Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+18 more
Job description
Dizzion is seeking a proactive and technically capable Security Engineer to help protect our cloud infrastructure, customer environments, and internal systems. This role will be responsible for identifying and addressing security risks, supporting incident response, maintaining security controls, and helping ensure our environment remains secure, compliant, and resilient.
The Security Engineer will work closely with Engineering, Product, Support, Compliance, and Operations and will play an important role in translating security requirements into practical solutions. This is a hands-on role for someone who is comfortable working independently, takes ownership of security issues from identification through resolution, and communicates clearly along the way.
Given the nature of Dizzion’s business and the customers we serve, this role requires strong attention to detail, sound judgment, and a disciplined approach to security procedures, SOPs, SLAs, documentation, and follow-through.
Responsibilities
Security Operations & Infrastructure
- Monitor and maintain security controls across Dizzion’s cloud and corporate environments.
- Support the configuration and administration of security technologies including SIEM, firewalls, IDS/IPS, WAF, endpoint protection, vulnerability management, and identity and access management tools.
- Identify security gaps and proactively recommend improvements to strengthen Dizzion’s security posture.
- Support infrastructure hardening and secure configuration initiatives across cloud and production environments.
- Partner with Engineering and IT to incorporate security best practices into infrastructure and application environments.
Incident Response & Threat Management
- Participate in the full incident response lifecycle, including detection, investigation, triage, containment, remediation, and recovery.
- Take ownership of security incidents and drive issues through resolution with appropriate urgency and escalation.
- Maintain and improve security incident response playbooks, SOPs, and runbooks.
- Perform root cause analysis and document corrective and preventative actions.
- Monitor emerging threats and assess their potential impact to Dizzion and its customers.
- Communicate clearly and consistently during security events, including status, impact, actions taken, and next steps.
Vulnerability & Risk Management
- Monitor vulnerability findings across infrastructure, applications, endpoints, and cloud environments.
- Evaluate and prioritize vulnerabilities based on severity, exploitability, business impact, and customer risk.
- Coordinate remediation efforts with Engineering, IT, and other internal teams.
- Track remediation against established SLAs and escalate risks when deadlines or requirements are not met.
- Maintain accurate documentation of vulnerabilities, remediation activities, exceptions, and risk acceptance.
Security Engineering & Automation
- Implement and improve security controls across cloud and corporate environments.
- Identify opportunities to automate repetitive security processes and improve operational efficiency.
- Develop scripts, tooling, and integrations that improve security monitoring, reporting, and response.
- Assist with security architecture reviews and secure implementation of new technologies.
- Evaluate security tools and technologies and make recommendations based on business and technical requirements.
Vendor & Platform Security Coordination
- Work closely with Omnissa on platform releases, security updates, vulnerabilities, and required remediation activities.
- Coordinate with internal teams to assess the security implications of platform and infrastructure changes.
- Partner with Product and Engineering to map security requirements and risks to the product roadmap.
- Support vendor security reviews and ensure security requirements are incorporated into technology evaluations and ongoing vendor relationships.
- Maintain clear documentation and follow-up on vendor-related security issues, commitments, and remediation timelines.
Compliance & Security Assurance
- Support Dizzion’s security and compliance programs, including SOC 2, HIPAA, PCI-DSS, GDPR, and other applicable requirements.
- Help maintain security policies, procedures, evidence, and technical documentation required for audits and compliance activities.
- Support internal and external audits by providing accurate evidence and responding to technical requests.
- Identify gaps between security controls and compliance requirements and work with internal teams to address them.
- Help ensure security processes are consistently followed and documented.
Cross Functional Partnership
- Work closely with Engineering, Product, Support, Operations, Compliance, and other internal teams to identify and address security risks.
- Serve as a security resource for technical teams and provide practical guidance on secure design and implementation.
- Communicate technical security concepts clearly to both technical and non-technical stakeholders.
- Build strong working relationships across teams to ensure security issues are addressed quickly and effectively.
- Contribute to a culture of accountability, continuous improvement, and shared responsibility for security.
Requirements
- 3-6 years of experience in security engineering, cybersecurity, infrastructure security, or a related technical discipline.
- Experience working in a cloud-based or SaaS environment.
- Hands-on experience with security monitoring, vulnerability management, incident response, and security controls.
- Working knowledge of cloud security principles across AWS, Azure, or GCP.
- Experience with security technologies such as SIEM, firewalls, IDS/IPS, WAF, endpoint protection, vulnerability scanners, or IAM.
- Strong understanding of common security threats, attack techniques, and mitigation strategies.
- Demonstrated ability to work independently, prioritize competing issues, and take ownership through resolution.
- Strong written and verbal communication skills.
- Strong attention to detail and a disciplined approach to documentation, SOPs, SLAs, and follow-through.
- Experience supporting security and compliance requirements in a regulated or compliance-focused environment., Experience with one or more of the following:
- Omnissa Horizon or VMware Horizon
- AWS, Azure, or Google Cloud Platform
- Kubernetes and container security
- Infrastructure as Code, including Terraform or CloudFormation
- Identity and Access Management
- Security automation and orchestration
- Threat intelligence or digital forensics
- Python, PowerShell, Go, or similar scripting languages
- MITRE ATT&CK framework
- Zero Trust architecture
- SOC 2, HIPAA, PCI-DSS, GDPR, or similar compliance frameworks
Relevant certifications are a plus, including:
- Security+
- CISSP
- CCSP
- CISM
- AWS Security Specialty
- Azure Security Engineer Associate
- GIAC certifications
Benefits & conditions
Pulled from the full job description AD&D insurance 401(k) Health insurance Paid time off Vision insurance Dental insurance Life insurance, * Comprehensive medical (including telehealth), dental, and vision plans
- Employee Assistance Program
- Employer-paid basic life insurance and AD&D
- 401(k) retirement plan
- Flexible paid time off. Work hard and take time when you need it.
- Generous holiday schedule
- Voluntary short and long-term disability
- Collaborative teammates who enjoy solving challenging problems together, Base salary $90,000-110,000 annually. Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, and alignment of market data.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
What Are The Top Skills Required For Azure Developers?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Is Software Engineering Over-Saturated?
The 12 Best Jobs for Software Engineers