Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Keyfactor

Information Security Engineer

Keyfactor

Information Security Engineer at Keyfactor responsible for security operations and compliance with frameworks such as ISO 27001:2022 and SOC 2 Type II.

Posted 6/19/2026full-timeRemote • 🇺🇸 United StatesMid-LevelSeniorWebsite

Tech Stack

Tools & technologies
AWSAzureCloudFirewallsPython

About the role

Key responsibilities & impact
  • Experience conducting vulnerability assessments, system audits, and risk analysis using industry-standard scanning tools (e.g., Nessus, Azure security tools, Tenable, Burpsuite, etc…) to support a proactive security posture.
  • Manage and implement continuous monitoring processes to ensure the organization maintains compliance with a variety of information security frameworks, including ISO 27001:2022 and SOC 2 Type II. Experience with government compliance standards such as FedRAMP (NIST SP 800-53) and CMMC is preferred. This role focuses on ensuring robust security practices and adapting to evolving compliance requirements.
  • Collaborate closely with IT, DevOps, Engineering, and Compliance teams to enforce security policies, procedures, and best practices.
  • Actively monitor, analyze, and respond to security alerts and incidents, performing investigations, incident handling, and recommending corrective actions.
  • Provide expert guidance on security matters to support secure development and operations.

Requirements

What you’ll need
  • 5+ years of experience in information security or a similar role
  • Proficiency in vulnerability scanning tools (Nessus, Burpsuite, Tenable, etc…) and interpreting scan results for remediation.
  • Strong knowledge of security standards
  • Demonstrated experience in continuous monitoring, network security, firewalls, VPNs, IDS/IPS, and endpoint protection.
  • Strong analytical skills and a meticulous approach to problem-solving.
  • Demonstrated capability to deliver results on-time and to a defined schedule.
  • Relevant certifications (e.g., CISSP, CompTIA Security+, CAP) are strongly preferred.
  • Familiarity with cloud security principles.
  • Experience with security automation and continuous monitoring tools.
  • PKI knowledge a plus.
  • Knowledge of scripting languages (Python, PowerShell) to automate security processes.
  • Experience in STIG configuration & implementation, and best practices for implementing these in various environments preferred.
  • Expertise in Government related InfoSec compliance frameworks such as NIST 800-53, NIST 800-171 preferred.
  • Experience with government-regulated environments (AWS GovCloud, Azure Government) preferred.

Benefits

Comp & perks
  • Second Fridays (a company-wide day off on the second Friday of every month minus November and December due to the Holiday schedule). Please note that this benefit is subject to change.
  • Comprehensive benefit coverage globally.
  • Generous paid parental leave globally.
  • Competitive time off globally.
  • Dedicated employee-focused ambassadors via Key Contributors & Culture Committees.
  • DIVERSE Commitment, a call to action for a more inclusive and diverse future in business, society, and technology.
  • The Keyfactor Alliance Program to support DEIB efforts.
  • Wellbeing resources, wellness allowance, mindfulness app free membership, Wellness Wednesdays.
  • Global Volunteer Day, company non-profit matching, and 3 volunteer days off.
  • Monthly Talent development and Cross Functional meetings to support professional development.
  • Regular All Hands meetings – followed by group gatherings.

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
vulnerability assessmentsrisk analysiscontinuous monitoringnetwork securityfirewallsVPNsIDS/IPSendpoint protectionscripting languagesSTIG configuration
Soft Skills
analytical skillsproblem-solvingcollaborationattention to detailtime management
Certifications
CISSPCompTIA Security+CAP