Information Security Engineer

Ovative Group

$75K — $93K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Two- or four-year degree in computer science, information security, technology, or related field; or 3+ years equivalent experience
  • 2+ years experience in security operations, site reliability engineering, or relevant role
  • Experience with vulnerability management tools and remediation processes
  • Knowledge of GCP and/or Azure security services and configurations
  • Familiarity with IAM, secrets management, and network security concepts in cloud environments
  • Proficiency in shell scripting and Python, TypeScript, Go, or similar languages
  • Experience with modern DevSecOps practices and technologies like GitHub, Jira, Confluence

Responsibilities

  • Monitor and triage security tooling alerts across various environments
  • Perform log analysis to investigate security incidents
  • Execute incident response plans and conduct post-incident reviews
  • Manage relationships with MDR partners and implement their recommendations
  • Conduct root cause analyses for security findings and recommend fixes
  • Support AI-driven innovations across the business
  • Test and evaluate new AI security vendors and tools
  • Monitor the current threat landscape and coordinate vulnerability assessments
  • Collaborate to ensure timely patching and hardening of systems
  • Support penetration testing logistics and remediation processes
  • Administer security tools and streamline operations through scripting

Benefits

  • Transparent view into compensation components
  • Participate in both base salary and annual bonus scheme
  • Access to a comprehensive benefits package
Full Job Description

Responsibilities:

Security Operations and Incident Response

  • Monitorsecurity tooling andalerts across endpoint, cloud, and network environments; triage and escalate as appropriate

  • Perform log analysis and investigation toidentifyand scope the impact of security incidents

  • Support incident response and business continuity plan execution, including tabletop exercises and post-incident reviews

  • Support managed detection and response (MDR) partner relationships and act on partner recommendations

  • Participate in root cause analyses for security findings;identifycontributing factors and implement permanent fixes

AI Security

  • Support the growth and innovation driven bygenAI technologies across the business

  • Participate in testing and reviewing new AI vendors and tools

  • Research AI security approaches like MCP servers, agent policy/proxy server, etc. and recommend AI security tooling and security design

  • Provide support and training for security hygiene in using AI tools, agents, frameworks like spec kit, OWASPGenAI Security, etc.

Threat and Vulnerability Management

  • Monitor threat info feeds tomonitorand understand the currentthreat landscape andinformtheteam to act on

  • Operate and monitor vulnerability scanning tools; track and remediate or document exceptions

  • Prioritize remediation efforts based on risk scoring and asset criticality

  • Coordinate with engineering and IT teams to ensuretimelypatching and hardening of cloud and endpoint systems

  • Support penetration testing engagements: coordinatelogistics, track findings, and drive remediation to closure

Security Tooling & Automation

  • Administer and tune security tools including SIEM, vulnerability scanners, EDR, and cloud security posture management (CSPM) platforms

  • Build andmaintainautomation and scripts (Python, Bash, or similar) to streamline security operations and reduce manual toil

  • Evaluate and recommend new security tools in partnership with the Head of Information Security

Skills and Qualifications

  • Two-year or four-yeardegree in computer science,informationsecurity,technology, or related field; or 3+ years of equivalent experience

  • 2+ years ofexperience in a security operations,site reliability engineering, or otherrelevantrole

  • Experience with vulnerability management tools and remediation workflows

  • Working knowledge of GCP and/or Azure security services and configurations

  • Familiarity with IAM, secrets management, and network security concepts in cloud environments

  • Proficiencyin shell scripting and Python, TypeScript, Go, or similar programming languages

  • Experience withmodernDevSecOpspractices and technologies(Github,Jira,Confluence)

  • Experienceoperatingacross cloud-native securityandenterprise productivityenvironments(GCP, Azure, M365)

  • Strong analytical and problem-solving skills; high attention to detail

  • Ability to communicate and champion security concepts and practices clearly to developers, data engineers, data scientists, and technical and non-technical engineering leadership

Preferred Qualifications

  • Security certifications (CCSP, CEH, GSEC, GCIH,etc.)

  • Experience withIaCtools such as Terraform,Ansible, or Puppet

  • Hands-on experience withCSPM(Wiz, Lacework, etc.)andSIEM platforms

  • Experience with containerization technologies (Kubernetes, Docker)

  • Familiarity withDevSecOpspractices and software development lifecycle

  • Experiencesecuringpersonal informationorotherregulated data

  • Exposure tosecurity administration ofBigQuery,Databricks, or similar data platforms

Pay Transparency

AtOvative, we offer a transparent view into three core components of your total compensation package:Base Salary, Annual Bonus, and Benefits. The salary range for this position below is inclusive of an annual bonus.Actualoffers are made with consideration for relevant experienceandanticipatedimpact.Additionalbenefits information is provided below.

For ourSr. Analystpositions, our compensation ranges from$75,000 to $93,000, which is inclusive of a15% bonus.

Similar Jobs

More Jobs at Ovative Group

More Information Technology Jobs

Find similar Information Security Engineer jobs: