> Markdown version of [/jobs/ext/2049555-baseline-security-configurations-engineer](https://www.wearedevelopers.com/jobs/ext/2049555-baseline-security-configurations-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Baseline Security Configurations Engineer - **Company:** RKMC Inc. - **Location:** Chicago, IL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Bash Shell, Software as a Service, Configuration Management, Cyber Security, Python (Programming Language), Linux Security Modules, System Center Configuration Manager, Windows PowerShell, Cloud Services, Ansible, Software Vulnerability Management, Microsoft InTune, Infrastructure Automation Frameworks, CIS Benchmarks, Qualys - **Published:** August 14, 2026 - **Apply:** https://www.dice.com/job-detail/8320d185-93cd-476a-9dae-bfd2dcc4f88e ## About the Role * Documentation & Communication: Develop security standards, procedures, configuration guidelines, exception documentation, and compliance reports. Ability to communicate security requirements and technical risks clearly to both technical and business stakeholders. * Required Background: 5+ years of experience in security engineering, cybersecurity, systems administration, configuration management, or security architecture, with strong knowledge of Windows/Linux security, system hardening, vulnerability management, and security controls. Experience with tools such as Tenable, Qualys, SCCM/Intune, or similar platforms is a plus. Relevant certifications such as Security+, CISSP, CySA+, GIAC, AWS Security, or Azure Security are preferred. ## Description * Security Engineering: Design, implement, and maintain security controls across enterprise infrastructure, endpoints, cloud, SaaS, and application environments. Work with engineering and technology teams to incorporate security requirements into new projects and provide security guidance during design and implementation. * Baseline Security Configurations: Develop, maintain, and improve secure baseline configurations for enterprise technologies. Work with technology owners to assess compliance, identify configuration gaps, recommend remediation, manage exceptions, and validate that security controls are properly implemented. Experience with CIS Benchmarks, DISA STIGs, NIST, and other security hardening standards is important. * Cloud & SaaS Security: Support security and governance initiatives across AWS, Azure, and SaaS platforms. Review cloud services and configurations against security standards, participate in security assessments, and help secure new cloud and SaaS technologies. * Security Tools & Automation: Administer and improve security and configuration management tools, monitor security control effectiveness, and look for opportunities to automate assessments, remediation, and reporting. Experience with PowerShell, Python, Bash, Ansible, or similar scripting technologies is preferred. * Risk & Compliance: Partner with security, infrastructure, application, and technology teams to identify and reduce security risks. Support vulnerability management, audits, risk assessments, regulatory requirements, and security compliance activities. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)