Security & Infrastructure Engineer
Posted 6hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Security & Infrastructure Engineer securing Janus’s healthcare process-improvement platform. Owning penetration testing, SOC 2 compliance, Microsoft 365 identity, AWS security, and DevOps infrastructure protection.
Responsibilities:
- Manage Microsoft 365 identity and access, including user lifecycle, conditional access policies, MFA, and role-based permissions
- Design and automate provisioning and deprovisioning processes for user accounts and service accounts across cloud and SaaS environments
- Extend coverage to application-layer vulnerabilities in coordination with development teams to surface and track findings
- Own external security and penetration testing engagements end-to-end, including scoping, vendor coordination, remediation tracking, and fix validation through retesting
- Design, document, and implement security processes, policies, and controls required to achieve and maintain SOC 2 and other applicable control-framework compliance
- Continuously assess and improve AWS security posture, including IAM, network security, and configuration hardening
- Build ongoing security reporting and dashboards to track risk and compliance status
- Partner with DevOps on infrastructure security and secure provisioning for cloud resources and CI/CD pipelines
- Monitor vulnerabilities and emerging threats across the environment
- Maintain clear documentation of security policies, procedures, and audit evidence
- Collaborate with engineering, DevOps, and leadership teams
Requirements:
- 3-5 years of experience in information security, IT security, or a closely related field
- Hands-on experience administering Microsoft 365 identity and access management, including Entra ID (Azure AD), conditional access, and MFA
- Experience configuring and managing SSO/SAML/OIDC integrations with third-party SaaS applications
- Working knowledge of security frameworks and controls, including NIST, CIS Controls, and SOC 2
- Experience building or documenting repeatable security processes and procedures
- Highly motivated self-starter with a strong team orientation
- Outstanding verbal and written communication skills
- Flexibility and comfort working in a dynamic, constantly evolving startup environment
- Commitment to contributing to a positive, collaborative culture
- Must be located in the United States; sponsorship is not available at this time
- Preferred: Experience securing AWS environments, including IAM, GuardDuty, Security Hub, CloudTrail, and VPC security
- Preferred: Familiarity with DevOps practices and infrastructure-as-code
- Preferred: Networking fundamentals including DNS, VPNs, firewalls, and routing basics
- Preferred: SIEM or observability platform experience, such as Datadog or Splunk
- Preferred: Security certifications such as CISSP, CISM, AWS Security Specialty, or CompTIA Security+
Benefits:
- Occasional domestic travel with flexibility and advance notice when scheduling travel
- Professional remote or in-office environment
- Reasonable accommodations for qualified applicants or employees with disabilities


















