FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Engineer – Contract
VaricentSecurity Analyst I supporting security operations and security engineering initiatives at Varicent. Collaborating across teams to strengthen security posture through operational excellence and risk-based decision-making.
Tech Stack
Tools & technologiesAWSCloudGoogle Cloud Platform
About the role
Key responsibilities & impact- Coordinate the deployment, configuration, testing, monitoring, and ongoing maintenance of security technologies, including SIEM, EDR, DLP, WAF, CASB, Secure Web Gateway, URL filtering, email security, and application/vulnerability scanning platforms.
- Lead small-to-medium-sized security initiatives from requirements gathering through design, testing, pilot execution, and implementation.
- Support proof-of-concept evaluations and product assessments to ensure proposed solutions align with security strategy, standards, and industry best practices.
- Act as a service or tool owner by identifying enhancements, maintaining operational runbooks, and recommending improvements for tools under your responsibility.
- Develop and maintain procedures, workflows, architecture diagrams, and operational playbooks that support security monitoring and engineering activities.
- Investigate and triage security events using technologies such as SIEM, EDR, DLP, WAF, CASB, Secure Web Gateway, and email security solutions.
- Detect, respond to, and support investigations of security incidents while documenting root-cause analysis and lessons learned.
- Follow established incident response procedures and playbooks, escalating critical findings appropriately and efficiently.
- Apply analytical and adversarial thinking to identify, protect, detect, respond to, and recover from common cyber threats and attack vectors.
- Perform and support secure baseline reviews, infrastructure scanning, endpoint scanning, application vulnerability assessments, penetration testing validation, and AI red-teaming exercises.
- Review vulnerability findings for accuracy and completeness while partnering with stakeholders to prioritize remediation efforts based on risk.
- Escalate critical vulnerabilities, zero-day threats, and high-priority risks while supporting rapid mitigation efforts.
- Contribute to continuous improvements in vulnerability management workflows through automation and the integration of security testing into CI/CD pipelines.
- Conduct security risk assessments for internal initiatives, product enhancements, vendors, and productivity tools.
- Perform STRIDE-based threat modeling for internal projects and AI-enabled solutions, producing actionable recommendations and clear risk reports.
- Apply a risk-based approach to evaluating Agentic AI technologies and AI-related security risks.
- Conduct vendor risk assessments within OneTrust and support broader third-party risk management activities.
- Identify opportunities to strengthen controls, improve processes, and enhance security outcomes across teams.
- Stay informed on emerging threats, technologies, and industry best practices, sharing relevant insights with colleagues and stakeholders.
Requirements
What you’ll need- Bachelor's degree in Technology Management, Information Security, Computer Science, Computer Engineering, or equivalent practical experience.
- 3–5 years of experience in Information Security, Security Engineering, or Security Operations.
- At least one industry-recognized security certification (CISSP, CISA, CCSP, or equivalent).
- Experience working with public cloud platforms such as AWS, IBM Cloud, or Google Cloud Platform (GCP).
- Strong understanding of securing cloud environments, operating systems, networks, databases, and applications.
- Hands-on experience with security technologies including SIEM, WAF, DLP, EDR, and infrastructure/application vulnerability scanners.
- Knowledge of industry frameworks and standards such as NIST CSF and ISO 27001/27002.
- Familiarity with controls and compliance requirements related to SOC 1, SOC 2, PCI, and HIPAA.
- Excellent written and verbal communication skills with the ability to clearly document findings and communicate risk.
- Strong problem-solving skills, accountability, and a continuous learning mindset.
- Fluency in English.
Benefits
Comp & perks- Participating in our variable compensation program
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
SIEMEDRDLPWAFCASBSecure Web Gatewayvulnerability scanningpenetration testingcloud securitythreat modeling
Soft Skills
problem-solvingaccountabilitycontinuous learningcommunicationanalytical thinkingadversarial thinkingcollaborationleadershipdocumentationrisk assessment
Certifications
CISSPCISACCSP