Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer

Full-time

GXA IT Consulting

Key Responsibilities

Incident Response

  • Serve as a Tier 3 escalation point for active security incidents, including business email compromise (BEC), adversary-in-the-middle (AiTM), ransomware, account compromise, identity-based attacks , and other security events.
  • Lead technical analysis during incident response and war room events, including log review, IOC hunting, attacker activity analysis, and lateral movement tracing .
  • Execute containment and eradication actions such as endpoint isolation, session revocation, credential resets, access restriction , and other appropriate remediation actions.
  • Troubleshoot incidents that may span multiple technical layers, including identity, endpoints, servers, networking, cloud services, and security controls , to distinguish security events from underlying infrastructure issues.
  • Coordinate with SOC teams, infrastructure teams, and vendor threat intelligence teams during active investigations and containment efforts.
  • Maintain a calm and methodical approach during high-impact incidents, working through available evidence and technical dependencies rather than relying on assumptions.
  • Communicate clearly during active incidents, including what is known, what has been investigated, what actions have been taken, what is being investigated next, and where additional support is required.
  • Produce accurate incident timelines, technical findings, and evidence packages for vCISO review and client-facing follow-up.

Tool Operations & Security Stack Support

  • Operate daily within the gShield toolstack , including platforms such as Huntress, Microsoft Defender for Endpoint (MDE), Cyrisma, DNSFilter, SIEM , and related security technologies.
  • Perform alert triage, risk identification, scan issue resolution, investigation, and follow-through on issues surfaced by security tools.
  • Support SIEM operations including query development, alert review, log analysis, investigation, and rule tuning.
  • Assist in tuning detection logic, scan settings, and platform effectiveness in coordination with Centralized Services and security leadership.
  • Monitor for security gaps, suspicious activity, configuration weaknesses, and control failures across managed environments.
  • Correlate information across identity, endpoint, network, server, and cloud sources when investigating security issues.
  • Work within established security standards, baselines, and operational policies defined by the security team and vITMs .

Infrastructure & Security Engineering

  • Apply security principles across on-premises, cloud, and hybrid client environments .
  • Troubleshoot security issues involving underlying infrastructure components such as Active Directory, Microsoft Entra ID, Windows servers, endpoints, DNS, networking, firewalls, VPNs, virtualization, and cloud services .
  • Understand how identity, network connectivity, endpoints, servers, cloud platforms, and security controls interact, and use that understanding to troubleshoot complex issues.
  • Support security hardening of Windows, endpoint, identity, network, and cloud environments .
  • Assist with identity and access security including MFA, Conditional Access, privileged access, authentication, authorization, and account security .
  • Support endpoint and server security controls, patching, configuration improvements, and remediation activities.
  • Work effectively with technologies that may be unfamiliar by researching, testing, validating, and documenting appropriate solutions while escalating appropriately when additional expertise is required.

Client Delivery Support

  • Execute technical remediation items identified through MRMMs, preventative actions, vulnerability reviews, and security recommendations .
  • Support gShield deliverables through technical validation, evidence gathering, scan review, vulnerability analysis, and remediation validation.
  • Assess vulnerabilities based not only on severity scores but also on asset criticality, exposure, exploitability, existing controls, and business impact .
  • Work with client and internal technical teams to remediate vulnerabilities and security weaknesses, including identifying appropriate compensating controls when immediate remediation is not possible.
  • Validate remediation and confirm that identified risks have been appropriately addressed.
  • Act as a quality assurance resource for client onboarding into the gShield toolstack , while execution remains with onboarding and Centralized Services teams .
  • Assist with client hardening efforts and follow-through on security improvement actions across managed environments.
  • Support multiple client environments with different infrastructure, configurations, security tools, and levels of technical maturity.

Internal Security Posture

  • Support remediation of internal GXA security backlog items , including POA&M-related work .
  • Assist with rollout and support of phishing-resistant MFA, passkeys, and other internal security initiatives .
  • Contribute to security engineering efforts related to Intune, Defender, ThreatLocker, AppLocker, and RMM scripting .
  • Help improve internal security controls, tool effectiveness, and technical enforcement mechanisms.
  • Support security hardening and remediation across internal identity, endpoint, server, network, and cloud environments where needed.

Documentation & Process Improvement

  • Write and maintain security engineering SOPs, runbooks, detection playbooks, troubleshooting procedures, and response procedures related to gShield operations and incident response.
  • Document technical findings, repeatable procedures, remediation steps, and lessons learned from incidents and tool operations.
  • Clearly document what was identified, what actions were taken, why those actions were taken, and what follow-up is required.
  • Collaborate with security leadership and technical stakeholders on process improvements, skill development, and automation opportunities.
  • Contribute technical depth to broader security documentation where needed, while recognizing that ownership of policy, standards, and governance documentation remains with security leadership and related functions.

Qualifications

  • 5–7+ years of experience across cybersecurity, security engineering, infrastructure engineering, network engineering, security operations, or related technical roles .
  • Strong technical foundation across IT infrastructure and security , with practical understanding of networking, servers, identity, endpoints, cloud services , and how these technologies interact.
  • Hands-on experience troubleshooting on-premises, cloud, or hybrid environments .
  • Working knowledge of infrastructure technologies and concepts such as Active Directory, Windows Server, DNS, DHCP, TCP/IP, routing, switching, VLANs, VPNs, firewalls, and virtualization .
  • Strong hands-on experience with security engineering, threat detection, security operations, incident investigation, or incident response workflows .
  • Experience working with security platforms such as Microsoft Defender, Huntress, DNSFilter, SIEM solutions, vulnerability management tools, and endpoint security technologies .
  • Ability to investigate security alerts, analyze logs, trace attacker activity, determine scope, and support containment and remediation.
  • Familiarity with common attack types including phishing, BEC, account compromise, ransomware, identity-based attacks, and endpoint compromise .
  • Experience supporting security controls within Microsoft 365, Microsoft Entra ID, endpoint, and cloud environments .
  • Understanding of vulnerability management and remediation , including prioritization based on technical severity, exposure, asset criticality, and business risk .
  • Ability to independently troubleshoot technical problems, develop and test hypotheses, identify root causes, and recognize when escalation or additional expertise is appropriate.
  • Ability to remain calm, structured, and methodical during active incidents, outages, and technical escalations, including situations where the root cause is initially unknown.
  • Strong verbal and written communication skills, with the ability to provide concise technical updates explaining current status, actions completed, current investigation, and next steps.
  • Strong documentation skills and ability to write clear technical procedures and findings.
  • Ability to acknowledge knowledge gaps, research unfamiliar technologies, learn quickly, and apply new knowledge safely in production environments.
  • Strong collaboration skills with security, infrastructure, service delivery, leadership, and client stakeholders.

Preferred Qualifications

  • 1-2 years in a Cybersecurity role .
  • Experience in an MSP, MSSP, or multi-client environment .
  • Prior experience in systems administration, network engineering, infrastructure engineering, or a similarly hands-on IT role before or alongside cybersecurity responsibilities.
  • Experience supporting both traditional on-premises infrastructure and cloud environments .
  • Familiarity with Intune, Microsoft Defender, Microsoft Sentinel, AppLocker, ThreatLocker, and RMM-based scripting or automation .
  • Experience with Azure security and infrastructure ; AWS or other cloud-platform experience is also valuable.
  • Experience with Windows Server, Active Directory, virtualization platforms such as VMware/Hyper-V, firewall technologies, and network troubleshooting .
  • Understanding of CIS benchmarks, security hardening standards, Zero Trust principles, and configuration drift monitoring .
  • Experience supporting vulnerability remediation and technical aspects of vCISO or managed security programs .
  • Experience with scripting or automation using technologies such as PowerShell, APIs, or RMM platforms .
  • Security certifications such as Security+, CySA+, SC-200, SC-300, AZ-500, GCIH, GCIA , or similar are a plus.
  • Infrastructure/network certifications or equivalent practical experience, such as CCNA, Microsoft infrastructure certifications, Azure Administrator , or similar, are also valuable.

Success in This Role Looks Like

  • Security incidents and technical escalations are handled quickly, accurately, calmly, and with strong technical discipline .
  • The engineer can troubleshoot across security, identity, endpoint, server, network, and cloud layers rather than relying solely on security tools or another technical team.
  • Alerts and risks surfaced by the toolstack are investigated and acted on consistently.
  • Client security remediation items are executed thoroughly, validated, and completed on time.
  • Vulnerabilities are evaluated based on actual risk and business context , and remediation is followed through to completion.
  • gShield tooling is tuned, effective, and operationally reliable.
  • Clients and internal stakeholders receive clear, concise updates during incidents and technical escalations, even when the root cause has not yet been determined.
  • Technical problems are approached methodically, with appropriate investigation, testing, documentation, and escalation when necessary.
  • The engineer demonstrates ownership, curiosity, sound technical judgment, and willingness to learn unfamiliar technologies rather than being limited to a narrow security specialty.
  • Documentation, SOPs, troubleshooting procedures, and response playbooks are clear, useful, and continuously improving.
  • Internal and client security posture improves through strong technical follow-through.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Engineer in Remote vacancy
  •  ...ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers support clients in assessing, improving, and maintaining the cybersecurity posture of their ICS/OT environments to mitigate security risks (e.g., insider and external threats, intentional and accidental... 
    Suggested
    Full time
    Work at office
    Remote work

    Logical Systems

    Golden, CO
    18 hours ago
  •  ...enterprise software architectures that support the bank’s information security operations functions. This role performs feedback and...  ...bank. The position serves as a technical resource for security engineering initiatives, applying advanced knowledge to evaluate, build, and... 
    Suggested
    Remote work

    WesBanco

    Parkersburg, WV
    4 days ago
  • Position: Senior Security Engineer - PKI & Detection, Aircraft SecurityLocation: Fort Worth Texas (Hybrid - onsite Tuesday through Thursday; remote Monday and Friday)Duration: ContractJob ID: 178660Job Overview:We are seeking a Senior Security Engineer to support aircraft... 
    Suggested
    Full time
    Remote work
    Monday to Friday

    Pinnacle Group

    Fort Worth, TX
    2 days ago
  • $165k - $242k

     ...CRWV) in March 2025. Learn more at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for securing how our people...  ..., this is the team to join.About the Role:As a Senior Security Engineer, Enterprise Security, you’ll design and ship the security controls... 
    Suggested
    Permanent employment
    Full time
    Temporary work
    For contractors
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    New York, NY
    4 days ago
  • Senior Security Engineer- Product SecurityAugusta, GaWork Location & ScheduleThis is a hybrid position based in our Augusta, GA office. Team members are expected to work on-site two days per week in our Augusta office and remotely three days per week. This schedule supports... 
    Suggested
    Full time
    Temporary work
    For contractors
    Fixed term contract
    Work at office
    Remote work
    Flexible hours
    2 days per week
    3 days per week

    TaxSlayer

    Augusta, GA
    1 day ago
  • $234.4k - $385k

     ...artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are...  ...engaging a robust security culture. About the RoleAs a Security Engineer, Application Security you will be responsible for identifying and... 
    Work at office
    Remote work
    Relocation package
    Flexible hours

    OpenAI

    San Francisco, CA
    3 days ago
  • $107.93k - $188.9k

    Position Summary Deloitte’s Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM... 
    Remote work

    Deloitte

    Baltimore, MD
    3 days ago
  • $159.3k - $212.8k

    The AWS Security Hub team is looking for a passionate and innovative security engineer with a focus on compliance and security best practices for AWS, Azure, and GCP services. AWS Security Hub is the security and compliance center for AWS customers. One of its main functions... 
    Internship
    Flexible hours

    Amazon

    New York, NY
    3 days ago
  • $178.4k - $226.7k

    AHAS reduces the risk of human and operator access to AWS production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the security design decisions for the operator-access tooling this team builds... 
    Internship
    Remote work
    Flexible hours

    Amazon

    Arlington, VA
    18 hours ago
  •  ...us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Security Engineer- Hybrid to join our team in Fort Washington, Pennsylvania (US-PA), United States (US).The Security Engineer is a hands-on... 
    Work at office
    Local area
    Remote work
    Flexible hours

    NTT DATA

    Fort Washington, PA
    18 hours ago
  •  ...with the opportunity to work within an innovative and collaborative environment. Join our Technology Team as an Identity and Security Engineer located in various offices.We are seeking a professional who thrives in a fast-paced, deadline-driven environment. The ideal candidate... 
    Full time
    Remote work
    Flexible hours

    Greenberg Traurig LLP

    Dallas, TX
    18 hours ago
  • $10k

     ...to build systems that directly shape how companies move and manage billions, Ramp is the place to do it.As Ramp’s founding Privacy engineer, you will build a privacy program that powers Ramp’s growth while earning trust from customers and prospects.What You’ll DoBuild... 
    Full time
    Work at office
    Remote work
    Home office
    Flexible hours
    Shift work

    Ramp

    New York, NY
    4 days ago
  • $86.8k - $198k

    ICAM Security EngineerThe Opportunity:The user is the last frontier for cybersecurity. It’s where the perimeter is drawn, and securing...  ...an Identity, Credential, and Access Management (ICAM) Security Engineer at Booz Allen, you’ll play a critical role in the world of identity... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    3 days ago
  •  ...Modernisation, and Industry-Specific Software Solutions, DXC modernises, secures, and operates some of the world’s most complex technology...  ...and New Zealand market, we are enhancing the Security Engineering Team who work within the Secured Infrastructure capacity to deliver... 
    Full time
    Local area

    DXC Technology

    Washington DC
    3 days ago
  •  ...designated work from home day is currently Tuesday.About the RoleLambda Security protects some of the world's most valuable digital assets:...  ...that powers breakthrough artificial intelligence.As a Security Engineer at Lambda, you'll touch many areas across the security program... 
    Work at office
    Local area
    Work from home
    Flexible hours
    Shift work

    Lambda Labs

    San Jose, CA
    3 days ago
  • Summary: Responsible for the day-to-day security operations at Columbia Bank. The individual will serve as a technical operations subject...  ...operators, and ensures execution of processes. The Security Engineer’s core responsibilities include threat and vulnerability management... 
    Work at office
    Work from home

    Columbia Bank New Jersey

    Fair Lawn, NJ
    3 days ago
  • $145k - $200k

    Washington, D.C.Information Security /Full-time /HybridA World-Changing CompanyPalantir builds the world’s leading software for data-driven...  ...the way a real attacker would. As an Offensive Security Engineer, you will test internal applications and infrastructure, chain... 
    Full time
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    2 days ago
  • $114.39k - $240.35k

     ...information systems. The position provides certified and licensed security support to ensure systems meet FAA, federal, and NIST security...  ...life cycle.Position SummaryThe Information Systems Security Engineer/Analyst provides security engineering, analysis, and compliance... 
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Noblis

    Atlantic City, NJ
    2 days ago
  • $112.8k - $257k

    Security EngineerThe Opportunity: We need a technical professional responsible for designing, building, and maintaining systems that protect an organization’s data, networks, and IT infrastructure from cyber-attacks. In this position, you will focus on proactive defense... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Annapolis Junction, MD
    1 day ago
  • $230k - $385k

     ...artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are...  ...customers in the public sector. As a Forward Deployed Security Engineer (FDSecE) you will be responsible for securing these novel applications... 
    Work at office
    Local area
    Remote work
    Relocation package
    Flexible hours

    OpenAI

    Washington DC
    3 days ago
  •  ...developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.SECURITY ENGINEERSpaceX is looking for a Security Engineer to join our Information Security department to help protect and drive the SpaceX mission.Information drives... 
    Permanent employment
    Remote work
    Weekend work

    SpaceX

    Cape Canaveral, FL
    3 days ago
  •  ...future. We welcome candidates who can contribute to the excellence of our academic community. Description The Federated Security Engineer is a detail-oriented and proactive technical professional, with Identity and Access Management (IAM) expertise and a... 
    Work at office
    Remote work

    Emory University

    Atlanta, GA
    1 day ago
  • $153k - $376k

     ...together in real time from anywhere in the world. If you're excited to shape the future of design and collaboration, join us!As a Security Engineer you will identify and drive impactful projects to improve the security of Figma’s product, platform, and IT systems. We are... 
    Minimum wage
    Full time
    Local area
    Remote work
    Flexible hours

    Figma

    San Francisco, CA
    4 days ago
  • $293k - $385k

     ...that artificial general intelligence benefits all of humanity.The Security team protects OpenAI’s technology, people, and products. We are...  ...engaging a robust security culture.About the RoleAs a Security Engineer on Detection & Response, you’ll help protect OpenAI’s most... 
    Work at office
    Local area
    Remote work
    Flexible hours

    OpenAI

    San Francisco, CA
    4 days ago
  • $145.9k - $234.2k

    The Role: As a Cybersecurity Engineer, you will help design, implement, and mature Moderna’s approach to API security across modern applications, platform services, and AI-enabled use cases. This role is primarily focused on securing APIs and the systems that expose and... 
    Permanent employment
    Full time
    Work at office
    Work from home

    Moderna Therapeutics

    Cambridge, MA
    18 hours ago
  • Job DescriptionEverforth ECS is seeking a Security Engineer to work in our Portland, OR office or remotely. Note: This position is contingent upon contract award.The Security Engineer supports the design, implementation, configuration, and maintenance of cybersecurity technologies... 
    Contract work
    Work at office
    Remote work

    ECS Federal

    Portland, OR
    18 hours ago
  • $73.84k - $128.44k

    OverviewYou’re invited to join our Enterprise Information Security team, focusing on corporate Identity & Access Management. At Esri, you will work with a close-knit, skilled team in a highly innovative environment. Help us build and operate enterprise single-sign-on (... 

    ESRI

    Redlands, CA
    4 days ago
  • $99k - $225k

    Virtru Security EngineerThe Opportunity:As a Virtru Security Engineer you’ll play a critical role in the world of zero trust. You will support the cyber architecture development, implementation, and sustainment across multiple networks of different classification levels... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Mechanicsburg, PA
    3 days ago
  •  ...project management, applications development, infrastructure, Cyber security, and enterprise content/data management services. We have...  ...Washington, DCJob DescriptionThe Identity and Authentication Security Engineer/Admin will be responsible for technical support to security... 
    Remote work

    Comtech

    Washington DC
    1 day ago
  •  ...****@*****.*** EngineerLocation: Remote / Distributed (Global)About the Opportunity We are seeking an experienced Security Engineer to join a high-impact team building core decentralized infrastructure that processes billions in daily transaction volume.... 
    Remote work

    Objective Paradigm

    New York, NY
    18 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!