Information Security Associate Engineer
# Information Security Associate Engineer **employers** · United States · `On-site` 🕒 **Статус:** *Опубликовано: сегодня* · *Источник: Indeed* --- ### About the Role Information Security Associate Engineer | 100% In Office – Henderson, NV General Summary Under general direction, Information Security Associate Engineers apply principles of computer science, security engineering, and risk analysis to protect the organization's applications, infrastructure, data, and cloud environments. They support the design, implementation, monitoring, and continuous improvement of security controls across on-premises and cloud platforms, helping to identify vulnerabilities, respond to incidents, and reduce risk to an acceptable level. Core responsibilities include monitoring security tooling, assisting with vulnerability management, supporting identity and access management (IAM), and helping secure cloud workloads across providers such as AWS or Azure. This includes configuring cloud security posture management (CSPM) tools, reviewing cloud architecture for misconfigurations, and supporting encryption, logging, and network segmentation practices. Information Security Associate Engineers may specialize in one area such as Security Operations, Cloud Security, Application Security, Identity and Access Management. Essential Duties and Responsibilities - Monitor security alerts, logs, and dashboards (SIEM/SOAR) to identify, triage, and escalate potential security incidents. - Assist in performing vulnerability assessments and coordinate remediation of findings across applications, infrastructure, and cloud resources. - Support the configuration, hardening, and maintenance of cloud environments (AWS, Azure), including identity, network, storage, and workload security controls. - Use cloud security posture management (CSPM) and cloud-native tools to detect misconfigurations, excessive permissions, and non-compliant resources. - Support identity and access management (IAM) activities, including access reviews, role-based access control (RBAC), and least-privilege enforcement. - Assist with incident response activities, including evidence gathering, containment support, and documentation of findings and timelines. - Develop and maintain technical security documentation, including runbooks, diagrams, playbooks, and standard operating procedures. - Support security control implementation aligned to frameworks such as NIST CSF, ISO 27001, or CIS Benchmarks. - Assist with risk assessments, helping identify, document, and prioritize security risks across systems, applications, and cloud environments. - Participate in code and architecture reviews to identify security weaknesses and recommend secure design practices (e.g., OWASP Top 10). - Assist with encryption key management, secrets management, and secure configuration of data at rest and in transit. - Support patch management and endpoint protection efforts across servers, workstations, and cloud workloads. - Contribute to security awareness efforts and provide guidance to internal teams on secure development and operational practices. - Stay current on emerging threats, attacker techniques, cloud security best practices, and evolving compliance requirements. - Share technical knowledge and mentor team members to support collaborative learning and continuous improvement. - Analyze security metrics and reports to validate that controls meet defined risk, reliability, and service-level goals. - Other duties as assigned. Requirements - 0-3 years of experience in information security, IT security, or a related technical field. - Bachelor's degree in computer science, cybersecurity, information systems, or a related field, or equivalent experience. - Equivalent combinations of education and experience may be considered. - Security-related certification preferred, such as CompTIA Security+, Systems Security Certified Practitioner (SSCP), or an equivalent entry-level credential. - Cloud security certification preferred, such as AWS Certified Security – Specialty or Microsoft Certified: Azure Security Engineer Associate. - Exposure to cloud security concepts and at least one major cloud provider (AWS or Azure), including shared responsibility model concepts. - Basic understanding of risk assessment concepts, including identifying, rating, and prioritizing risk based on likelihood and impact. - Familiarity with security tools such as SIEM, vulnerability scanners, endpoint detection and response (EDR), or cloud-native security services. - Basic understanding of networking concepts (firewalls, VPNs, segmentation, DNS) and common attack techniques. - Familiarity with identity and access management concepts, including MFA, SSO, and role-based access control. - Proficiency or working knowledge of at least one scripting or programming language (e.g., Python, PowerShell, Bash) for automation and analysis. - Knowledge of common security and compliance frameworks (e.g., NIST CSF, ISO 27001, CIS Controls, SOC 2). - Exposure to Windows and Unix-variant operating systems in a security or administrative context. - Ability to discuss technical security concepts clearly with non-technical stakeholders, ensuring mutual understanding. - Ability to excel in a fast-paced, evolving threat landscape, managing ambiguity and adapting to change. - Capable of working with minimal supervision while staying motivated and focused on tasks and objectives. - Must be detail-oriented, able to approach problems with a logical, systematic, and security-first mindset. - Strong written and verbal communication skills, able to convey technical and risk information clearly and professionally. - Strong analytical and problem-solving skills with the ability to absorb new information rapidly and apply it to security investigations. Work Environment - Remote: This role is 100% remote, open to candidates currently located in the United States who are able to work without sponsorship. - Requires a private, quiet workspace suitable for focused work and video collaboration. - Hours: Schedules are set to accommodate the needs of the role and organization, and may be adjusted as needed. - Travel: Occasional travel to off-site locations for meetings may be required. Salary Range: $60,000 - $90,000 and a comprehensive benefits package, please follow the link to our benefits page for details! EMPLOYERS Benefits About EMPLOYERS As a dynamic, fast-growing provider of workers' compensation insurance and services, we are seeking a goal-oriented individual willing to put their ideas to work! We offer a positive, challenging work environment, combined with an opportunity to build your career as you help us grow our business, in innovative and imaginative ways that are uniquely EMPLOYERS! Headquartered in Nevada, EMPLOYERS attributes its long-standing success to its most valuable resource, our employees across the United States. EMPLOYERS is known for the quality service and expertise we provide to our clients, and the exemplary work environment we provide for our employees. We live and breathe our core values: Integrity, Customer Focus, Collaboration, Initiative, Accountability, Innovation, and Personal Fulfillment. These are the pillars that support how we do business with our clients as well as how we treat each other! At EMPLOYERS, you’ll discover an energetic environment that inspires top achievement. As “America’s small business insurance specialist”, we have the resources, a solid reputation and an expanding nationwide identity to enrich your work/life and enhance your career. About EMPLOYERS
Наблюдалась 2026-10-07, впервые 2026-10-06, источник — Indeed.