Keyfactor

Information Security Engineer

Keyfactor$100K — $120K *
US-Anywhere
+ 2 other locationsRemote
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in information security or a similar role
  • Proficiency in vulnerability scanning tools like Nessus and Tenable
  • Strong knowledge of security standards
  • Experience in continuous monitoring and security practices
  • Familiarity with cloud security principles
  • Knowledge of scripting languages (Python, PowerShell)
  • Relevant certifications (CISSP, CompTIA Security+, CAP) strongly preferred

Responsibilities

  • Evaluate security posture of systems and implement hardening measures to close gaps
  • Quickly develop proficiency in evolving SIEM and security platforms for improved visibility
  • Optimize security playbooks and processes based on evolving threats and lessons learned
  • Conduct vulnerability assessments and risk analyses using industry-standard tools
  • Manage compliance monitoring processes for frameworks like ISO 27001 and SOC 2 Type II
  • Monitor and respond to security incidents, conducting investigations as necessary

Benefits

  • Second Fridays off each month for relaxation and recharge
  • Comprehensive global health benefit coverage
  • Generous paid parental leave and adoption support
  • Competitive global time off policy
  • Employee-focused culture initiatives through Key Contributors & Culture Committees
  • Commitment to diversity, equity, and inclusion initiatives
  • Professional development support through monthly meetings and training sessions
  • Wellbeing resources including wellness allowance and mindfulness app subscriptions
  • Opportunities for community involvement with company-sponsored volunteer days
Full Job Description
Title: Information Security Engineer

Location: USA; Remote (Atlanta or Cleveland preferred)

Experience: Mid-Level

Job Function: Corporate IT

Employment Type: Full-Time

Industry: Computer & Network Security

About the position

We are seeking an experienced Information Security Engineer with a strong background in implementing and managing general information security frameworks, including ISO 27001:2022 and SOC 2 Type II. This role involves designing, maintaining, and improving our security infrastructure to ensure compliance with regulatory standards and support continuous monitoring efforts. The ideal candidate will play a key role in safeguarding the organization's data and infrastructure while driving adherence to evolving security best practices.

Responsibilities
  • Evaluate the security posture of systems, platforms, and cloud environments, establish appropriate security baselines, and drive implementation and hardening to close identified gaps.
  • Quickly develop proficiency in new SIEM, EDR, and other security platforms as the environment evolves; configure, tune, and integrate these tools with SaaS applications and diverse data sources to expand visibility and detection coverage.
  • Evaluate and optimize security playbooks, runbooks, and processes based on lessons learned, tooling changes, and evolving threats, ensuring documentation and workflows keep pace with the organization's security operations maturity.
  • Experience conducting vulnerability assessments, system audits, and risk analysis using industry-standard scanning tools to support a proactive security posture.
  • Manage and implement continuous monitoring processes to ensure the organization maintains compliance with a variety of information security frameworks, including ISO 27001:2022 and SOC 2 Type II. Experience with government compliance standards such as FedRAMP (NIST SP 800-53) and CMMC is preferred. This role focuses on ensuring robust security practices and adapting to evolving compliance requirements.
  • Actively monitor, analyze, and respond to security alerts and incidents, performing investigations, incident handling, and recommending corrective actions.

Minimum Qualifications, Education, and Skills
  • 5+ years of experience in information security or a similar role
  • Proficiency in vulnerability scanning tools (Nessus, Burpsuite, Tenable, etc...) and interpreting scan results for remediation.
  • Strong knowledge of security standards
  • Demonstrated experience in continuous monitoring, network security, firewalls, VPNs, IDS/IPS, and endpoint protection.
  • Strong analytical skills and a meticulous approach to problem-solving
  • Demonstrated capability to deliver results on-time and to a defined schedule.
  • Relevant certifications (e.g., CISSP, CompTIA Security+, CAP) are strongly preferred
  • Familiarity with cloud security principles
  • Experience with security automation and continuous monitoring tools
  • PKI knowledge a plus
  • Knowledge of scripting languages (Python, PowerShell) to automate security processes
  • Experience with government-regulated environments (AWS GovCloud, Azure Government) preferred #LI-NA1


Compensation

Salary will be commensurate with experience.

Culture, Career Opportunities and Benefits

We build teams that continually strive to get better than the day before. You will be challenged daily and given opportunities to grow personally and professionally. We balance autonomy and structure to create an entrepreneurial environment to spur creativity and new ideas.

Here are just some of the initiatives that make our culture special:
  • Second Fridays (a company-wide day off on the second Friday of every month minus November and December due to the Holiday schedule). Please note that this benefit is subject to change.
  • Comprehensive benefit coverage globally.
  • Paid Parental Leave is available to new parents. Structure varies based on regional/government requirements. In regions where government-paid leave doesn't exist, like in the U.S., the company offers generous paid parental leave, along with comprehensive adoption and fertility support.
  • Competitive time off globally.
  • Dedicated employee-focused ambassadors via Key Contributors & Culture Committees.
  • DIVERSE Commitment, a call to action for a more inclusive and diverse future in business, society, and technology.
  • The Keyfactor Alliance Program to support DEIB efforts.
  • Wellbeing resources, wellness allowance, mindfulness app free membership, Wellness Wednesdays.
  • Global Volunteer Day, company non-profit matching, and 3 volunteer days off.
  • Monthly Talent development and Cross Functional meetings to support professional development.
  • Regular All Hands meetings - followed by group gatherings.

About Keyfactor

Keyfactor is a provider of digital identity management solutions for businesses. The company was founded in 2001 and is headquartered in Columbus, Ohio. Keyfactor's solutions help businesses manage their digital certificates and keys, which are used to secure online communications and transactions. The company's customers include Fortune 500 companies and government agencies. Keyfactor has a reputation for providing high-quality digital identity management solutions that help businesses protect their online assets.
Learn more about Keyfactor
Size
200 employees
Industry
Founded
2001
NASDAQ

Similar Jobs

More Jobs at Keyfactor

More Information Technology Jobs

Find similar Information Security Engineer jobs: