Engineer - Security

iraLogix, Inc.
  • Charlotte, NC
    7 days ago

    Job Description

    Company: IRALOGIX, Inc.

    Position: Security Engineer

    Location: Charlette, NC or Pittsburgh, PA

    Job Type: Full-Time/Exempt

    Industry: Retirement Services/FinTech Software

    Travel: 0%-5%

    IRALOGIX is a high-growth, institutional technology platform focused on providing uniquely capable solutions to IRA providers, 401(k) recordkeepers, retirement-focused Advisors, Mutual Fund investment providers, and banks interested in growing their IRA capabilities, revenue, and market share. Through proprietary, ground-up technology, we are changing the landscape and are empowering client companies to provide broader access to the best retirement services possible while significantly lowering administration costs and increasing efficiency, profitability, and competitiveness, far beyond industry expectations.

    Role Overview

    We're hiring a Security Engineer to join our lean and highly collaborative security function. Reporting to the Director of Security, you'll play a central role in identifying risks and driving security outcomes across AWS infrastructure, containerized applications, CI/CD pipelines, SaaS platforms, and endpoints.

    This role is ideal for a broad generalist with 2-4 years of experience-someone who is passionate about security, thrives in modern cloud environments, and wants to grow into a versatile engineer who touches AppSec, DevSecOps, endpoint security, and compliance. We're looking for adaptability, curiosity, and a strong grasp of fundamentals over deep specialization.

    Key Responsibilities

    • Cloud Security & IAM
    • Support secure configuration of AWS services.
    • Help develop identity and access guardrails across AWS and SaaS tools.
    • Partner with DevOps to improve image lifecycle hygiene and container security.
    • CI/CD Security
    • Work with engineering and platform teams to define security gates for CI/CD.
    • Help standardize secure build practices, secrets management, and artifact handling.
    • Vulnerability & Threat Management
    • Support triage and remediation of vulnerabilities surfaced via cloud and endpoint scanners.
    • Engage with our SOC to respond to security events across cloud, identity, endpoint, and app layers.
    • Application Security
    • Help developers address legacy library vulnerabilities and integrate secure coding practices.
    • Participate in threat modeling, secure SDLC planning, and code/toolchain reviews.
    • Governance & Compliance
    • Assist in maintaining our SOC 2 Type II posture and mapping controls to frameworks (CSA CCM, CIS AWS).
    • Collaborate with auditors and internal stakeholders to evidence controls and risk mitigation.
    • Endpoint & SaaS Security
    • Support Mac and Windows laptop security with device configuration/compliance management tools.
    • Help govern secure SaaS usage, enforce device compliance, and manage privilege escalation.
    • Education & Culture
    • Contribute to internal security training, awareness campaigns, and documentation.
    • Champion a collaborative, secure-by-default culture across development and operations.

    JOB DESCRIPTION

    You Might Be a Fit If You Have...

    • 2-4 years of hands-on security, DevOps, or cloud engineering experience in modern environments.
    • Familiarity with AWS IAM, containers (ECS, EKS), Terraform, SSO (Okta), and CI/CD workflows.
    • Practical understanding of vulnerability management, secure coding, and cloud-native security tooling.
    • Experience working in small teams or startups where everyone wears multiple hats.
    • Comfort collaborating with developers, auditors, and cross-functional stakeholders.
    • An eagerness to learn and improve-especially around AppSec, cloud IAM, and CI/CD security.
    • Strong written and verbal communication skills.

    Bonus Points For…

    • Familiarity with Java, Python, Go, or Rust.
    • Experience securing GitHub Enterprise, Argos, Trivy, or other common DevSecOps tools.
    • Prior exposure to compliance frameworks like SOC 2, CIS, or CSA CCM.
    • Contributions to open source or personal security projects.

    Work Setup & Culture

    • Hybrid model: 3-4 days/week in our Charlotte, NC or Pittsburgh, PA office
    • Flexible and team-driven environment with high autonomy
    • Emphasis on learning, adaptability, and cross-functional support
    • No formal on-call, but expectation to assist during major incidents

    What We Value

    We care far more about aptitude, curiosity, and flexibility than traditional degrees or certifications. Whether you've come from an enterprise, a bootcamp, or built your skills in your home lab-we want people who can grow with us, solve problems with empathy, and help secure an evolving, cloud-first fintech platform.

    Numbers & Facts

    LocationCharlotte, NC

    Skills

    • Amazon Web Services (AWS)unmatched
    • Apple Macsunmatched
    • Applications Securityunmatched
    • Cloud Computingunmatched
    • Code Reviewsunmatched
    • Communication Skillsunmatched
    • Computer Securityunmatched
    • Configuration Managementunmatched
    • Continuous Deployment/Deliveryunmatched
    • Continuous Integrationunmatched
    • Cost Controlunmatched
    • Cross-Functionalunmatched
    • DevOpsunmatched
    • Endpoint Securityunmatched
    • Engineeringunmatched
    • GitHubunmatched
    • Go Programming Language (Golang)unmatched
    • Internal Auditunmatched
    • Investment Fundsunmatched
    • Javaunmatched
    • Laptop PCunmatched
    • Machine Toolunmatched
    • Maintain Complianceunmatched
    • Market Shareunmatched
    • Microsoft Windows Operating Systemunmatched
    • Mutual Fundsunmatched
    • On Callunmatched
    • Open Sourceunmatched
    • Presentation/Verbal Skillsunmatched
    • Problem Solving Skillsunmatched
    • Profit & Lossunmatched
    • Python Programming/Scripting Languageunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Secure Codingunmatched
    • Security Attacksunmatched
    • Single Sign-On (SSO)unmatched
    • Software Development Lifecycle (SDLC)unmatched
    • Software as a Service (SaaS)unmatched
    • Startupunmatched
    • Team Playerunmatched
    • Technical Recruitingunmatched
    • Threat Modelingunmatched
    • Willing to Travelunmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder