Allied Consultants

Security Engineer

Allied Consultants$90K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of hands-on experience with CIS security baselines for server OS
  • Strong expertise in Windows Server security configurations and RHEL hardening
  • Proven experience with integrating security baselines into server images
  • Ability to collaborate across security and IT infrastructure teams
  • Excellent documentation, communication, and organizational skills.
  • Experience in a regulated or large enterprise environment is a plus
  • Familiarity with CSOC operations and vulnerability management is preferred.

Responsibilities

  • Develop and maintain CIS security baselines for Windows Server 2025 and RHEL.
  • Monitor updates to CIS benchmark releases and modify baselines accordingly.
  • Translate CIS benchmarks into Group Policy Objects and configuration standards.
  • Design secure, standardized server images that meet CIS baseline requirements.
  • Validate consistent application of baseline settings across server deployments.
  • Collaborate with CSOC to review security posture and baseline changes.
  • Identify and document exceptions to CIS baselines due to operational needs.

Benefits

  • Opportunity to work on advanced security projects within a regulated environment.
  • Collaborate with top-tier Cyber Security Operations teams.
  • Access to continuous training and skills development in cybersecurity practices.
  • Engagement in cross-team initiatives that enhance operational efficiency.
Full Job Description
Responsibilities

The CIS Baseline & Server Image Security Engineer is responsible for designing, maintaining, and implementingCenter for Internet Security (CIS)aligned security baselines and hardened server imagesfor enterprise server operating systems. This role focuses on modern server platforms includingWindows Server 2025andRed Hat Enterprise Linux (RHEL).

The position works closely withCyber Security Operations Center (CSOC)and multipleITD infrastructure and engineering teamsto ensure CIS benchmarks, security baselines, and gold images remain current, approved, and aligned with TxDOTs required security posture. The role ensures that server operating system images reflect approved security controls while remaining operationally supportable.

Primary Responsibilities

CIS Baseline Development & Maintenance

  • Create, customize, and maintain CIS security baselines for:
    • Windows Server 2025
    • Red Hat Enterprise Linux (RHEL)
  • Monitor CIS benchmark releases and security advisories to ensure baselines are reviewed and updated as required.
  • Translate CIS benchmarks into:
    • Group Policy Objects (GPOs)
    • Local security policies
    • Configuration standards and baseline documentation
  • Maintain versioned baseline artifacts, approval records, and supporting documentation.

Server Image Hardening & Standardization

  • Design and maintainsecure, standardized (gold) server operating system imagesthat incorporate approved CIS baselines.
  • Integrate CIS baseline controls into:
    • Server build images
    • Post-build configuration processes
  • Validate that baseline settings are consistently applied across newly deployed server systems.
  • Support image updates as new operating system releases or CIS benchmark versions are published.

Security Alignment & CSOC Collaboration

  • Work closely withCSOC & SRMto:
    • Review baseline changes
    • Validate security posture
    • Address findings related to configuration standards and benchmarks
  • Participate in security, baseline review, and posture validation meetings with CSOC.
  • Ensure CIS baseline decisions align with TxDOT & DIR STS security governance and risk management expectations.

Cross9Team Coordination

  • Collaborate with ITD teams including:
    • Server Operations
    • Platform Engineering
    • Change Management
    • Vulnerability Management
  • Provide guidance on baseline impacts to operations and applications.
  • Support discussions related to baseline compliance, remediation strategy, and future platform alignment.

Exception & Risk Management Support

  • Identify scenarios where CIS baseline settings require exceptions due to operational or application constraints.
  • Support documentation of:
    • Risk decisions
    • Approved exceptions
    • Compensating controls
  • Maintain baseline exception artifacts in alignment with security governance processes.
Qualifications

Minimum (Required):

Years

Skills/Experience

Hands9on experience developing and maintainingCIS security baselinesfor server operating systems.

Strong knowledge of: Windows Server security configuration(including GPO9based enforcement) and Linux security hardening, particularly RHEL

Experience integrating security baselines intoserver images or standardized builds.

Ability to work cross9functionally with security and infrastructure teams

Strong documentation, communication, and organizational skills.

Preferred (Optional):

Years

Skills/Experience

Experience supporting CIS baselines in agovernment, regulated, or large enterprise environment.

Prior experience collaborating directly with aCyber Security Operations Center (CSOC).

Familiarity with vulnerability management, configuration compliance, or audit activities.

Experience supporting multiple server OS versions and lifecycle transitions.

Deliverables & Success Measures

  • Approved, versioned CIS baselines for supported server operating systems.
  • Secure, standardized server OS images reflecting current CIS benchmarks.
  • Documented baseline updates and exception decisions aligned with CSOC and ITD standards.
  • Improved consistency and security posture across enterprise server platforms.

About Allied Consultants

Allied Universal is an American provider of security systems and services; janitorial services; and staffing. The company was formed in 2016 by the merger of Santa Ana, California-based security and janitorial services company Universal Services of America, and Conshohocken, Pennsylvania-based security firm AlliedBarton Security Services. At the time of the merger, the combined company was reportedly the largest provider of security guards in the United States, with 140,000 trained officers between the two companies. In October 2021, Allied Universal completed a $5.1 billion takeover of British security firm G4S, creating a combined company of 800,000 employees, with revenues of more than $18 billion USD. The company maintains two corporate headquarters, one is in Santa Ana, California and the main headquarters is in Conshohocken, Pennsylvania.
Learn more about Allied Consultants

Similar Jobs

More Jobs at Allied Consultants

More Information Technology Jobs

Find similar Security Engineer jobs: