- Company Name
- SCRAM Systems
- Job Title
- Security Engineer
- Job Description
-
**Job Title**
Security Engineer
**Role Summary**
Design, implement, and maintain security controls for cloud and on‑premises infrastructure. Drive threat detection, incident response, vulnerability management, compliance auditing, and security training across technical teams.
**Expectations**
* Proven security engineering experience in data‑sensitive or regulated environments.
* Deep understanding of cloud security (IAM, VNet, Policies), Windows/Linux VM hardening, Kubernetes, SIEM, IDS/IPS, and firewalls.
* Familiarity with NIST, ISO 27001, and CJIS compliance frameworks.
* Strong analytical, strategic, communication, and leadership skills.
**Key Responsibilities**
* Collaborate with CISO to create and evolve security strategy and architecture.
* Design, deploy, and manage security controls for Azure and on‑prem environments.
* Conduct security assessments, vulnerability scans, and recommend remediation.
* Implement Elastic‑stack SIEM rules; generate real‑time alerts and maintain threat logging.
* Lead incident response: investigate alerts, mitigate breaches, craft response plans, and run drills.
* Manage threat and vulnerability lifecycle, including patching, updates, and hardening.
* Build and maintain IAM solutions, enforce least privilege and access control.
* Perform security audits, penetration tests, and ensure compliance with relevant regulations.
* Deliver security awareness training to technical staff, staying current on emerging threats.
**Required Skills**
* Cloud security (IAM, VNet, Azure Security Center, policies).
* Windows/Linux VM hardening; Kubernetes/container security.
* SIEM (Elastic), threat & vulnerability management tools, IDS/IPS, firewalls.
* Knowledge of NIST, ISO 27001, CJIS, other compliance standards.
* Strong problem‑solving and strategic thinking.
* Excellent communication, collaboration, and leadership abilities.
**Required Education & Certifications**
* Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
* Security certifications (CISSP, CompTIA Security+, CEH, etc.) – preferred.
* Azure certification (AZ‑900 or higher) – a plus.