Overview
On Site
150k - 220k
Full Time
Skills
Security Architecture
Hardening
SIEM
IDS
IPS
Endpoint Protection
Network
Identity Management
Management
SSO
Multi-factor Authentication
Incident Management
Collaboration
Build Automation
Training
Documentation
DevOps
Security Engineering
Cloud Computing
Amazon Web Services
Google Cloud Platform
Google Cloud
Microsoft Azure
Kubernetes
Terraform
Linux
Microsoft Windows
Computer Networking
Vulnerability Management
Intrusion Detection
Log Analysis
Scripting
Programming Languages
Python
Bash
Network Design
Regulatory Compliance
System On A Chip
ISO/IEC 27001:2005
FedRAMP
HIPAA
Open Source
DevSecOps
Continuous Integration
Continuous Delivery
Security Controls
Job Details
One of our clients is seeking an experienced Infrastructure Security Engineer to help design, implement, and maintain the security of their cloud and on-premises infrastructure. You will be responsible for safeguarding their systems, networks, and services by applying security best practices, building automation to enforce policies, and partnering closely with infrastructure and application teams to proactively identify and mitigate risks.
This role is ideal for someone who thrives at the intersection of security and infrastructure engineering-comfortable working hands-on with cloud services, Kubernetes, and automation tooling while also driving security strategy and compliance.
Responsibilities
Required:
Preferred:
This role is ideal for someone who thrives at the intersection of security and infrastructure engineering-comfortable working hands-on with cloud services, Kubernetes, and automation tooling while also driving security strategy and compliance.
Responsibilities
- Security Architecture & Hardening
- Design, implement, and maintain secure infrastructure across cloud (AWS, Google Cloud Platform, or Azure) and on-prem environments.
- Harden Kubernetes clusters, container runtimes, Linux/Windows hosts, and network configurations.
- Build and maintain infrastructure-as-code (Terraform, Pulumi, CloudFormation) with security guardrails.
- Monitoring & Detection
- Deploy and manage security monitoring tools (SIEM, IDS/IPS, endpoint protection, vulnerability scanners).
- Develop automated detection and alerting for anomalous activities in infrastructure and network layers.
- Identity & Access Management
- Implement and enforce least-privilege access policies across infrastructure, including IAM, secrets management, and certificate lifecycles.
- Support SSO, MFA, and role-based access across cloud and internal systems.
- Incident Response & Threat Mitigation
- Collaborate with security and ops teams to investigate and remediate security incidents.
- Conduct post-mortems and implement lessons learned into infrastructure tooling and processes.
- Collaboration & Enablement
- Partner with DevOps, Platform, and Engineering teams to integrate security into CI/CD pipelines.
- Build automation and self-service tooling that enables developers to adopt secure patterns without friction.
- Contribute to security training and best-practice documentation for engineers.
Required:
- 3-5+ years of experience in infrastructure, DevOps, or security engineering.
- Strong knowledge of cloud platforms (AWS, Google Cloud Platform, or Azure).
- Experience with Kubernetes, container security, and infrastructure-as-code (Terraform preferred).
- Proficiency in securing Linux/Windows systems and core networking protocols.
- Hands-on experience with vulnerability management, intrusion detection, and log analysis.
- Proficiency in scripting or programming languages (Python, Go, or Bash).
Preferred:
- Familiarity with zero-trust architecture and secure network design.
- Experience implementing compliance frameworks (SOC 2, ISO 27001, FedRAMP, HIPAA, etc.).
- Contributions to open-source security or DevSecOps tooling.
- Knowledge of modern CI/CD pipelines and integrating security controls into them.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.