JobTarget Logo

Cloud Security Engineer in Alpharetta, Georgia at Goldfein LLC

New
Goldfein LLC
Alpharetta, Georgia, 30004, United States
Posted on
New job! Apply early to increase your chances of getting hired.

Explore Related Opportunities

Job Description

Position Overview
We are seeking an experienced Security Engineer to design, implement, and continuously improve our information security program across cloud infrastructure, identity and access management, vulnerability management, and security automation. We’re looking for someone who is hands-on, technically strong, and comfortable working across engineering and IT teams in a fast-paced environment.
Key Responsibilities
Cloud Security
• Design and enforce security controls across cloud infrastructure (AWS and Azure), including encryption standards, key management, and data protection aligned to SOC 2 and GLBA requirements
• Implement and maintain cloud security posture management (CSPM) tooling to identify misconfigurations and drift
• Support secure architecture reviews for new cloud workloads and third-party integrations
• Configure and manage cloud network security controls, including firewalls, security groups, VPC/VNet segmentation, and private endpoints, across AWS and Azure environments
Vulnerability Management
• Own the end-to-end vulnerability management lifecycle, including discovery, prioritization, triage, remediation coordination with engineering and IT teams, and metrics reporting for leadership and audit purposes
• Operate and tune vulnerability scanning tools across cloud infrastructure, endpoints (including EDR and MDM-managed devices), and application dependencies
• Evaluate third-party and open-source library risks, including dependency scanning in CI/CD pipelines, GitHub repositories, and AI/ML model dependencies
• Coordinate third-party penetration testing and offensive security assessments, track findings to remediation, and validate control effectiveness post-remediation
• Leverage AI-assisted tools to enhance vulnerability discovery, prioritization, and remediation workflows
Identity & Access Management (IAM)
• Administer and mature IAM controls across Okta, Entra ID, and AWS IAM, including role-based access, least privilege enforcement, and privileged access governance
• Manage device assurance policies, conditional access rules, and MFA enforcement across the workforce identity stack, maintaining documentation and audit evidence for SOC 2 CC6.x trust services criteria
• Conduct regular access reviews and support user lifecycle automation including provisioning, deprovisioning, and access certification
• Govern AI agent identities and service account access, applying least privilege principles to automated and agentic workloads
Security Monitoring
• Operate and continuously tune SIEM to detect threats, anomalous behavior, and policy violations across cloud, endpoint, and identity layers, including cloud-native signals such as GuardDuty findings and anomalous API activity
• Develop and maintain detection rules, correlation queries, and dashboards to support proactive threat identification and incident response
• Maintain log source coverage inventory and ensure critical systems (AWS, M365, Okta, network security controls) are onboarded and generating actionable telemetry
• Monitor and triage endpoint security alerts from EDR and MDM platforms (e.g., Microsoft Defender for Endpoint, Intune), investigate anomalies, and coordinate response with IT
Security Automation & Tooling
• Build and maintain automated workflows for security operations, including alert triage, user deprovisioning, evidence collection, and compliance reporting
• Develop and manage integrations across the security stack using APIs, scripting (Python, PowerShell, Bash), infrastructure-as-code tools (Terraform), and low-code platforms such as QuickBase
• Define and maintain security infrastructure as code (IaC) using Terraform, enabling repeatable, auditable deployment of security controls across cloud environments
• Evaluate and secure AI tools and agentic solutions, including controls around data exposure, model access, and AI agent privilege management
Security & Compliance Knowledge
• Working knowledge of SOC 2 Trust Services Criteria
• Familiarity with GLBA Safeguards Rule requirements and related data protection obligations
• Understanding of NIST CSF 2.0 and common vulnerability and risk frameworks
• Experience supporting or participating in external security audits or assessments
Required Qualifications
Technical Skills
• 3-5 years of experience in an information security or security engineering role
• Hands-on experience with cloud security (AWS and Azure), vulnerability management programs, and SIEM platforms for log analysis and threat detection
• Proficiency with identity platforms (Auth0, Okta, Entra ID / Azure AD) and endpoint security tooling including EDR/MDM platforms such as Microsoft Defender and Intune
• Experience with infrastructure-as-code tools, including Terraform, for deploying and managing security controls across cloud environments
• Scripting and automation skills in Python, PowerShell, or Bash
Soft Skills
• Strong analytical and problem-solving skills with the ability to assess risk and prioritize work
• Clear written and verbal communication skills
• Collaborative working style with experience partnering across the organization
• Comfortable operating in a fast-paced, regulated environment with competing priorities
Education & Certifications
• Bachelor’s degree in Computer Science, Information Security, or a related field or equivalent professional experience
• Relevant security certifications are a plus
• SOC 2 or compliance-related training a plus
What We Offer
• Competitive salary and comprehensive benefits package
• Professional development opportunities and certification reimbursement
• Remote-first work environment with flexible arrangements
• Opportunity to build and own a security function with real organizational impact
• Collaborative team culture with exposure to a modern, cloud-forward technology stack
Work Environment
This is a fully remote role requiring collaboration with cross-functional teams including IT, engineering, compliance, and legal. The position involves both hands-on security operations and program-level work, with significant opportunity to drive process improvement and tooling maturity. The security engineer will operate as a core contributor to the organization’s SOC 2 compliance program and ongoing security posture improvement efforts.
Requirements
• Authorized to work in the United States and based in a company-approved location. 
• The successful completion of a background check, conducted in accordance with local law/regulations, before beginning work. 
• Employment verification through E-Verify.
Benefits:
• 401(k)
• Dental insurance
• Health insurance
• Paid time off
• Vision insurance
Work Location: Remote

Job Location

Alpharetta, Georgia, 30004, United States

Frequently asked questions about this position

Similar Jobs In Alpharetta, Georgia

Hot Job

FPGA Embedded Software Engineer

Trenton Systems
Duluth, Georgia

Onsite Help Desk Technician

SERVIT INC
Ball Ground, Georgia
New

BMS/EPMS Controls Technician III

Mantis Innovation
Atlanta, Georgia

Cloud Engineer

APTEAN
Alpharetta, Georgia

Onsite IT Support Technician

SERVIT INC
Atlanta, Georgia
Continue to apply
Enter your email to continue. You’ll be redirected to the employer’s application.
By clicking Continue, you understand and agree to JobTarget's Terms of Use and Privacy Policy.