Revenue Cycle Management Services | Advanced Technology, Top Talent, Optimal Revenue Results
Security Engineer III
Location
North Carolina
Posted
12 days ago
Salary
$150K / year
Seniority
Senior
Job Description
Security Engineer III
Aspirion
• Own cloud security engineering for AWS by defining guardrails and configuration baselines (e.g., IAM least privilege, network segmentation, encryption, logging), partnering on implementation, and driving remediation of cloud posture findings to closure. • Engineer security controls and governance for Kubernetes and containerized workloads (e.g., EKS): define and enforce admission policies, Pod Security standards, network policies, image governance, runtime protections, and secrets management patterns; partner with platform teams on implementation within clusters and supporting IAM. • Drive secure SDLC controls and engineering governance: integrate and operate scanning and policy gates for application code (SAST), dependencies (SCA), secrets, containers/images, and Infrastructure as Code (IaC); define practical remediation SLAs and exception/waiver workflows aligned to risk. • Define security policies, standards, and best practices for cloud and containerized environments, and translate them into implementable guardrails and reference patterns (policy-as-code, reference configurations, and developer guidance), including encryption/key management (e.g., KMS), secrets storage, and secure workload access patterns; validate adoption and baseline compliance in partnership with Infrastructure/Platform teams. • Partner with Compliance to align technical controls to HIPAA requirements and produce audit-ready evidence (configurations, screenshots/exports, control narratives, and remediation tracking) for cloud and container platforms. • Improve security visibility and detection in AWS and Kubernetes: define requirements, ensure high-quality logging, and create actionable detections/alerts in partnership with the SOC/SIEM owners. • Run vulnerability management across the stack for cloud and containerized applications: triage and prioritize findings for application code, Infrastructure as Code, container images, third-party dependencies, and OS packages; coordinate fixes with engineering/platform teams, validate remediation, and track risk-based exceptions. • Support incident response for cloud and container security events: perform technical triage, containment support, root cause analysis, and deliver preventative engineering changes. • Develop and maintain security-as-code standards and reusable guardrails (e.g., Terraform modules/policies) and automated checks/policy gates to enforce baseline compliance across AWS accounts and Kubernetes clusters; partner with Infrastructure/Platform teams to roll out and operationalize these controls at scale. • Independently manage security engineering deliverables from intake through delivery: clarify requirements, design solutions, document decisions/runbooks, and communicate status/risks to stakeholders. • Translate HITRUST MyCSF/HIPAA and internal security policies into measurable cloud and SDLC control requirements; validate control effectiveness through testing and evidence collection. • Contribute to security tool administration and continuous improvement (e.g., cloud posture management, vulnerability scanning, CI/CD scanning tools) by tuning rules, reducing false positives, and improving developer usability. • Participate in on-call/escalation processes as needed; maintain runbooks and support post-incident reviews and corrective actions. • Serve as a technical resource for peers through code/config reviews, pairing, and clear documentation; help raise the security bar through pragmatic standards and guidance. • Perform other duties as assigned.
Job Requirements
- 5+ years in security engineering, cloud infrastructure, DevOps, or related technical roles, with significant hands-on responsibility securing production AWS environments.
- Demonstrated experience implementing and improving cloud security posture (guardrails, standards, continuous compliance, vulnerability management) with measurable remediation outcomes.
- Strong AWS IAM skills (roles/policies, least privilege design, identity federation, service roles) and experience implementing secure access patterns for humans and workloads.
- Hands-on Kubernetes/container security experience, including implementing secure cluster/workload configuration and image governance in a production containerized environment.
- Experience implementing and evidencing security controls in regulated environments (HIPAA required), including encryption/key management, logging retention, and change/audit trails.
- Experience supporting incident response for cloud/workload security events, including investigation support, containment actions, and post-incident remediation.
- Automation and IaC experience (e.g., Python/Bash; Terraform) and familiarity with implementing policy-as-code and continuous compliance checks.
- Experience assessing and improving security for application code and IaC (e.g., Terraform/CloudFormation/Kubernetes manifests), including code review support, scanning, and remediation guidance.
- Experience managing container security vulnerabilities end-to-end, including image scanning, base image/OS package patching strategies, rebuild processes, and validation of remediations in deployment pipelines.
- Demonstrated experience implementing secure SDLC controls in CI/CD (e.g., GitHub Actions/Jenkins/GitLab), including SAST/SCA, container image scanning, secrets scanning, pipeline gates, and actionable remediation workflows.
- Experience operating in regulated environments (HIPAA required); familiarity with NIST and/or HITRUST is strongly preferred.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field preferred (or equivalent practical experience).
- Security and cloud certifications preferred: AWS Certified Security – Specialty or AWS Solutions Architect, Certified Kubernetes Security Specialist (CKS) or equivalent, and/or CISSP/CCSP (or ability to obtain within an agreed timeframe).
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Infrastructure and Security Engineer
SilverfortFueled by a belief that identity professionals deserve better, we found a way to break down the silos of identity security—eliminating the gaps and blind spots left behind by a patchwork of point solutions. The Silverfort Identity Security Platform is the first to deliver end-to-end identity security, protecting every identity in the cloud, on-prem, humans, machines, and everything in between. Our patented technology—Runtime Access Protection (RAP)—natively integrates with the entire IAM infrastructure, giving businesses visibility into all identities, analyzing every access, and extending active protection to resources that could not be protected previously—including NHIs, legacy systems, command line tools, and IT/OT infrastructure. It is easy to deploy and use, and doesn’t disrupt business operations, resulting in better security outcomes with less work. Silverfort is the identity security platform that both identity and security professionals deserve, earning the trust of more than 1,000 leading organizations, including several Fortune 50 companies.
DescriptionSilverfort is on a mission to bring identity security everywhere – to every human, machine, and AI agent, both on-premises and in the cloud. Our unique technology secures identities and access at runtime, in ways that weren’t possible before. With the broadest identity security platform in the market, trusted by more than 1,000 customers, including many Fortune 100 companies, Silverfort is uniquely positioned to lead the fast-growing identity security category. Joining Silverfort means becoming part of a fast-moving team with a culture of innovation and collaboration that goes above and beyond to help our customers and each other on a journey to reshape the future of identity security. We’re looking for a hands-on Infrastructure & Security Engineer with strong experience across multiple cloud environments, who can build and support cloud and on-premises infrastructure, troubleshoot complex issues, and work closely with security and networking teams. You’ll manage identity and access management, virtual machines, networks, firewalls, and core IT services, including Active Directory and DNS. Responsibilities - Managing and support multi-cloud environments, including compute, networking, storage, and security, to ensure stable and secure production systems - Build and operate infrastructure components, including VMs, VPCs/virtual networks, subnets, routing, security groups, NACLs, and VPN connectivity - Troubleshoot end-to-end performance, connectivity, authentication, and availability issues across cloud and on-premises environments - Own enterprise networking and security operations, including L2/L3 troubleshooting, VLANs, routing, NAT, VPN, DNS, IPsec, and firewall configurations - Maintain core Microsoft and virtualization infrastructure, including Active Directory, DNS, DHCP, Group Policy, and VMware ESXi/vCenter environments - Manage IAM across cloud providers, including users, roles, policies, least privilege, and access reviews to maintain secure access controls - Lead the implementation of key security platforms and initiatives - Assist the security team with in-depth security investigations and vulnerability management, including patching, remediation tracking, configuration hardening, and incident follow-up - Lead infrastructure projects by translating requirements into tasks, milestones, and deliverables, while maintaining documentation, runbooks, and operational procedures Requirements - 4–6 years of experience as an infrastructure and security engineer within production environments - Strong virtualization experience, including VMware ESXi and vCenter administration - Experience managing Active Directory, DNS, and DHCP in enterprise environments - Strong hands-on experience with at least one major public cloud platform (Azure preferred) - Strong understanding of IAM concepts and implementation across cloud platforms - Solid networking fundamentals, including TCP/IP, subnetting, routing, VPN, DNS, DHCP, IPsec, firewalls, and packet-level troubleshooting - Hands-on experience with enterprise firewalls and network platforms such as Fortinet (FortiGate), Palo Alto, Juniper (Mist), Cisco, Prisma Access, and Prisma Cloud - Proven operational experience with monitoring, alerting, backups, and documentation - Team player, excellent communication skills - Experience with one or more of: Nutanix, OpenShift, OpenStack, Hyper-V, storage- Advantage - MDM experience- Advantage
Senior Security Engineer, Identity & Access Management
ValonEmpowering every homeowner with ease, security, and financial know-how.
• Design and support end-to-end lifecycle of workforce identity systems including identity automation, access management, and least-privilege enforcement across internal systems • Support design of secure identity design patterns for product teams building on ValonOS • Manage and evolve Valon's IdP in conjunction with IT including SSO integrations, MFA policies, conditional access rules, and directory synchronization • Define and enforce RBAC and group-based access policies for internal applications, cloud environments, and development tooling • Support privileged access management (PAM) for internal infrastructure in conjunction with Engineering teams • Design and build AI-assisted workflows that automate and accelerate core IAM operations • Evaluate AI risks across IAM pipelines, ensuring appropriate security controls around data exposure, prompt injection and other threats • Collaborate with Product, Engineering, Data, Compliance, Legal, and other teams to identify and drive mitigation for data security risks • Support other operational and on-call duties such as vulnerability management, regulatory compliance (SOC 2, CCPA, NYDFS, FTC), policy development, incident response and security reviews.
• Manage and expand Valon's security and privacy compliance program across key frameworks and regulations (e.g., SOC 2, NYDFS Cybersecurity Regulation, FTC Safeguards Rule, CCPA and evolving regulations) • Build and scale modern Security GRC capabilities that leverage AI-enabled tools and processes, reducing manual overhead while optimizing risk and compliance operations • Support AI security standards development and risk processes • Design, develop and monitor technical security controls • Lead audit preparation and management • Maintain and evolve Valon's risk management practices; facilitate risk assessments across teams and track remediation of identified issues to closure • Develop, publish, and maintain security policies, standards, and procedures in partnership with IT, Engineering and Legal • Build and mature Valon's Data Governance program including secure data handling practices • Enhance BC/DR risk management practices and processes • Partner with Engineering and Product to assess security compliance implications of new features, infrastructure changes, and data flows • Manage security compliance, regulatory requirements, and customer-facing due diligence, while supporting operational security activities including advisory reviews, incident management, and issue remediation
Senior Manager – AI Security Architect
Huron Consulting GroupFounded in 2002, Huron Consulting Group is a global management consulting company serving clients in the healthcare, life sciences, higher education, and commer
• Design and implement secure AI and generative AI architectures across data, model development, deployment, and inference • Embed security controls into LLM, RAG, and agentic AI systems • Guide architectural decisions on data pipelines, model orchestration, APIs, and observability • Design AI auditability and observability solutions to support governance, monitoring, and incident response • Identify and mitigate AI-specific risks (e.g., prompt injection, data leakage, model poisoning, adversarial attacks) • Conduct threat modeling, architecture risk assessments, and AI security testing (e.g., red teaming) for AI systems • Act as a trusted advisor to client leaders on secure and responsible AI adoption



