Infrastructure Security Engineer

Kforce Inc.
Grapevine, TX, United States
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Microsoft Azure Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Multi-Factor Authentication Identity and Access Management Virtual Private Networks (VPN) Microsoft Security Essentials Windows Servers
+13 more
Citrix Systems Azure Active Directory Zero Trust Network Access Software Vulnerability Management Wide Area Networks Computer Networking Systems Firewalls (Computer Science) Infrastructure Automation Frameworks Microsoft Sentinel CIS Benchmarks Network Server Qualys Vulnerability Analysis

Job description

Kforce has a client that is seeking an Infrastructure Security Engineer in Grapevine, TX.

Major Responsibilities:

  • Infrastructure Security Engineer will serve as the primary Infrastructure Security resource, establishing security standards, best practices, and strategic initiatives
  • Lead the enterprise vulnerability management program, including risk assessment, remediation prioritization, validation, metrics, and executive reporting
  • Partner with Infrastructure, Desktop, Network, Cloud, and Warehouse teams to identify and remediate security risks
  • Secure enterprise endpoints, Windows environments, Microsoft 365, Azure infrastructure, and warehouse technologies through hardening, patching, and security controls
  • Collaborate with Network Engineering to strengthen Cisco networking, firewalls, VPNs, SD-WAN, segmentation, and Zero Trust initiatives
  • Improve Azure security posture using Microsoft Defender for Cloud, Azure Policy, governance controls, and cloud security best practices
  • Enhance Identity & Access Management through Microsoft Entra ID, MFA, Conditional Access, Privileged Access Management, and least-privilege principles
  • As an Infrastructure Security Engineer, you will develop and maintain secure configuration baselines aligned with CIS Benchmarks across servers, workstations, cloud, network, and Citrix platforms
  • Support security incident response, technical investigations, root cause analysis, and remediation planning
  • Assess emerging threats, evaluate compensating controls, identify automation opportunities, and drive continuous risk reduction
  • Produce security scorecards, KPIs, executive reporting, and support governance, audit, and compliance initiatives

Requirements

  • 5+ years of experience in infrastructure engineering, cloud engineering, network engineering, systems administration, or security engineering
  • Experience with security tools such as: Microsoft Defender Suite; Tenable; Qualys; Rapid7; runZero; Vulnerability Assessment Solutions
  • Experience securing enterprise infrastructure environments
  • Strong understanding of: Windows 11; Windows Server; Active Directory/Entra ID; Azure; Cisco Networking; Microsoft 365; Endpoint Security Technologies
  • Understanding of security architecture and security frameworks

Preferred Qualifications:

  • Certifications such as: CISSP; Security+; AZ-500; GSEC; CCNP Security
  • Microsoft Security Certifications
  • Experience supporting manufacturing, warehouse, or distribution environments
  • Knowledge of: Azure Security; Microsoft Defender for Cloud; Microsoft Sentinel; Zero Trust Architecture; Identity Security; Infrastructure Automation

Benefits & conditions

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce’s sole discretion unless and until paid and may be modified in its discretion consistent with the law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · WWC 2023

1:27 min

Binding executable logic into network servers

Saoussen Chaabnia Saoussen Chaabnia · Europe 2026 Virtual

Videos

See all

Related articles

See all