Senior Information Security Engineer - based...
Role details
Job location
Tech stack
Job description
We're hiring a Senior Information Security Engineer to help advance our security and compliance program. This is a hybrid role combining hands-on security engineering with governance, risk, and compliance (GRC). You'll help drive ISO 27001 and SOC 2 efforts while improving security across cloud infrastructure, applications, and engineering workflows.
We're looking for someone who can partner with engineering teams, automate security practices, and build scalable, sustainable processes-not just manage policies.
What can you expect to do?
Security & Compliance
-
Lead ISO 27001 and SOC 2 readiness, audits, and ongoing compliance
-
Define and maintain policies, controls, and evidence processes
-
Conduct risk assessments, control mapping, and remediation tracking
-
Partner with auditors and internal teams during certification efforts
Security Engineering
-
Improve security across Kubernetes, cloud, and CI/CD environments
-
Integrate security into development and deployment workflows
-
Support vulnerability management, IAM, and secrets management
-
Contribute to incident response, monitoring, and threat modeling
Operations & Process Improvement
-
Build scalable, repeatable security processes
-
Drive automation for compliance and reporting
-
Establish security metrics and improve operational readiness
What is the experience needed to be successful in this role?
Requirements
-
Bachelor's degree preferred
-
6+ years experience specific to security engineering, DevSecOps (Development, Security, and Operations), or GRC (Governance, Risk, and Compliance), with overall professional experience of 12+ years
-
Experience with ISO 27001 and/or SOC 2
-
Strong understanding of risk management and security controls
-
Experience with cloud (AWS/Azure), Linux, and Kubernetes
-
Familiarity with CI/CD pipelines and infrastructure automation
-
Knowledge of identity and access management
-
Strong communication and cross-functional collaboration skills
Preferred Qualifications
-
Experience maintaining ISO or SOC 2 Type II programs
-
Familiarity with frameworks (NIST, CIS, OWASP, Zero Trust)
-
Experience with container security, SIEM, and vulnerability management
-
Knowledge of tools like Terraform, GitHub Actions, or Helm
-
Background in SaaS, IoT, robotics, or distributed systems
-
Relevant certifications (CISSP, CISM, CCSP, ISO, GIAC), BE AWARE OF FRAUD: When applying for a job at Jabil you will be contacted via correspondence through our official job portal with a jabil.com e-mail address; direct phone call from a member of the Jabil team; or direct e-mail with a jabil.com e-mail address. Jabil does not request payments for interviews or at any other point during the hiring process. Jabil will not ask for your personal identifying information such as a social security number, birth certificate, financial institution, driver's license number or passport information over the phone or via e-mail. If you believe you are a victim of identity theft, contact the Federal Bureau of Investigations internet crime hotline (www.ic3.gov), the Federal Trade Commission identity theft hotline (www.identitytheft.gov) and/or your local police department. Any scam job listings should be reported to whatever website it was posted in.
Benefits & conditions
Along with growth, stability, and the opportunity to be challenged, Jabil offers a competitive benefits package that includes:
-
Competitive Base Salary
-
Annual Bonus
-
Medical, Dental, Prescription Drug, and Vision Insurance with HRA and HSA options
-
401K Match
-
Employee Stock Purchase Plan
-
Paid Time Off
-
Tuition Reimbursement