Apply Edge Start your job search

Security Engineer

Gravity IT Resources · Salt Lake City Metropolitan Area

Apply & track with Apply Edge
Job Title: Sr IT Security EngineerLocation: OnsiteJob-Type: Direct HireSalary Range: $100k-$130kPosition OverviewA Senior IT Security Engineer in Operations & Engineering supports the design, implementation, and operation of enterprise cybersecurity technologies and services. They are responsible for strengthening the organization's security posture through the deployment, administration, and optimization of security controls across on-premises, cloud, and hybrid environments. They serve as a technical leader within the Cybersecurity team, partnering closely with IT Infrastructure, Network Engineering, Cloud Operations, Application Development, and Security Operations teams to ensure security controls are effectively implemented and maintained. This role supports both operational security activities and strategic security initiatives, helping to reduce risk through automation, engineering excellence, and continuous improvement.This position requires a strong technical foundation across multiple security domains, including endpoint security, identity and access management, cloud security, network security, vulnerability management, and security monitoring. The ideal candidate can balance engineering, operational support, and project execution while driving security best practices throughout the organization.ResponsibilitiesSecurity Engineering & Architecture:Design, implement, and maintain cybersecurity technologies across endpoint, network, cloud, and identity platformsEvaluate, deploy, and optimize security tools and controls to improve the organization's security postureSupport the development and implementation of cybersecurity standards, architectures, and technical roadmapsPartner with IT teams to ensure security controls are integrated into infrastructure and application designsSecurity Operations & Incident Response:Support security monitoring, threat detection, and incident response activitiesInvestigate security alerts, identify root causes, and assist with containment and remediation effortsDevelop and maintain operational procedures, runbooks, and response documentationParticipate in incident response exercises and continuous improvement initiativesIdentity & Access Management (IAM):Implement and support IAM capabilities, including identity lifecycle management, authentication, authorization, and privileged access controlsManage role-based access controls, multifactor authentication, conditional access, and identity governance processesSupport periodic access reviews, entitlement management, and segregation of duties initiativesPartner with application and infrastructure teams to integrate IAM solutions and automate identity processesVulnerability & Security Risk Management:Support the vulnerability management program through assessment, prioritization, tracking, and remediation validationCollaborate with system owners to remediate vulnerabilities and reduce cyber riskAnalyze security findings and recommend appropriate compensating controls or risk reduction measuresTrack remediation progress and support risk reporting activitiesCloud & Infrastructure Security:Design and implement security controls for Microsoft Azure, Microsoft 365, and hybrid environmentsSupport cloud security monitoring, configuration reviews, and hardening effortsEvaluate cloud architectures and services to ensure alignment with security requirementsImplement security best practices for infrastructure, applications, and data protectionAutomation, Reporting & Continuous Improvement:Identify opportunities to automate security processes and improve operational efficiencyDevelop metrics, dashboards, and reporting to support cybersecurity decision-makingMaintain technical documentation, standards, and operational proceduresStay current on emerging threats, technologies, and industry best practicesRequirementsBachelor's Degree in Cybersecurity, Information Technology, Computer Science, or related field5-8 years of experience in cybersecurity engineering, security operations, or infrastructure securityExperience managing and supporting enterprise security technologies, including EDR, SIEM, IAM, vulnerability management, and cloud security platformsStrong knowledge of Microsoft security technologies, including Microsoft Defender, Entra ID (Azure AD), Intune, and Azure security servicesExperience supporting incident response, vulnerability management, and security investigationsKnowledge of cybersecurity frameworks and best practices such as NIST CSF, CIS Controls, and Zero Trust principlesExperience scripting or automating security processes using PowerShell, Python, or similar technologies preferredStrong troubleshooting, analytical, and problem-solving skillsExcellent communication and collaboration skills with both technical and non-technical stakeholdersIndustry certifications such as CISSP, GSEC, Security+, Azure Security Engineer (AZ-500), or similar preferredEmployment Eligibility: Gravity cannot transfer nor sponsor a work visa for this position. Applicants must be eligible to work in the U.S. for any employer directly (we are not open to contract or “corp to corp” agreements).