Information Security Engineer

Keyfactor, Inc.
  • Cleveland, OH
    1 day ago

    Job Description

    About Keyfactor 

    Our mission is to securely connect the world: humans, machines, and AI. Keyfactor is the leader in trust infrastructure for AI and machines, helping the world's largest enterprises and government agencies take control of the cryptographic identities that safeguard every digital interaction. Behind the platform is a global team of people who care deeply about the work and each other. We move fast, think big, and show up for one another every day. If you're looking for work that matters and a team that brings out your best, we hope you'll trust your future with Keyfactor!

    Title: Information Security Engineer

    Location: USA; Remote (Atlanta or Cleveland preferred)

    Experience: Mid-Level

    Job Function: Corporate IT

    Employment Type: Full-Time

    Industry: Computer & Network Security

    About the position

    We are seeking an experienced Information Security Engineer with a strong background in implementing and managing general information security frameworks, including ISO 27001:2022 and SOC 2 Type II. This role involves designing, maintaining, and improving our security infrastructure to ensure compliance with regulatory standards and support continuous monitoring efforts. The ideal candidate will play a key role in safeguarding the organization's data and infrastructure while driving adherence to evolving security best practices.

    Responsibilities

    • Evaluate the security posture of systems, platforms, and cloud environments, establish appropriate security baselines, and drive implementation and hardening to close identified gaps.
    • Quickly develop proficiency in new SIEM, EDR, and other security platforms as the environment evolves; configure, tune, and integrate these tools with SaaS applications and diverse data sources to expand visibility and detection coverage.
    • Evaluate and optimize security playbooks, runbooks, and processes based on lessons learned, tooling changes, and evolving threats, ensuring documentation and workflows keep pace with the organization's security operations maturity.
    • Experience conducting vulnerability assessments, system audits, and risk analysis using industry-standard scanning tools to support a proactive security posture.
    • Manage and implement continuous monitoring processes to ensure the organization maintains compliance with a variety of information security frameworks, including ISO 27001:2022 and SOC 2 Type II. Experience with government compliance standards such as FedRAMP (NIST SP 800-53) and CMMC is preferred. This role focuses on ensuring robust security practices and adapting to evolving compliance requirements.
    • Actively monitor, analyze, and respond to security alerts and incidents, performing investigations, incident handling, and recommending corrective actions.

    Minimum Qualifications, Education, and Skills

    • 5+ years of experience in information security or a similar role
    • Proficiency in vulnerability scanning tools (Nessus, Burpsuite, Tenable, etc…) and interpreting scan results for remediation.
    • Strong knowledge of security standards
    • Demonstrated experience in continuous monitoring, network security, firewalls, VPNs, IDS/IPS, and endpoint protection.
    • Strong analytical skills and a meticulous approach to problem-solving
    • Demonstrated capability to deliver results on-time and to a defined schedule.
    • Relevant certifications (e.g., CISSP, CompTIA Security+, CAP) are strongly preferred
    • Familiarity with cloud security principles
    • Experience with security automation and continuous monitoring tools
    • PKI knowledge a plus
    • Knowledge of scripting languages (Python, PowerShell) to automate security processes
    • Experience with government-regulated environments (AWS GovCloud, Azure Government) preferred  #LI-NA1

    Compensation

    Salary will be commensurate with experience.  

    Culture, Career Opportunities and Benefits 

    We build teams that continually strive to get better than the day before. You will be challenged daily and given opportunities to grow personally and professionally. We balance autonomy and structure to create an entrepreneurial environment to spur creativity and new ideas.  

    Here are just some of the initiatives that make our culture special:   

    • Second Fridays (a company-wide day off on the second Friday of every month minus November and December due to the Holiday schedule). Please note that this benefit is subject to change.
    • Comprehensive benefit coverage globally.
    • Paid Parental Leave is available to new parents. Structure varies based on regional/government requirements. In regions where government-paid leave doesn't exist, like in the U.S., the company offers generous paid parental leave, along with comprehensive adoption and fertility support.
    • Competitive time off globally.
    • Dedicated employee-focused ambassadors via Key Contributors & Culture Committees. 
    • DIVERSE Commitment, a call to action for a more inclusive and diverse future in business, society, and technology. 
    • The Keyfactor Alliance Program to support DEIB efforts. 
    • Wellbeing resources, wellness allowance, mindfulness app free membership, Wellness Wednesdays. 
    • Global Volunteer Day, company non-profit matching, and 3 volunteer days off.
    • Monthly Talent development and Cross Functional meetings to support professional development. 
    • Regular All Hands meetings – followed by group gatherings. 

    Our Core Values 

    Our core values are extremely important to how we run our business and what we look for in every team member:  

    Trust is paramount.   

    We deliver security software and solutions where trust and openness are of the highest importance for our customers. We are honest and a trusted partner in every aspect of business.   

    Customers are core.   

    We strategize, operate, and execute through a customer-centric view. We prioritize the security interests of our customers, and we act as if their data were our own.   

    Innovation never stops, it only accelerates.   

    The speed of change is accelerating. We are committed, through investment and focus, to stay ahead of the innovation curve.   

    We deliver with agility.    

    We thrive in high-paced and continually changing environments. We navigate through newly added variables, adjust accordingly, while driving towards our strategic goals.   

    United by respect.    

    Respect for all is what unites us. We promote diversity, inclusivity, equity, and acting with empathy and openness, both in our business and in our communities.   

    Teams make "it" happen.   

    Vision and goals are not individually achievable – they require teamwork. We pride ourselves in operating as a cohesive team, creating promoters and partners, and winning as one.   

    Keyfactor is a proud equal opportunity employer including but not limited to veterans and individuals with disabilities.  

    REASONABLE ACCOMMODATION: Applicants with disabilities may contact a member of Keyfactor's People team via people@keyfactor.com and/or telephone at 1.216.785.2990 to request and arrange for accommodations at any time. 

    Keyfactor Privacy Notice

    Numbers & Facts

    LocationCleveland, OH

    Skills

    • Amazon Web Services (AWS)unmatched
    • Analysis Skillsunmatched
    • Artificial Intelligence (AI)unmatched
    • Automationunmatched
    • Best Practicesunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cloud Computingunmatched
    • CompTIA Security+unmatched
    • Computer Networksunmatched
    • Computer Securityunmatched
    • Corrective Actionunmatched
    • Cross-Functionalunmatched
    • Cryptographyunmatched
    • Documentationunmatched
    • Endpoint Securityunmatched
    • Entrepreneurshipunmatched
    • Establish Prioritiesunmatched
    • Firewallsunmatched
    • Governmentunmatched
    • Government Requirementsunmatched
    • Government Standardsunmatched
    • ISO (International Organization for Standardization)unmatched
    • Incident Responseunmatched
    • Industry Standardsunmatched
    • Information Technology/Systems Auditunmatched
    • Information/Data Security (InfoSec)unmatched
    • Intrusion Detection Systemsunmatched
    • Intrusion Prevention Systemsunmatched
    • Machine Toolunmatched
    • Maintain Complianceunmatched
    • Microsoft Windows Azureunmatched
    • Nessusunmatched
    • Network Monitoringunmatched
    • Network Securityunmatched
    • Nonprofitunmatched
    • Problem Solving Skillsunmatched
    • Public Key Infrastructure (PKI)unmatched
    • Python Programming/Scripting Languageunmatched
    • Regulatory Complianceunmatched
    • Risk Analysisunmatched
    • Schedule Developmentunmatched
    • Scripting (Scripting Languages)unmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Infrastructureunmatched
    • Security Monitoringunmatched
    • Security Softwareunmatched
    • Software as a Service (SaaS)unmatched
    • Talent Managementunmatched
    • Team Playerunmatched
    • Time Managementunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • VPN (Virtual Private Network)unmatched
    • Vulnerability Scannersunmatched
    • Windows PowerShellunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder