SCS Global Services

Security Engineer II

SCS Global Services$100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in computer science or related field, or equivalent experience
  • 6+ years of IT experience
  • 3+ years in IT Security or Security Engineering
  • Strong systems and infrastructure engineering knowledge (Windows/Linux, networking, cloud, identity)
  • Proven ability to scope and implement security improvements
  • Cloud security experience, preferably with Azure
  • Experience with scripting for security automation (PowerShell, Terraform)
  • Familiarity with IAM concepts and implementing security frameworks like ISO 27001

Responsibilities

  • Design and implement security control architectures aligned with ISO 27001:2022
  • Engineer and maintain security controls across Identity, Endpoint, Workloads, and Data domains
  • Develop and operationalize security standards in collaboration with stakeholders
  • Conduct threat modeling and risk assessments for systems
  • Lead security integration activities and gap analysis
  • Identify security improvement opportunities and execute remediation plans
  • Integrate security tooling for log onboarding and alert tuning

Benefits

  • Fully remote position allowing flexible work arrangements
  • Opportunity for career development in a growing field
  • Work within a small team environment with high degrees of autonomy
Full Job Description
Job Overview
The Security Engineer II is responsible for the design, implementation, and lifecycle ownership of assigned security controls across identity, infrastructure, network, workload, and data layers. This role operates with a high degree of autonomy in a small team environment, independently identifying gaps, proposing remediation plans with estimated effort and complexity, and executing approved work. The ideal candidate brings deep infrastructure engineering knowledge to ensure security solutions are practical, operationally sound, and aligned with business impact. This role represents a fully independent individual contributor position and is differentiated from Security Engineer I by its expectation for independent scoping, design level ownership of security control implementations, with minimal day to day oversight.

Essential Duties and Responsibilities
  • Design and implement security control architectures and reference implementation patterns aligned with ISO 27001:2022 and related security frameworks (CIS, NIST CSF, MITRE ATT&CK), within established organizational standards
  • Engineer and maintain assigned security controls across the following domains: Identity: Entra ID/Conditional Access/MFA/PAM, Endpoint: Intune/EDR/XDR (CrowdStrike), Workloads: Azure/AWS security/container security/CI/CD controls, Data: DLP/encryption/key management
  • Develop, maintain, and operationalize security standards, baselines, and reference architectures in partnership with IT and application stakeholders
  • Perform threat modeling (STRIDE) and risk assessments for new systems and material changes, translating findings into actionable security controls and remediation recommendations
  • Lead security discovery and integration activities for new and existing environments, including current state assessment, gap analysis, and development of prioritized remediation plans
  • Proactively identify security improvement opportunities, propose viable solutions, and execute approved work items to completion
  • Integrate and optimize security tooling, including log source onboarding, alert tuning, and workflow automation
  • Partner with Development and Application teams to embed security by design
  • Support audit and compliance activities related to ISO 27001:2022, including evidence collection and control implementation validation

Minimum Qualifications
  • Bachelor's Degree in computer science, information systems, or a related field, or equivalent work experience and
  • 6+ years of IT Experience and
  • 3+ years in an IT Security or Security Engineering role
  • Strong practical knowledge of systems and infrastructure engineering (Windows/Linux fundamentals, networking, cloud architecture, identity, and common enterprise services) to make sound security recommendations and assess operational impact
  • Proven ability to scope security improvements into actionable work items, estimate level of effort, and partner with infrastructure/application owners to drive implementation
  • Cloud security experience (Azure preferred)
  • Experience with scripting and infrastructure as code for security automation and control deployment (PowerShell, Terraform, ARM/Bicep) to implement at scale
  • Experience with a MDR/vSOC provider and integrating EDR telemetry and incident workflows (CrowdStrike preferred)
  • Strong understanding of Identity and Access Management (IAM) concepts and implementations
  • Working knowledge of industry security frameworks and standards, including ISO 27001:2022 (preferred), NIST CSF, CIS Controls, and MITRE ATT&CK, and their application to security control design
  • Demonstrated ownership mindset: able to work from broad direction, handle ambiguity, prioritize, and drive work to completion
  • Practical experience implementing security controls within Azure/M365 environments
  • Experience with SIEM platforms, including log onboarding, detection tuning, and workflow integration (Microsoft Sentinel preferred)
  • Strong analytical skills with the ability to translate security and infrastructure risk into practical technical controls

Preferred Qualifications
  • Microsoft Azure Security Engineer
  • Microsoft Azure Administrator
  • Microsoft Azure Architect
  • Certified Cloud Security Professional (CCSP)


The above description is intended to describe the general nature and level of work being performed. It is not intended to be an exhaustive list of all responsibilities, duties, and skills required. Additional duties outside of normal responsibilities may be required from time to time as assigned.

Working Remotely
At this time, SCS Global Services is recruiting all open roles to be remote; allowing our employees the ability to work flexibly and allowing SCS as a company to diversify the experience and perspectives of our growing workforce. This role will be based out of your home office.

Estimated Annual Salary
$100,000 - $130,000

About SCS Global Services

SCS Global Services is a global leader in third-party environmental and sustainability certification, auditing, testing, and standards development. The company was founded in 1984 and is headquartered in Emeryville, California. SCS Global Services provides a range of services to help organizations achieve their sustainability goals, including certification to environmental, social, and sustainability standards, carbon footprinting, life cycle assessment, and supply chain management. The company's clients include businesses, government agencies, and non-profit organizations. SCS Global Services is committed to promoting sustainability and environmental stewardship through its services and operations.
Learn more about SCS Global Services
Size
200 employees
Industry
Net Income
$500,000
Founded
1984
5 Year Trend
+20%
Revenue
$10 million

Similar Jobs

More Information Technology Jobs

Find similar Security Engineer II jobs: