Senior Security Controls Engineer
American Credit Acceptance
Position Overview
The Senior Security Controls Engineer designs, implements, and continuously improves technical security controls that reduce risk across on‑premises, cloud, and endpoint environments. This role specializes in hardening, benchmark compliance, configuration risk reduction, compensating controls for non‑patchable vulnerabilities, and control automation at scale. The engineer partners with IT operations, platform teams, and risk/compliance to ensure controls are effective, measurable, and audit‑ready.
Key Responsibilities
- Engineer and maintain preventive and detective controls across endpoints, servers, network, identity, and cloud services (Azure/AWS).
- Lead configuration hardening initiatives using industry benchmarks (e.g., CIS) and establish secure configuration baselines for common platforms (Windows, Linux, network devices, cloud services).
- Design compensating controls for vulnerabilities that cannot be remediated through patching (e.g., configuration changes, isolation, access controls, WAF rules, EDR policy tuning, segmentation).
- Own the technical control lifecycle: control requirements → design → implementation → testing/validation → monitoring → continuous improvement.
- Develop and maintain control-as-code and automation (PowerShell/Python/Terraform/CI-CD) to deploy and enforce configurations consistently.
- Implement configuration compliance monitoring, drift detection, and remediation workflows; integrate with ticketing/ITSM for exception handling.
- Partner with Vulnerability Management to translate findings into durable mitigations (hardening, compensating controls, secure defaults) and reduce recurring exposure.
- Collaborate with SOC/IR to improve detections and containment policies aligned to threats and incidents; tune controls based on lessons learned.
- Produce audit-ready evidence: control narratives, diagrams, test results, screenshots/exports, and KPI dashboards.
- Maintain standards, procedures, and runbooks for control engineering; mentor junior engineers and provide technical leadership to cross-functional teams.
Typical Deliverables
- Secure configuration baselines and reference architectures for key platforms.
- Benchmark compliance reporting (coverage, drift, exceptions) with remediation plans.
- Compensating control designs and validation artifacts for non-patchable risk.
- Automation modules/scripts (policy-as-code) to deploy or enforce controls at scale.
- Control test plans, operational metrics, and audit evidence packages.
Required Qualifications
- 7+ years in security engineering, systems engineering, or infrastructure engineering with a strong focus on security controls and hardening.
- Hands-on expertise with Windows and Linux hardening, identity controls, and endpoint security control configuration.
- Experience implementing benchmark-based configuration standards (e.g., CIS) and managing exceptions/risk acceptances.
- Strong understanding of networking fundamentals (segmentation, firewalls, proxies, routing) and how to apply compensating controls.
- Cloud security controls experience in Azure and/or AWS (IAM, network controls, logging, security services).
- Proficiency in scripting/automation (PowerShell and/or Python); familiarity with infrastructure as code (e.g., Terraform) preferred.
- Ability to translate risk into technical control requirements and document controls for audit and compliance purposes.
- Excellent written and verbal communication; ability to work across infrastructure, application, and governance teams.
Preferred Qualifications
- Experience with configuration management and compliance platforms (e.g., Intune, Group Policy, SCCM/MECM, Ansible, Chef, Puppet).
- Experience with vulnerability scanning and exposure management tools (e.g., Tenable, Qualys, Rapid7) and mitigation engineering workflows.
- Experience tuning EDR policies and implementing detection/response guardrails (e.g., Microsoft Defender for Endpoint, SentinelOne, CrowdStrike).
- Experience with SIEM/SOAR integration for control telemetry and automated response.
- Security certifications (one or more): CISSP, GIAC (GSEC/GCED/GCIA), CCSP, AZ-500, AWS Security Specialty, or equivalent.
- Prior work in regulated industries (financial services, healthcare) with control evidence expectations (SOC 2, PCI DSS, GLBA).
Core Competencies
- Control engineering mindset: designs controls that are measurable, testable, and durable.
- Risk-based prioritization: focuses effort where likelihood and impact are highest.
- Systems thinking: understands dependencies and minimizes operational disruption.
- Automation-first: reduces manual work by codifying and scaling controls.
- Stakeholder partnership: collaborates with IT and product teams to drive adoption.
Success Measures (KPIs)
- Reduction in recurring high/critical findings attributable to configuration or control gaps.
- Benchmark compliance coverage (%) and drift rate over time across in-scope assets.
- Mean time to mitigate (MTTM) for non-patchable vulnerabilities using compensating controls.
- Control effectiveness test pass rate and audit evidence readiness (time to produce evidence).
- Automation impact: number of controls deployed/enforced via code and reduction in manual effort.
Working Conditions
This role requires the ability to work effectively with production systems and coordinate maintenance windows, change control, and emergency response activities when required. Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. EEO Statement ACA provides equal employment opportunities (EEO) to all applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. ACA complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. California Privacy Notice As an employer of California residents, we are dedicated to protecting your privacy rights. Any personal information you provide during the application process will be used solely for permitted internal purposes and will be handled in accordance with applicable privacy laws. By applying to this position, you consent to the collection, use, and disclosure of your personal information as described in our Employee Privacy Notice.
- ...Description Position Overview The Junior Security Controls Engineer supports the design, implementation, and maintenance of security controls... ...in control engineering while working under the guidance of senior engineers. Job Details Reports to Director of...SuggestedFull timeLocal area
$71.2k - $158.2k
...Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-... ...Produce high-quality connectivity artifacts (Interface Control Documents for Connectivity [ICD-C]) required for...SeniorContract workTemporary workWork experience placementRelocationFlexible hours$186.07k - $218.9k
...expected and fully supported. The Application Security org at Coinbase is hiring for a Senior Offensive Security Engineer, Offensive Security. We are seeking a highly... ...management systems (BMS), physical access control systems (PACS), IoT/home automation devices, wireless...SeniorLocal area$142.41k - $150.2k
...Education Requirements: Bachelor's degree in Systems Engineering, or a related Science, Engineering or Mathematics field, plus... ...Requirements: Ability to obtain a Department of Defense Secret security clearance is required at time of hire. Applicants selected...SeniorWork at officeFlexible hours$186.07k - $218.9k
...and alignment. Attendance is expected and fully supported. Security is a primary competency at Coinbase, and the Security Team keeps... ..., and other distributed ledger tech Partner with software engineering teams to advise on code and architecture for internal smart...SeniorContract workLocal area- ...forefront of technology and innovation? We're seeking a Product Security Engineer to advance hardware security validation efforts within the... ...(DUT) configurations; improve lab architecture by separating control systems and hardware interaction layers Document lab procedures...SeniorLocal areaImmediate start
$104k - $156k
...Posting Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and operate security controls that protect Relativity's employee endpoints and the enterprise systems they access. You will help...Remote work- ...Job Description Job Description Controls Engineer Boise, ID – Nampa, ID Direct role, $80k-$160k, $100k is the sweet spot, Hybrid, Full Bene’s, Bonuses, ESOP, profit sharing, ENR top 500 Engineering systems integration company works on automation and control...
- ...: Were looking for a motivated early-career engineer ready to launch a meaningful career designing industrial control systems for essential water and wastewater infrastructure... ...related infrastructure. Working closely with senior engineers, youll build hands-on experience in...Temporary workFlexible hours
- ...Job Description Job Description Protection & Control Engineer/Technician – Field Testing & Commissioning Travel-Heavy Field Role – Up to 80% Join a leading team supporting high-voltage substation projects across transmission, distribution, and generation environments...10 hours per week
$184k - $230k
...mission to make the world's health data secure, accessible and actionable, we provide critical... ...lifecycle. Partnering closely with engineering teams, product leadership, and... ...compliance requirements into practical technical controls. What You Will Do Review projects...SeniorRemote work$55 - $75 per hour
...Description Job Description Robert Half Technology is seeking a Security Systems Engineer to support and maintain physical security systems across... ...opportunity for a professional experienced with access control, video surveillance, intrusion detection, and security...Ongoing contractLong term contractContract workLocal areaRemote workFlexible hours- ...About the job Instrumentation and Controls Engineer Qualifications: Here's what you'll need: Bachelor's degree from an ABET-accredited program in Electrical, Chemical, or Mechanical Engineering At least 2 years of experience generating Instrumentation...Contract workFor subcontractorVisa sponsorshipRelocation packageLong distanceMonday to Friday
- ...Overview Job Summary Design, implement and support information security solutions for WinCo Food’s technology environment. Actively... ..., or related field AND five (5) years of IT Security or Engineering experience OR equivalent combination (seven (7) years) of education...Work at officeAfternoon shift
$78.9k - $123.3k
...foundation in network architecture, design, and security - individuals who are ready to step up from traditional network engineering roles to take ownership of strategic,... ....c., NJ, Remote: $86,800 - 135,625 Mid to senior ~ Bachelor's degree in Cybersecurity, Information...Permanent employmentFull timeContract workPart timeLocal areaRemote work$152.41k - $179.3k
...foster collaboration, connection, and alignment. Attendance is expected and fully supported. Coinbase Corporate Security (CorpSec) is seeking a Security Engineer to design, implement, and automate security solutions that protect corporate infrastructure, user devices,...Local area$98.9k
...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate brings broad technical expertise and hands-on experience in end-to-end product security. In this role, you'll collaborate with...Work at officeRemote work$150k - $250k
...need to thrive - in our offices or yours. Job Summary The Security Engineer - Google collaborates with account and specialty teams to... .../IP, VPN, VLANs), understanding of security concepts (access control, authentication, encryption), and proficiency in managing network...Work experience placementWork at officeRemote workWorldwideFlexible hours- ...Senior Cybersecurity Analyst Anywhere Type: Contract-to-Hire Category: Security Industry: Government Workplace Type: Remote Reference ID: JN -062026-107364 Date Posted: 06/09/2026 Shortcut: Description Recommended Jobs Description...SeniorHourly payPermanent employmentContract workLocal areaRemote work
- ...mission‑critical programs across national security, defense, and public service delivery.... ...national scale. The Junior Security Engineer supports 24x7 enterprise cybersecurity... ...compliance activities. The role works under senior guidance to execute defined cyber...Minimum wageFull timeContract workTemporary workWork experience placementRemote work
$218.03k - $256.5k
...Coinbase, identity and access controls are foundational to... ...(IAM) program, housed within Security, is a cross-functional team that... ...landscape. This role serves as a senior technical leader within the IAM program, partnering with Engineering, IT, Platform, and business teams...For contractorsLocal area- ..., anywhere. EDB empowers enterprises to control risk, manage costs and scale efficiently... ...critical capabilities built in such as security, compliance controls, and observability.... ...visit Job Summary As a Staff Security Engineer at EDB, you will be a technical leader...Remote work
$218.03k - $256.5k
.... Coinbase Infrastructure Security (InfraSec) is at the forefront... ...role partners closely with engineering teams to design, implement, and... ...cross-functional teams and senior leaders, driving strategic decisions... ..., and maintaining security controls across multi-cloud...Local area$77.79k - $106.08k
...Project Manager / Senior Project Manager / Principal Project Manager Applications... ...is responsible for directing and controlling multiple capital projects, some of which... ...Requires knowledge of Civil Engineering, surveying, design, and construction standards...SeniorFull timeLocal area- ...Overview: We are seeking a Senior Electrical Engineer for assignment in Boise, Idaho. The selected candidate will work on projects including semiconductor cleanrooms, laboratories and other state of the art industrial environments. Hours are Monday - Friday, 8...SeniorFor contractorsMonday to Friday
$135k - $180k
...Description Job Description The position for Senior Project Manager takes full... ...percent of completion reports. Monitor and control project through administrative direction... .... Bachelor’s degree in electrical engineering plus 10 years’ construction project experience...SeniorFull timeContract workFor contractorsFlexible hours- ...About the job Senior Electrical Engineer Qualifications: Here is what you'll need: Bachelor's of Science Degree in Electrical or Renewable Energy Engineering from an accredited university Current Professional Engineer (PE) licensure with the ability...SeniorContract workFor contractors
$100k - $172.5k
...Learn more at Job Function: Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture Job Category:... ...for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan, NJ. Remote work options...Full timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week$57.69 - $86.54 per hour
...Senior Electrical Engineer We're seeking a Senior Electrical Engineer to lead electrical design projects for semiconductor cleanrooms, laboratories, and other advanced industrial facilities. In this role, you'll provide technical leadership, guide designers, review...SeniorHourly payFor contractors- ...information into intelligence, inspiring the world to learn, communicate and advance faster than ever. The Global Facilities Cost Control Engineer will serve as a key member of the Global Project Controls organization, supporting project controls and cost management...For contractorsWork experience placementLocal areaImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Controls Engineer. Be the first to apply!
- senior cloud security engineer Boise, ID
- sr information security engineer Boise, ID
- network security engineer Boise, ID
- senior application security engineer Boise, ID
- security engineer Boise, ID
- physical security engineer Boise, ID
- IT security engineer Boise, ID
- aws cloud security engineer Boise, ID
- information technology security engineer Boise, ID
- senior brand designer Boise, ID



