsoft Azure security across identity, networking, data, and workloads • Administer and improve Microsoft Intune for endpoint configuration, compliance, and mobile device management • Tune and maintain Microsoft Defender for threat detection, response, and reporting • Draft, update, and maintain information security policies, standards, and procedures • Lead responses to customer and prospect security questionnaires, RFPs, and due-diligence requests • Support vendor risk assessments, third-party security reviews, audits, evidence collection, and remediation • Partner with Engineering on secure SDLC practices, threat modeling, and code review guidance • Contribute to security awareness training and phishing simulations • Mature incident response playbooks and participate in tabletop exercises and on-call rotations as needed

🎯 Requirements

• 4–6 years of professional experience in information security, application security, cloud security, or a closely related role • Experience preparing for SOC 2 Type 2 attestations for SaaS products • Hands-on experience securing SaaS applications and workloads running in Microsoft Azure • Experience with vulnerability management tooling and processes, including triage, prioritization, and remediation through engineering teams • Working proficiency with several of Microsoft Intune, Microsoft Defender, Microsoft Purview, Datadog, GitHub Advanced Security/Dependabot/code scanning, and Snyk • Understanding of identity and access management, particularly Microsoft Entra ID, conditional access, and least-privilege design • Experience writing or substantially contributing to security policies, standards, or procedures • Experience responding to customer security questionnaires and supporting compliance efforts • Strong written and verbal communication skills and ability to translate technical risk for technical and non-technical stakeholders • Nice-to-have certifications include CISSP, CCSP, AZ-500, SC-200, SC-100, GCIH, and GSEC • Nice-to-have experience with container and Kubernetes security, threat modeling, secure code review, penetration testing, SaaS companies, or regulated industries

Apply Now

Similar Jobs

🔥 42 minutes ago

Game Plan Tech

51 - 200

💼 Consulting

🎖️ Defense

🤖 Artificial Intelligence

Software modernization engineer using generative AI to transform legacy applications for public-sector organizations. Analyzing mainframe code, migrating data, and building modern cloud-based solutions.

🔥 1 hour ago

Accenture Federal Services

10,000+ employees

💼 Consulting

🎖️ Defense

📦 Logistics

Security Architect Specialist securing federal government technology systems for Accenture Federal Services. Tracking ATO projects, reviewing security controls, and improving enterprise security processes.

🇺🇸 United States – Remote

💵 $78.6k - $160.2k / year

⏰ Full Time

🟢 Junior

🟡 Mid-level

👮‍♂️ Cybersecurity / Security Engineer

🚫👨‍🎓 No degree required

🔥 1 hour ago

Corbalt

11 - 50

💼 Consulting

🏥 Healthcare

📦 Logistics

Security Engineer securing cloud-native platforms for Corbalt, a federal technology modernization company. Integrating DevSecOps, vulnerability remediation, and compliance across critical healthcare systems.

🔥 1 hour ago

Humana

10,000+ employees

🏥 Healthcare

🛡️ Insurance

⚕️ Healthcare Insurance

Cyber Security Engineer securing Humana’s healthcare applications, SaaS platforms, cloud environments, and development pipelines. Operating and automating enterprise security tools to reduce risk and improve security posture.

🔥 1 hour ago

Genpact

10,000+ employees

🤝 B2B

💼 Consulting

🤖 Artificial Intelligence

Microsoft Security Consultant securing Microsoft 365 Copilot adoption for Genpact. Leading Purview, identity, data protection, AI governance, and compliance controls in regulated environments.