Security Engineer – IAM / Cloud / SOC 2


Trova Search
Dice Job Match Score™
🔢 Crunching numbers...
Job Details
Skills
- SOC 2 Type II
- Identity Management
- IAM
- Endpoint Protection
- Entra
- Okta
- Auditing
- Risk Assessment
- HIPAA
- Health Care
- Amazon Web Services
- NIST
- Security Controls
- Security Operations
Summary
Position Summary
We are seeking a hands-on Security Engineer to help build and mature our security program, with a primary focus on Identity and Access Management (IAM), infrastructure security, security operations, cloud security, and SOC 2 Type II readiness.
This role will work closely with IT, Engineering, Operations, and leadership to strengthen identity governance, implement practical security controls, protect cloud and endpoint environments, and support ongoing compliance initiatives.
This is an excellent opportunity for an experienced IAM, infrastructure, cloud, or security engineer who wants broader ownership and the opportunity to help shape a growing security program. Candidates do not need to be experts in every area of cybersecurity or compliance.
Key Responsibilities
- Administer and enhance IAM platforms such as Microsoft Entra ID / Azure AD, Okta, or similar technologies.
- Manage permissions, roles, and access controls across corporate, cloud, and SaaS applications.
- Develop and improve joiner, mover, and leaver processes, user provisioning/deprovisioning, and identity governance.
- Conduct periodic access reviews and enforce least-privilege and role-based access controls (RBAC).
- Implement and maintain security controls supporting SOC 2 Type II readiness and ongoing compliance.
- Assist with audit evidence collection, remediation efforts, documentation, and auditor requests.
- Develop and maintain security policies, procedures, standards, and supporting documentation.
- Help secure AWS cloud infrastructure, endpoints, networks, and SaaS applications.
- Support endpoint protection, EDR, vulnerability management, logging, monitoring, and security alerting tools.
- Coordinate vulnerability assessments and partner with Infrastructure and Engineering teams to remediate identified risks.
- Assist with security incident investigation, response, documentation, and remediation.
- Support third-party and vendor security assessments.
- Help coordinate employee security awareness and phishing training.
- Partner with Development and DevOps teams on security initiatives while primarily serving as an IAM and infrastructure-focused security resource.
- Identify security gaps and help prioritize practical remediation efforts.
Required Qualifications
- Professional experience in Information Security, Cybersecurity, IAM, Infrastructure Security, Systems Engineering, Cloud Security, or a related discipline.
- Hands-on experience with at least one enterprise IAM platform such as Microsoft Entra ID / Azure Active Directory, Okta, or similar.
- Experience with:
- SSO
- MFA
- RBAC
- User provisioning and deprovisioning
- Access reviews
- Least-privilege access
- Working knowledge of cloud and infrastructure security concepts.
- Experience with security technologies such as EDR, endpoint protection, vulnerability management, logging, monitoring, firewalls, or related tools.
- Ability to independently investigate technical issues, implement solutions, and document processes.
- Strong communication skills with the ability to work effectively across technical and non-technical teams.
- Comfortable taking ownership and expanding responsibilities as the security program matures.
Preferred Qualifications
- Experience supporting a SOC 2 Type I or Type II audit, readiness assessment, or compliance initiative.
- Experience collecting audit evidence or implementing SOC 2 controls.
- HIPAA or healthcare security experience.
- AWS security experience.
- Familiarity with the NIST Cybersecurity Framework or CIS Controls.
- Privileged Access Management (PAM) experience.
- Security incident response experience.
- Vendor or third-party security risk assessment experience.
- SIEM or centralized security monitoring experience.
- Experience supporting security awareness or phishing programs.
- Familiarity with application security, CI/CD security, or DevSecOps.
What Success Looks Like
The ideal candidate brings a strong foundation in IAM, infrastructure, and security fundamentals along with the ability to take ownership, solve problems, and learn quickly.
Initial priorities will include:
- Strengthening IAM, access governance, and permissions.
- Establishing and documenting core security controls.
- Supporting SOC 2 Type II readiness.
- Improving endpoint and AWS cloud security.
- Establishing repeatable security operations processes.
- Identifying security gaps and driving remediation efforts.
As the organization grows, this position will have the opportunity to expand its responsibilities and influence across the broader security program.
Work Environment
- Full-time, remote position.
- Ability to sit and work at a computer for prolonged periods.
**MUST LIVE IN ONE OF THE BELOW STATES:
1. Arkansas
2. Arizona
3. California
4. Colorado
5. Florida
6. Georgia
7. Illinois
8. Louisiana
9. Maryland
10. Massachusetts
11. Michigan
12. Mississippi
13. Missouri
14. Nevada
15. North Carolina
16. Ohio
17. Oklahoma
18. Pennsylvania
19. South Carolina
20. Texas
21. Virginia
22. Utah
- Dice Id: 91117450
- Position Id: 9071029
- Posted 9 hours ago
Company Info
At Trova, we strive to build a meaningful legacy of excellence for our community, clients, families, consultants, and candidates. We are committed to optimizing the values of others by building relationships that are the lifeblood of all business.Our community flourishes when businesses are connected with the talent they need and candidates find a rewarding and fulfilling position.
Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs