> Markdown version of [/jobs/ext/3028846-security-engineer](https://www.wearedevelopers.com/jobs/ext/3028846-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** JW Affinity IT - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Azure, Cloud Computing Security, CompTIA Security+, Cyber Security, Digital Forensics, Disaster Recovery, Multi-Factor Authentication, Identity and Access Management, Networking Hardware, Network Security, Microsoft Security Essentials, Network Segmentation, Cloud Services, Phishing, Zero Trust Network Access, Security Information and Event Management, Software Vulnerability Management, Data Logging, Malware, Firewalls (Computer Science), Falcon Platform, Information Technology, Cybercrime, Palo Alto Networks, Microsoft Sentinel, Fortinet, CIS Benchmarks, Splunk, Qualys, Server Operating Systems & Platforms, Vulnerability Analysis - **Published:** September 22, 2026 - **Apply:** https://www.thejobnetwork.com/job/5cf1d1b7-1617-4ee7-bf3d-ce0fd306830f/evergreen-security-engineer ## About the Role * Seven or more years of information technology experience, including at least five years focused on cybersecurity engineering, security operations, or infrastructure security. * Hands-on experience with enterprise security tools such as SIEM, EDR/XDR, vulnerability scanners, firewalls, identity-security platforms, and email-security systems. * Strong understanding of network security, endpoint security, identity and access management, cloud security, encryption, logging, and vulnerability management. * Experience investigating security incidents and coordinating technical response and recovery activities. * Working knowledge of security frameworks and standards such as NIST Cybersecurity Framework, NIST SP 800-53, CIS Controls, or ISO/IEC 27001. * Ability to analyze technical risks and communicate findings to technical teams, management, and nontechnical stakeholders. * Experience developing security procedures, technical standards, incident documentation, and remediation plans. * Bachelor's degree in cybersecurity, computer science, information technology, engineering, or a related field, or an equivalent combination of education, certifications, and experience. * Ability to successfully complete any background screening required for access to municipal systems, sensitive information, or public-safety environments., * Experience supporting municipal government, public safety, utilities, transportation, education, or another public-sector organization. * CISSP, CISM, GIAC, CompTIA Security+, CySA+, Microsoft Security, or comparable certification. * Experience with Microsoft Sentinel, Defender XDR, Entra ID, Azure security services, Splunk, CrowdStrike, Tenable, Qualys, Rapid7, Palo Alto Networks, Fortinet, or comparable platforms. * Knowledge of CJIS Security Policy requirements and security considerations for public-safety systems. * Experience with cloud-security architecture, zero-trust principles, privileged access management, and data-loss prevention. * Familiarity with digital forensics, threat hunting, penetration-testing results, or security automation. * Experience supporting environments with critical public services and 24-hour operational requirements. ## Description JW Affinity IT is continuously building connections with Network Professionals who are interested in future roles supporting secure enterprise network environments. If you have hands-on experience with physical network infrastructure, troubleshooting, incident response, and customer-facing technical support, we look forward to connecting with you!, JW Affinity IT is seeking a senior-level Security Engineer to help protect the information systems, networks, applications, and data of a local municipality. This position is responsible for implementing and maintaining security controls, monitoring threats, investigating incidents, reducing vulnerabilities, and supporting compliance across a complex, multi-department technology environment., * Design, implement, configure, and maintain enterprise cybersecurity tools and technical controls. * Administer or support SIEM, endpoint detection and response, vulnerability management, email security, multifactor authentication, identity protection, firewalls, and network-security platforms. * Monitor and investigate security alerts, suspicious activity, unauthorized access, malware, phishing, and potential data exposure. * Lead or support incident triage, containment, eradication, recovery, documentation, and post-incident review. * Conduct vulnerability scans, evaluate findings, prioritize remediation, and validate corrective actions. * Perform security reviews of systems, applications, configurations, cloud services, and proposed technology solutions. * Develop and maintain detection rules, alerts, dashboards, response procedures, and security automation. * Strengthen identity and access management, privileged access, network segmentation, endpoint security, and cloud-security controls. * Collaborate with infrastructure, network, application, and help-desk teams to securely configure and maintain technology systems. * Support security assessments, audits, risk reviews, and compliance activities. * Maintain security documentation, architecture diagrams, incident records, control evidence, and remediation plans. * Assist with disaster recovery, continuity-of-operations, tabletop exercises, and incident-response testing. * Evaluate emerging threats and recommend appropriate risk-reduction measures. * Provide technical guidance and security-awareness support to IT personnel and municipal stakeholders. * Participate in an after-hours incident-response or on-call rotation when required. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [What is Software Engineering?](https://www.wearedevelopers.com/magazine/289-what-is-software-engineering) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)