Simplex

Remote Information Security Engineer (Contract)

Simplex Austin, Texas, United States · $125K–$156K/yr

IT Services and IT Consulting · 1 employee

Yesterday
Remote security Senior (5-10 yrs) Contractor United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The engineer will develop and maintain threat detections across cloud and container environments while managing incident response and security telemetry platforms. They will also partner with compliance teams to support HITRUST and SOC 2 initiatives through robust security control implementation.

What they look for

Cloud Security AWS Threat Detection Incident Response SIEM EDR Vulnerability Management Secrets Management Security Automation Zero Trust Compliance HITRUST SOC 2 Authentication Protocols Forensics Network Security

Requirements

Candidates must have at least 3 years of hands-on AWS cloud security experience and a strong background in threat detection and incident response. A bachelor's degree in a related field or equivalent experience is required, along with knowledge of cybersecurity frameworks like NIST and HITRUST.

Full description

Information Security Engineer (Contract)

Location: 100% Remote based anywhere in the US

Type: Short-term W2 contract, about 8 weeks, with potential for extensionPay Rate: $60–75/hr

About the Role

Our client, a growing healthcare technology company, is seeking a senior Information Security Engineer for a short-term contract engagement. The company operates in a highly regulated environment: it is HIPAA compliant, is pursuing HITRUST certification, has SOC 2 in progress, and may pursue FedRAMP/GovRAMP. A strong security foundation is already in place. This role will maintain and evolve that posture by strengthening detection, operations, incident response, cloud security, and secure development practices.

This is a hands-on role for an experienced professional who can make an impact from day one. You'll partner closely with Infrastructure, Engineering, Product, Privacy, Compliance, Legal, and senior leadership in a fast-paced, collaborative environment.

What You'll Do

  • Develop, tune, and maintain threat detections across cloud, endpoint, network, application, and container environments.
  • Investigate, prioritize, and resolve security alerts, and initiate and coordinate incident response when appropriate.
  • Scope, contain, eradicate, and document security incidents, including root-cause analysis, forensics, postmortems, and lessons learned.
  • Deploy and support security telemetry and response platforms, including SIEM, EDR, NDR, MDR, threat intelligence, and SOAR tools.
  • Design and implement security controls across cloud, network, and application layers.
  • Improve vulnerability management, vulnerability scanning, secrets management, patching, and security-control maintenance.
  • Apply an AI-first mindset to security automation and threat detection.
  • Partner with Privacy and Compliance to document and monitor security practices in support of HITRUST, SOC 2, and other compliance initiatives.

What You Bring

  • Senior-level security experience. You can jump in immediately and work independently with minimal ramp-up.
  • 3+ years of hands-on cloud security experience. AWS is required.
  • Experience with SIEM, EDR, MDR, vulnerability scanning, secrets management, and security-automation tools.
  • Strong knowledge of vulnerabilities, exploits, threat detection, and incident-response techniques.
  • Understanding of authentication protocols and frameworks such as OAuth, SSO/SAML, and OpenID Connect.
  • Experience with Zero Trust architectures.
  • Knowledge of cybersecurity frameworks, including HITRUST, NIST, and ISO.
  • Strong communication skills and the ability to influence cross-functional teams.
  • Ability to manage multiple priorities and see work through to completion.
  • Bachelor's degree in Computer Science, Cybersecurity, or a related field, or equivalent experience.

Nice to Have

  • Experience with CrowdStrike, Okta, KnowBe4, Datadog, GuardDuty, CloudWatch/CloudTrail, Trusted Advisor, WAF and firewall configuration, Jamf, and Island.io enterprise browser.
  • Certifications such as CISSP, AWS Security Specialty, AWS Cloud Practitioner, CompTIA Network+, SC-900, or AZ-900, or equivalent experience.

Success in This RoleSuccess means improving our client's ability to prevent, detect, investigate, and respond to threats, while making secure development practices easier for engineering teams to adopt.

#ZR

Similar roles