Information Security Engineer

PROPERTY VALUE SOLUTIONS LLC
United States
21 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Antivirus Softwares Software System Penetration Testing Microsoft Azure Bash Shell Cloud Computing Security Configuration Management Cyber Security Information Leak Prevention Identity and Access Management Intrusion Detection and Prevention Python (Programming Language)
+24 more
OAuth OpenID Public Key Infrastructure Windows PowerShell Role-Based Access Control Openid Connect Zero Trust Network Access Security Assertion Markup Language (SAML) Single Sign-On Tokenization Software Vulnerability Management SSL Certificate Management Google Cloud Cloud Platform System Data Classification Cyber Threat Analysis Infrastructure as Code (IaC) Infrastructure Automation Frameworks Information Technology Patch Management CIS Benchmarks Terraform Devsecops Security Orchestration, Automation & Response

Job description

This is a permanent opportunity that will require someone to be on site 5 days a week initially. The Senior Information Security Engineer is responsible for designing, implementing, and managing enterprise security controls that support regulatory compliance and strengthen the organization’’s overall security posture. This role leads the implementation of security technologies across cloud, infrastructure, identity, and endpoint environments while supporting compliance with SOC 2 Type II, ISO/IEC 27001, ISO/IEC 42001, CSA STAR Level 2, Cyber Essentials+, HIPAA, and other industry frameworks., Design, implement, and maintain enterprise security controls aligned with industry standards and compliance requirements.

Lead Identity and Access Management (IAM), including RBAC, privileged access management (PAM), access governance, and identity lifecycle management.

Manage secure authentication solutions, including MFA, SSO, federation, and certificate-based authentication.

Administer endpoint and cloud security technologies, including antivirus, EDR/XDR, malware protection, and threat detection.

Develop and maintain Data Loss Prevention (DLP) strategies across endpoints, email, networks, and cloud environments.

Oversee vulnerability management, including scanning, risk prioritization, remediation tracking, patch management, and penetration test coordination.

Establish secure configuration management processes, including security baselines, change control, compliance monitoring, and Infrastructure as Code (IaC) validation.

Partner with Infrastructure leadership and the CISO to design and implement security controls for Azure and Google Cloud Platform (Google Cloud Platform).

Support physical security technologies and integrate physical and logical access controls.

Assist with security assessments, audits, certifications, and remediation activities while working with internal stakeholders and external auditors.

Provide technical leadership and mentor security team members on security best practices and continuous improvement initiatives.

Technical Expertise

Enterprise IAM, RBAC, ABAC, PAM, and identity governance

MFA, SSO, SAML, OAuth 2.0, OpenID Connect (OIDC), PKI, and certificate management

Endpoint security, EDR/XDR, threat intelligence, malware protection, and incident response

Data Loss Prevention (DLP), encryption, tokenization, and data classification

Configuration management, security baselines, compliance automation, and IaC security

Vulnerability management, patch management, penetration testing, and remediation

Physical access control systems (PACS) and integrated security monitoring

Compliance & Security Frameworks

Experience supporting security programs aligned with

Requirements

Bachelor’’s degree in Computer Science, Information Security, or a related field (or equivalent experience).

5-7 years of information security, including hands-on implementation of enterprise security controls plus 3 years of leadership experience.

Experience securing cloud environments (Azure and Google Cloud Platform) and enterprise infrastructure.

Knowledge of Zero Trust architecture, DevSecOps, AI/ML security, and security automation.

Proficiency with scripting and automation tools such as Python, PowerShell, Bash, or Terraform.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all