Security & Infrastructure Engineer

Posted 6hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Security & Infrastructure Engineer securing Janus’s healthcare process-improvement platform. Owning penetration testing, SOC 2 compliance, Microsoft 365 identity, AWS security, and DevOps infrastructure protection.

Responsibilities:

  • Manage Microsoft 365 identity and access, including user lifecycle, conditional access policies, MFA, and role-based permissions
  • Design and automate provisioning and deprovisioning processes for user accounts and service accounts across cloud and SaaS environments
  • Extend coverage to application-layer vulnerabilities in coordination with development teams to surface and track findings
  • Own external security and penetration testing engagements end-to-end, including scoping, vendor coordination, remediation tracking, and fix validation through retesting
  • Design, document, and implement security processes, policies, and controls required to achieve and maintain SOC 2 and other applicable control-framework compliance
  • Continuously assess and improve AWS security posture, including IAM, network security, and configuration hardening
  • Build ongoing security reporting and dashboards to track risk and compliance status
  • Partner with DevOps on infrastructure security and secure provisioning for cloud resources and CI/CD pipelines
  • Monitor vulnerabilities and emerging threats across the environment
  • Maintain clear documentation of security policies, procedures, and audit evidence
  • Collaborate with engineering, DevOps, and leadership teams

Requirements:

  • 3-5 years of experience in information security, IT security, or a closely related field
  • Hands-on experience administering Microsoft 365 identity and access management, including Entra ID (Azure AD), conditional access, and MFA
  • Experience configuring and managing SSO/SAML/OIDC integrations with third-party SaaS applications
  • Working knowledge of security frameworks and controls, including NIST, CIS Controls, and SOC 2
  • Experience building or documenting repeatable security processes and procedures
  • Highly motivated self-starter with a strong team orientation
  • Outstanding verbal and written communication skills
  • Flexibility and comfort working in a dynamic, constantly evolving startup environment
  • Commitment to contributing to a positive, collaborative culture
  • Must be located in the United States; sponsorship is not available at this time
  • Preferred: Experience securing AWS environments, including IAM, GuardDuty, Security Hub, CloudTrail, and VPC security
  • Preferred: Familiarity with DevOps practices and infrastructure-as-code
  • Preferred: Networking fundamentals including DNS, VPNs, firewalls, and routing basics
  • Preferred: SIEM or observability platform experience, such as Datadog or Splunk
  • Preferred: Security certifications such as CISSP, CISM, AWS Security Specialty, or CompTIA Security+

Benefits:

  • Occasional domestic travel with flexibility and advance notice when scheduling travel
  • Professional remote or in-office environment
  • Reasonable accommodations for qualified applicants or employees with disabilities