Keyfactor, Inc. is seeking an Information Security Engineer for a full-time, mid-level role based in the USA, with remote preferences for Atlanta or Cleveland. This Corporate IT position in the computer and network security industry focuses on maintaining robust security practices, compliance, and infrastructure protection.
Information Security Engineer Role and Responsibilities
- Evaluate system and cloud security postures, establish baselines, and implement hardening measures.
- Configure, tune, and integrate SIEM, EDR, and other security platforms to expand visibility and detection coverage.
- Optimize security playbooks, runbooks, and processes to match evolving threats and operational maturity.
- Conduct vulnerability assessments, system audits, and risk analysis using tools like Nessus, BurpSuite, and Tenable.
- Manage continuous monitoring to maintain compliance with frameworks such as ISO 27001:2022 and SOC 2 Type II, with FedRAMP and CMMC familiarity preferred.
- Monitor, analyze, and respond to security alerts and incidents.
Requirements and Qualifications
- Master’s degree in a relevant field.
- 5+ years of experience in information security or a related role.
- Proficiency in vulnerability scanning tools and interpreting scan results.
- Demonstrated experience in continuous monitoring, network security, firewalls, VPNs, IDS/IPS, and endpoint protection.
- Knowledge of scripting languages such as Python or PowerShell to automate security processes.
- Relevant certifications like CISSP, CompTIA Security+, or CAP are strongly preferred, along with familiarity with government-regulated environments like AWS GovCloud or Azure Government.
Salary for this position is commensurate with experience.