Overview
On Site
BASED ON EXPERIENCE
Contract - Independent
Contract - W2
Contract - 8+ mo(s)
Skills
COMPLIANCE
THREAT MODELING
RISK ANALYSIS
SECURITY ASSESSMENTS
SANS
GIAC
CISSP
AZURE POLICY
MICROSOFT PURVIEW
AZURE DATA EXPLORER
KUSTO
KQL
POWERSHELL
AZURE LOGIC APPS
CI/CD INTEGRATION
SCRIPTING
Job Details
Security and Compliance EngineerJob Summary: Talent Software Services is in search of a Security and Compliance Engineer for a contract position in Redmond, WA. The opportunity will be eight months with a strong chance for a long-term extension.
Primary Responsibilities/Accountabilities:
- Perform in-depth security and risk assessments for services deployed on Azure and Power Platform.
- Document risks in the Risk Register, ensuring accurate linkage to corresponding remediation actions.
- Collaborate with engineering teams to track progress on risk mitigation and ensure closure.
- Provide technical guidance and hands-on remediation support, including dedicated office hours.
- Capture and standardize remediation steps, building reusable guidance for future scenarios.
- Analyze security and compliance datasets using tools like Azure Data Explorer (Kusto) to surface insights and summarize risk impact.
- Leverage automation to streamline risk tracking, compliance validation, and remediation workflows.
- Support and participate in security and compliance campaigns, aligning efforts with corporate and division-wide priorities.
- Track and manage assigned work via Azure DevOps, providing timely updates and clear documentation.
- Typical Task Breakdown and Operating Rhythm
- The role will consist of 15% meetings and 75% focused, independent work.
Qualifications:
- Years of Experience Required: 5 years of experience in the field.
- Degrees or Certifications Required: CISSP certification or equivalent (e.g., SANS GIAC certifications) is required.
- Bachelor's degree in Computer Science, Software Engineering, or a related technical discipline OR 5-7 years of relevant industry experience in security engineering, compliance, or cloud risk management.
- The ideal candidate will have experience with secure code reviews and static/dynamic analysis tools, hands-on experience securing Power Platform, including Canvas Apps and Dataverse, and familiarity with compliance automation frameworks or platforms (e.g., Azure Policy, Purview). The candidate should be able to multitask effectively, have a proactive attitude, and possess a friendly demeanor for stakeholder interactions. Compatibility with work ethics is essential.
- Performance Indicators
- Performance will be assessed based on meeting deadlines and the quality of work.
- Minimum 5 years of experience with automation and coding skills.
- Minimum 5 years of experience with Azure, including familiarity with its security architecture and services.
- Minimum 3 years of experience in security assessments, threat modeling, and risk analysis.
- Minimum 1 year of experience with risk management, with working knowledge of NIST CSF v2 or other relevant control frameworks.
If this job is a match for your background, we would be honoured to receive your application!
Providing consulting opportunities to TALENTed people since 1987, we offer a host of opportunities, including contract, contract to hire and permanent placement. Let's talk!
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.