Security Engineer

CRG Inc
  • Greensboro, NC
  • $95,000–$115,000 Per Year
13 days ago

Job Description

Security Engineer

Location: Greensboro, NC

Compensation: $95,000 - $115,000

Position summary

The Security Engineer is a technical role responsible for designing, implementing, and operating core security controls across the organization's infrastructure and cloud platforms. This role serves as the owner for key security tooling and processes (for example, endpoint protection, logging and monitoring, vulnerability management, and secure configurations) and works closely with Network, Systems, and IAM teams to ensure secure, compliant, and efficient operations. The Security Engineer II supports Identity and Access Management (IAM) workflows and policies but does not serve as the primary IAM program owner.

Key responsibilities

  • Design, implement, and maintain security controls for networks, servers, endpoints, and cloud services, including firewalls, endpoint protection, email/web security, and VPN/remote access.
  • Own the configuration, operation, and tuning of core security tools (for example, endpoint protection, log collection/monitoring, vulnerability scanning), including health checks, upgrades, and effectiveness reviews.
  • Work with Network Administrators, Network Engineers, and Systems Administrators to ensure new infrastructure deployments follow standardized security baselines and hardening guidelines.
  • Develop and maintain security standards, diagrams, and technical documentation for security architectures and controls.
  • Monitor security alerts and logs (identity, endpoint, email, network) using established tools and escalate or respond according to documented runbooks.
  • Investigate security incidents involving endpoints, servers, and user accounts; perform containment and recovery activities in coordination with infrastructure and IAM teams.
  • Coordinate periodic vulnerability scans and patching campaigns, working with system and application owners to remediate findings within defined SLAs.
  • Contribute to post incident reviews by documenting root cause, corrective actions, and improvements to controls and processes.
  • Implement and maintain technical controls required by organizational security policies and applicable frameworks (for example, NIST/CMMC) in partnership with IT leadership and security/IAM stakeholders.
  • Support internal and external audits of security controls by providing technical evidence, documentation, and explanations of how controls are implemented.
  • Collaborate with Project Managers, business unit IT contacts, and application owners to embed security requirements into projects and change initiatives.
  • Contribute to security awareness efforts by providing technical input related to secure configurations, endpoint security, and authentication practices.
  • Support IAM operations in Entra ID/Azure AD, on prem Active Directory, and key business applications by assisting with secure patterns for provisioning/deprovisioning, access changes, and role models.
  • Help implement and maintain IAM policies such as MFA requirements, conditional access rules, and privileged access workflows, in coordination with Senior Security & IAM Analysts and IAM Engineers.
  • Participate in investigations of identity related security events (for example, suspicious sign ins, compromised accounts) by providing input on endpoint/network aspects and coordinating remediation.
  • Maintain and improve technical documentation related to IAM adjacent security configurations (for example, secure login flows, device compliance requirements, integration touchpoints with security tools).
  • Develop and maintain basic automation (for example, PowerShell scripts) to support security operations tasks such as log collection, configuration checks, and simple IAM/support workflows.
  • Identify opportunities to streamline security processes, reduce manual effort, and improve consistency of control deployment across environments.
  • Provide guidance and informal mentorship to junior Security & IAM Analysts and infrastructure staff on security best practices, standard procedures, and use of security tooling as appropriate.

Required qualifications

  • 3-6 years of experience in IT infrastructure, systems administration, network engineering, or security operations, with significant responsibility for security controls and/or IAM.
  • Strong hands on experience with Microsoft centric environments, including Windows Server, Microsoft 365, and Entra ID/Azure AD, plus familiarity with common security features such as MFA, conditional access, and endpoint protection.
  • Practical experience administering and troubleshooting security technologies such as firewalls, VPN, endpoint protection, email security, and log collection/monitoring.
  • Experience investigating and resolving security incidents involving endpoints and user accounts, following documented procedures and working with cross functional teams.
  • Ability to write and maintain basic scripts (for example, PowerShell) for automation of security and IAM related tasks.
  • Understanding of core security and IAM concepts including least privilege, RBAC, joiner/mover/leaver processes, and secure configuration baselines.
  • Strong attention to detail, documentation habits, and ability to communicate clearly with both technical and non technical stakeholders.

Preferred qualifications

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field, or equivalent practical experience.
  • Relevant certifications such as CompTIA Security+, Microsoft SC 200 (Security Operations Analyst), SC 300 (Identity and Access Administrator), or equivalent.
  • Familiarity with security frameworks and compliance programs such as NIST 800 171/80053, CMMC, or ISO 27001 and how they translate into technical controls.
  • Experience working with identity governance (IGA), privileged access management (PAM), or SIEM/log analytics platforms.

Category Code: JN008

#LI-LB1

#LI-Hybrid

Seniority Level: Mid-Senior

Numbers & Facts

LocationGreensboro, NC
Salary$95,000–$115,000 Per Year

Skills

  • Authenticationunmatched
  • Automationunmatched
  • Best Practicesunmatched
  • Business Solutionsunmatched
  • Campaignsunmatched
  • Cloud Computingunmatched
  • Communication Skillsunmatched
  • CompTIA - Computing Technology Industry Associationunmatched
  • CompTIA Security+unmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Corrective Actionunmatched
  • Cross-Functionalunmatched
  • Detail Orientedunmatched
  • Documentationunmatched
  • Email Securityunmatched
  • Endpoint Securityunmatched
  • External Auditunmatched
  • Firewallsunmatched
  • ISO (International Organization for Standardization)unmatched
  • Identify Issuesunmatched
  • Identity Data Managementunmatched
  • Incident Managementunmatched
  • Information Technology & Information Systemsunmatched
  • Internal Auditunmatched
  • Internet Securityunmatched
  • Machine Toolunmatched
  • Mentoringunmatched
  • Microsoft Active Directoryunmatched
  • Microsoft Product Familyunmatched
  • Microsoft Windows Azureunmatched
  • Microsoft Windows Serverunmatched
  • Network Administration/Managementunmatched
  • Network Architecture/Engineeringunmatched
  • Network Securityunmatched
  • Network Systemsunmatched
  • Operational Auditunmatched
  • Operational Supportunmatched
  • Operations Managementunmatched
  • Operations Security (OPSEC)unmatched
  • People Managementunmatched
  • Process Developmentunmatched
  • Regulatory Complianceunmatched
  • Remote Accessunmatched
  • Scripting (Scripting Languages)unmatched
  • Security Analysisunmatched
  • Security Architectureunmatched
  • Security Attacksunmatched
  • Security Auditingunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Service Level Agreement (SLA)unmatched
  • Software Patchesunmatched
  • Systems Administration/Managementunmatched
  • Team Playerunmatched
  • Technical Leadershipunmatched
  • Technical Writingunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • VPN (Virtual Private Network)unmatched
  • Vulnerability Scannersunmatched
  • Windows PowerShellunmatched
  • Writing Skillsunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder