Job#: 3026986 Job Description: Security Configuration Baseline EngineerLocations: Las Colinas, TX Charlotte, NC Chandler, AZ
Potential for Conversion: Yes
Role OverviewWe are seeking a highly skilled
Security Configuration Baseline Engineer to support large-scale, enterprise-level security initiatives. In this contingent assignment, you will consult on complex information security challenges, contribute to long-term strategic planning, and engineer codified security baselines that strengthen the organization's cloud and platform security posture.
This role sits at the intersection of
GRC, cloud security engineering, automation, and baseline governance. You will translate policies, standards, and risk requirements into
baseline-as-code, enabling preventative controls, drift detection, exception workflows, and enterprise-scale governance through the Cloud Security Benchmark (CSB) system of record.
This is an engineering-focused role-not advisory architecture-requiring deep technical expertise, strong analytical skills, and the ability to operate within a highly regulated environment.
Key Responsibilities- Consult on complex, large-scale information security initiatives with broad organizational impact.
- Review and analyze multi-faceted security challenges requiring evaluation of numerous technical and non-technical factors.
- Engineer, implement, and operationalize security configuration baselines across cloud and enterprise platforms.
- Convert standards, policies, and risk requirements into machine-enforceable baseline-as-code.
- Support preventative controls, drift detection, exception handling, and governance automation.
- Collaborate strategically with cross-functional teams, including cloud engineering, GRC, audit, and architecture.
- Produce clear, structured, audit-ready documentation aligned with regulatory expectations.
Required Qualifications- 5+ years of experience in cloud security, platform security, or security engineering.
- 5+ years of cloud technology experience (Azure and/or Google Cloud Platform preferred).
- 3+ years of risk and control experience.
- 3-5 years of cloud security posture management experience.
- 2-4 years of Python development experience (scripting, automation).
- Hands-on experience with security configuration baselines or hardening standards.
- Strong working knowledge of:
- Public cloud platforms (Azure, Google Cloud Platform)
- Policy-as-code or guardrail frameworks
- Infrastructure-as-Code (Terraform preferred)
- Experience mapping controls to industry standards (CIS, NIST, ISO).
- Ability to produce audit-ready, defensible documentation.
- Experience working in large, regulated enterprise environments.
Preferred Qualifications- Experience with a baseline-as-code program.
- Familiarity with cloud organization-level controls (management groups, org policies, folders).
- Experience integrating security controls into CI/CD pipelines.
- Exposure to risk management, audit response, or regulatory examinations.
- Background in automating governance processes (exceptions, validation, reporting).
- Experience in regulated industries (financial services, healthcare, etc.).
- Knowledge of authoritative sources such as NIST, CSA, CIS Benchmarks.
Key Skills & Attributes- Engineering mindset with strong governance discipline.
- Ability to convert ambiguous requirements into explicit, enforceable technical controls.
- Detail-oriented with strong emphasis on traceability and defensibility.
- Excellent written communication skills for executive, audit, and technical audiences.
- Ability to work independently while collaborating across multiple enterprise teams.
EEO Employer
Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation in using our website for a search or application, please contact our Employee Services Department at or .
Apex Systems is a world-class IT services company that serves thousands of clients across the globe. When you join Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRated's Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico. Apex uses a virtual recruiter as part of the application process. Click for more details.
Apex Benefits Overview: Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our 'Welcome Packet' as well, which an Apex team member can provide.