Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Infrastructure Security Engineer image - Rise Careers
Job details

Infrastructure Security Engineer - job 1 of 2

Security Engineer

Mission Summary

Securely accelerate engineering. As a Security Engineer at Observe, your mission is to design and deliver controls, automations, and processes that enable teams to move faster with confidence. Your success is measured by how much safer and more efficiently others can build, ship, and operate software because of the guardrails, detections, and practices you establish.

About the Job

At Observe, we’re building next-generation systems in a high-growth environment. As a Security Engineer, you will focus on one primary goal: improving security outcomes without adding friction. You will shape identity and access patterns, strengthen detection/response, streamline vulnerability and configuration management, and make audit readiness a natural output of daily operations.

You’ll collaborate closely with IT and Infrastructure to translate security requirements into clear standards, automation, and documentation—so developers focus on solving complex problems, not wrestling with security hurdles. You will manage priorities, deadlines, and deliverables across teams, lead design and playbook reviews, and champion simple, scalable practices that raise the bar for engineering excellence.

Responsibilities

  • GRC Enablement

    • Map operating controls to automated evidence (access reviews, backup verification, change control, patch SLOs).

    • Support third-party assessments, penetration-test scoping, and regression validation; contribute to SOC 2/ISO 27001 readiness.

  • Identity & Access Management

    • Design and maintain least-privilege models, just-in-time/step-up patterns, break-glass controls, and periodic access reviews.

    • Publish clear access standards and reporting that improve visibility for engineering leadership and auditors.

  • Detections & Monitoring

    • Define, implement, and tune a ruleset for high-value scenarios (e.g., authentication anomalies, risky configuration changes, suspected key/role misuse, public exposure).

    • Reduce false positives with context and suppression; maintain coverage and efficacy dashboards.

  • Incident Response

    • Author and own playbooks for top scenarios (credential theft, exposed secrets, suspicious data access, privilege escalation).

    • Run tabletops with IT and Infrastructure; lead post-incident reviews and drive corrective actions with clear owners and timelines.

  • Vulnerability & Configuration Management

    • Improve signal quality, deduplication, ownership routing, and SLAs for findings across services and environments.

    • Partner with Infrastructure on remediation plans, patching objectives, baseline configurations, account/landing-zone structure, and segmentation.

  • Documentation & Education

    • Maintain standards, runbooks, and quick-start guides that improve onboarding and day-to-day productivity.

    • Lead reviews that balance near-term risk reduction with long-term architectural goals.

Minimum Qualifications

  • Bachelor’s degree or equivalent practical experience.

  • 3+ years in security engineering or networking or a blended role across IAM, detections/monitoring, incident response, vulnerability/configuration management, and GRC.

  • Strong understanding of identity models, least privilege, and access review processes across cloud and SaaS environments.

  • Experience writing clear runbooks/playbooks and partnering with IT/Infrastructure to operationalize changes.

  • Familiarity with cloud security fundamentals, CI/CD concepts, and infrastructure-as-code principles.

  • Ability to translate risk into prioritized, incremental improvements with measurable outcomes.

Preferred Qualifications

  • Demonstrated reduction of alert noise and duplicate findings through rule tuning, routing, and suppression.

  • Proven implementation of just-in-time administrative access, break-glass pathways, and periodic access reviews.

  • Experience orchestrating incident response and delivering durable, engineering-owned remediations.

  • Hands-on alignment of operations with SOC 2/ISO 27001 and automation of evidence collection.

Average salary estimate

$157500 / YEARLY (est.)
min
max
$130000K
$185000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs

Prime Time Consulting is hiring an experienced RMF Coordinator (Skill Level 2) to manage RMF processes, coordinate risk mitigation, and support government cyber mission delivery in Annapolis Junction, MD.

Photo of the Rise User
Posted 21 hours ago

Lead enterprise Google Workspace and email systems administration while driving automation, security integrations, and cross-functional IT initiatives at Palo Alto Networks.

Photo of the Rise User
Posted 2 hours ago

Lead architecture and delivery of secure, resilient enterprise IT solutions supporting USINDOPACOM from Joint Base Pearl Harbor-Hickam to enable mission-critical command-and-control across the Pacific.

Riptide Technology seeks a Senior Systems Administrator II to provide onsite operations, maintenance, and mid-tier escalation support for Windows and RHEL-based cross-domain solutions for a government customer in Springfield, VA, requiring active TS/SCI and CI poly eligibility.

Posted 9 hours ago

An experienced Oracle EBS Analyst is required to lead a technical/functional team and drive enhancements for Financials, Procurement, and Warehousing systems in Newark.

Photo of the Rise User
Boyd Gaming Hybrid 1 Ameristar Blvd, St. Charles
Posted 22 hours ago

Provide first-level IT field engineering and on-site support for computers, networks, AV, signage, and telephony systems at Boyd Gaming's St. Charles property.

Photo of the Rise User
Posted 17 hours ago

Experienced VMware systems engineer needed to design, deploy, and maintain on-premises cloud and virtualized environments supporting critical federal missions with a required TS/SCI clearance and CI polygraph eligibility.

Trove Brands Hybrid 250 S 850 E, Lehi, UT 84043, USA
Posted 11 hours ago

Trove Brands is hiring an IT Specialist to deliver fast, professional end-user support and manage Mac-centric workstations and IT tasks at their Lehi HQ.

Photo of the Rise User
Verinext Hybrid No location specified
Posted 19 hours ago

Verinext is hiring an experienced IT Systems Engineer to manage Windows/Microsoft 365, virtualization, storage, backup, and endpoint security across multi-site operations with a mostly onsite schedule.

Photo of the Rise User
Posted 8 hours ago

Support CPHDS operations by developing user-centered Microsoft-based tools, automations, and dashboards to streamline administrative workflows and reporting for a major NYC public health data initiative.

Posted 11 hours ago

Prime Time Consulting seeks an experienced STE Level 3 to deliver advanced cybersecurity engineering, system security guidance, and compliance support for government information systems in support of DoD STE initiatives.

Observe was founded by Sutter Hill Ventures in November 2017. Our founding team came from leading Enterprise SaaS and software companies that work with vast quantities of data such as Snowflake, Splun...k and Wavefront. Our founding thesis was tha...

5 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
November 23, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!