> Markdown version of [/jobs/ext/2268513-lead-security-infrastructure-engineer](https://www.wearedevelopers.com/jobs/ext/2268513-lead-security-infrastructure-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Security Infrastructure Engineer - **Company:** Randstad - **Location:** Newport Beach, CA, United States - **Experience:** Expert - **Salary:** $133,000.0 - $185,000.0 - **Contract:** Permanent contract - **Skills:** Agile Methodology, JIRA, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cloud Engineering, Configuration Management, Control Objectives for Information and Related Technology (COBIT), Cyber Security, Data Governance, Identity and Access Management, Microsoft Security Essentials, PCI Data Security Standards, Scrum Methodology, Software Vulnerability Management, Software Security, Information Technology, CIS Benchmarks - **Published:** August 27, 2026 - **Apply:** https://www.dice.com/job-detail/3b40968a-7b82-45e2-8a53-d042bc8b9458 ## About the Role Cloud Security Posture: Hands-on proficiency securing Azure environments using Defender for Cloud, Entra ID conditional access, and Microsoft security baselines; able to assess and remediate cloud misconfigurations independently. Compliance Frameworks: Working knowledge of NIST 800-53, CIS Benchmarks, PCI-DSS, and SOC 2; able to map infrastructure controls to framework requirements and produce audit-ready evidence. qualifications: Must Have Skills - looking for 8+ years ideally Bachelor's - in CS, engineering, or related Certs - CISSP, CISM, CISA, or GIAC / SANS (e.g. GCED, GPEN, GCIH) relevant to infrastructure security Working knowledge of NIST 800-53, CIS Benchmarks, PCI-DSS, and SOC 2; able to map infrastructure controls to framework requirements and produce audit-ready evidence. Hands-on proficiency securing Azure environments using Defender for Cloud, Entra ID conditional access, and Microsoft security baselines; able to assess and remediate cloud misconfigurations independently. Ability to translate GCS findings and priorities - spanning Security Engineering & Operations, IAM, Software & Product Security, Data Governance, and Digital Fraud - into Infrastructure execution. Expert?level ability to remediate security issues across Azure, hybrid, network, and endpoint platforms. skills: Agile,CIS Benchmarks,Cloud,Cloud Security Posture,Cloud Engineering,configuration management,control objectives,Cybersecurity Services,Data Governance,IAM,Computer Science,Jira,Azure,Azure environments,Microsoft security,PCI-DSS,sprint planning,Product Security,Vulnerability Management,Communication,communicator,dedicated,leadership,technical liaison,Accountability,business impact,acceptance criteria,conditional access,audit,Automation,Partnership,CISM,CISA,CISSP,change controls,Client Services,executable,remediation techniques,GCIH,secure configuration,Infrastructure Security,Infrastructure,KPI,mentors,mentor,NIST 800-53,Platform Engineering,quality control,compliance metrics,risk,security,Security Engineering,security best practices,technical leadership ## Description Serve as the dedicated, named liaison to GCS - including Security Engineering & Operations, IAM, Software & Product Security, Data Governance, and Digital Fraud teams - consuming security findings, audit results, and risk-prioritized remediation requirements defined by GCS. Maintain a continuous, standing engagement cadence with GCS leadership to ensure Infrastructure's Cloud Engineering (Core/On-Prem and Cloud) and Networking teams are aligned to current GCS priorities, SLAs, and control objectives. Translate GCS inputs into Agile?ready Jira work (stories, tasks, acceptance criteria) aligned to Infrastructure sprint planning. Execute hands?on remediation for high?risk or complex findings across Azure, hybrid/on?prem, network, and endpoint environments. Provide direct production change execution for security remediations, following change controls and minimizing business impact. Guide and mentor Infrastructure engineers on secure configuration, remediation techniques, and security best practices. Lead remediation efforts across Platform Engineering, Network & Edge, and Client Services. Security Partnership & Translation: Ability to translate GCS findings and priorities - spanning Security Engineering & Operations, IAM, Software & Product Security, Data Governance, and Digital Fraud - into Infrastructure execution. Agile Enablement: Strong experience converting non?Agile security inputs into sprint?ready work items. Hands?On Remediation: Expert?level ability to remediate security issues across Azure, hybrid, network, and endpoint platforms. Risk Alignment: Executes remediation strictly aligned to GCS's risk framework and SLAs. Technical Leadership: Guides teams on secure practices and serves as escalation point for complex remediation. Automation Mindset: Uses scripting, IaC, and configuration management to scale remediation and reduce manual effort. Production Discipline: Comfortable making high?impact production changes safely and responsibly. Vendor & Contractor Oversight: Directs external remediation resources with clear standards and quality control. Communication: Clear, trusted communicator with Infrastructure leadership and GCS. Accountability: Owns outcomes-backlog reduction, compliance metrics, and security maturity improvement. Vulnerability Management & Patch Lifecycle: Owns the end-to-end finding-to-close process for infrastructure; tracks remediation SLAs, drives KPI improvement, and maintains an aging backlog with clear accountability. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [A practical guide to writing secure Dockerfiles](https://www.wearedevelopers.com/videos/109-a-practical-guide-to-writing-secure-dockerfiles) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)