waypointjobs

Amynta Group

Security Engineer / Architect

Remote — United States (see country and timezone requirements)

Check who can apply and the requirements below before continuing.

Job description

We’re thrilled that you are interested in joining us here at the Amynta Group!

About the Role

Amynta is seeking a skilled Security Engineer / Architect to join our infrastructure team. This role is focused on strengthening the security of our systems, applications, and infrastructure as we navigate ever-changing threats in today's environment. In this position, you will partner with IT Security, Application Development, and engineering teams to implement and maintain security controls throughout our environment.Key Responsibilities

Cloud Security

Implement and enforce security controls in cloud environments (AWS, Azure, and/or GCP).

Review and harden cloud configurations, governance, IAM policies, and resource permissions.

Monitor cloud environments using CSPM tools and respond to misconfigurations and alerts.

Support secure architecture design for cloud-native and hybrid workloads.

Network Security

Provide oversight and architectural guidance for firewalls, IDS/IPS systems, VPNs, and network segmentation controls.

Review and approve firewall rules, network policies, and security device configurations to ensure alignment with security standards.

Conduct regular vulnerability assessments on network infrastructure and oversee remediation by relevant teams.

Define and enforce network access control policies and zero-trust principles across the organization.

Application Security

Champion and enforce secure development practices, ensuring development teams adhere to security principles throughout the SDLC.

Define and maintain application security standards, policies, and guidelines for development teams to follow.

Conduct periodic application security assessments and coordinate with teams on risk prioritization.

Infrastructure Security

Primary owner for execution of infrastructure remediation workstreams (patching/hardening/logging changes) and maintaining delivery cadence.

Own the external-facing findings workflow end-to-end (triage → ticketing → change control → validation) under Infrastructure leadership working with IT Security team.

Harden on-premises servers, endpoints, and critical services (e.g., Active Directory, Exchange, DNS).

Track the existing patch management processes and ensure we are compliant.

Evaluate security control around AI usage.

Oversee data and SQL security practices, ensuring proper access controls, query validation, and protection against injection attacks and unauthorized data exposure.

Build/maintain infra security standards/runbooks for Infrastructure teams and ensure ongoing compliance.

Qualifications

Required

3–5 years of experience in an information security or security engineering role.

Hands-on experience with network security tools (firewalls, IDS/IPS, VPN, network monitoring).

Familiarity with application security practices, OWASP Top 10, and common vulnerability types.

Experience securing cloud environments in AWS, Azure, or GCP.

Working knowledge of Windows and Linux system hardening and administration.

Experience with SIEM platforms and log analysis (e.g., Splunk, Microsoft Sentinel, Elastic).

Strong understanding of authentication protocols, TLS/SSL, PKI, and access management.

Ability to communicate security risks clearly to both technical and non-technical audiences.

Preferred

Relevant certifications such as Security+, CEH, OSCP, AWS Security Specialty, or CISSP (Associate).

Experience with DevSecOps and embedding security into CI/CD pipelines.

Familiarity with compliance frameworks such as NIST CSF, ISO 27001, SOC 2, or CIS Benchmarks.

Scripting or automation skills in Python, PowerShell, or Bash.

Experience with endpoint detection and response (EDR) tools.

Compensation Range: $110,000 - $145,000 and will depend on several factors including relevant experience, skills and knowledge pertaining to this role and industry.

The Amynta Group (the “Company”) is committed to a policy of Equal Employment Opportunity and will not discriminate against an applicant or employee on the basis of any ground of discrimination protected by applicable human rights legislation. The information collected is solely used to determine suitability for employment, verify identity and maintain employment statistics on applicants.

Applicants with disabilities may be entitled to reasonable accommodation throughout the recruitment process in accordance with applicable human rights and accessibility legislation. A reasonable accommodation is an adjustment to processes, procedures, methods of conveying information and/or the physical environment, which may include the provision of additional support, in order to remove barriers a candidate may face during recruitment such that each candidate has an equal employment opportunity. The Company will accommodate a candidate to the point of undue hardship. Please inform the Company's personnel representative if you require any accommodation in the application process.

Originally posted on Himalayas

Who can apply

Eligible countries: United States. Accepted UTC offsets: UTC-10, UTC-9, UTC-8, UTC-7, UTC-6, UTC-5, UTC+14. Review the full description for employer-specific work authorization, residency and schedule requirements.

Ready for your next step?Apply on the official website
Apply on Himalayas ↗

Explore related searches

Current related jobs

infisical

Jobicy

Senior Full Stack Engineer

Remote — Brazil, Canada, Europe, USA

Salary not specifiedRemote

Infisical is the open source security infrastructure platform that engineers use for secrets management, certificates, and privileged access mana…

Listing review due 2026-10-07View job

Spotify

Jobicy

Data Scientist - Music Mission

Remote — USA

Salary not specifiedRemote

The Music Mission enables music creators to grow, engage, and monetize their fan bases on Spotify. Central to the Music Mission's vision is the d…

Listing review due 2026-10-07View job

Spotify

Jobicy

Data Scientist - Music Promotion

Remote — USA

Salary not specifiedRemote

The Music Mission enables Music creators to grow, engage & monetize their fan bases on Spotify. Central to the Music Mission's vision is the deve…

Listing review due 2026-10-07View job

infisical

Jobicy

Strategic Finance

Remote — Canada, USA

Salary not specifiedRemote

Infisical is the open source security infrastructure platform that engineers use for secrets management, certificates, and privileged access mana…

Listing review due 2026-10-07View job