Information Security Engineer
TLDR
Hands-on security engineer strengthening enterprise operations through vulnerability management, incident response, and ISO 27001/SOC 2 compliance across cloud and on-prem environments.
This role is responsible for executing and improving security operations, vulnerability management, incident response, and compliance monitoring across enterprise systems, while partnering with cross-functional teams to ensure secure and compliant environments.
- Lead vulnerability assessments, security audits, and risk analysis using industry tools such as Nessus, Tenable, and Burp Suite, ensuring timely remediation of identified issues.
- Monitor, investigate, and respond to security alerts and incidents, performing root cause analysis and recommending corrective actions to strengthen defenses.
- Maintain and enhance continuous compliance programs aligned with frameworks such as ISO 27001:2022 and SOC 2 Type II, with exposure to NIST-based standards.
- Collaborate with IT, DevOps, Engineering, and Compliance teams to enforce security policies, best practices, and secure system configurations.
- Support and improve security monitoring, automation, and tooling for endpoints, networks, cloud environments, and identity systems.
- Contribute to security documentation, reporting, and process improvements to enhance organizational maturity and operational efficiency.
- 5+ years of experience in information security, cybersecurity engineering, or a related technical security role.
- Strong experience with vulnerability scanning tools (Nessus, Tenable, Burp Suite) and interpreting results for remediation.
- Solid understanding of security frameworks such as ISO 27001, SOC 2, and familiarity with NIST 800-53 / 800-171 preferred.
- Experience with security operations including incident detection, response, and root cause analysis.
- Knowledge of network security concepts such as firewalls, VPNs, IDS/IPS, endpoint protection, and cloud security principles.
- Familiarity with automation and scripting (Python, PowerShell) for security workflows is highly desirable.
- Relevant certifications such as CISSP, Security+, or equivalent are strongly preferred.
- Strong analytical mindset, attention to detail, and ability to manage tasks in fast-paced environments.
- Competitive compensation based on experience
- Medical, dental, and vision insurance coverage
- 401(k) retirement savings plan
- Paid time off, parental leave, and global holiday programs
- Wellness and employee assistance resources
- Flexible and remote-friendly work environment
- Professional development and training opportunities
- Additional global benefits depending on eligibility and location
Requirements:
This position requires strong hands-on experience in information security operations, vulnerability management, and compliance frameworks, along with the ability to work cross-functionally in technical environments.
Benefits:
Benefits
Health Insurance
Medical, dental, and vision insurance coverage
Learning Budget
Professional development and training opportunities
additional global benefits
Additional global benefits depending on eligibility and location
Paid Time Off
Paid time off, parental leave, and global holiday programs
Remote-Friendly
Flexible and remote-friendly work environment
Wellness Stipend
Wellness and employee assistance resources
Jobgether runs the largest remote job platform, effectively linking job seekers with over 200,000 flexible and remote opportunities that match their unique skills and preferences. Our focus is on enhancing the hiring process, ensuring efficiency while prioritizing the candidate experience, particularly in the growing health and wellness sector.
- Founded
- Founded 2020
- Employees
- 11-50 employees
- Industry
- Professional Services