Security Engineer

AGS - American Gaming Systems

Atlanta (GA)

On-site

USD 110,000 - 150,000

Full time

43 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

AGS - American Gaming Systems is seeking a Security Engineer responsible for the secure configuration, hardening, and operation of security controls across on‑prem and cloud environments. You will ensure policy and standards match deployed configurations and drive drift remediation in a hands‑on role.

You will lead platform hardening, manage endpoint protection, email security, access control tooling, and collaborate with IT operations. Occasional travel across the United States is expected.

Qualifications

  • Bachelor's degree or equivalent experience in computer science, information security, or IT.
  • At least 3 years of security engineering, systems engineering, or infrastructure operations with security responsibility.
  • Hands-on experience hardening Windows and Linux against baselines.
  • Experience with enterprise security tooling such as endpoint protection, email security, or access control.
  • Experience reconciling policy with live configurations in hybrid environments.
  • Familiarity with NIST, CIS, ISO 27001 frameworks and translating them to technical controls.
  • Certifications such as CompTIA Security+, CySA+, SSCP, or GSEC preferred.

Responsibilities

  • Lead system and platform hardening across servers, endpoints, network devices, and cloud services.
  • Validate configuration drift against security policy and remediate deviations.
  • Identify and remediate misconfigurations across infrastructure and tooling.
  • Implement drift detection and enforce corrective action.
  • Enforce endpoint baseline hardening and device compliance policies.
  • Administer security platforms including EDR/XDR, email security, and access controls.
  • Provide technical evidence for audits, certification, and regulatory assessments.

Skills

Security hardening
Configuration management
Scripting automation
Hybrid cloud security
Documentation discipline
Vulnerability remediation

Education

Bachelor's degree in Computer Science / Information Security / IT or equivalent

Tools

MDM/MAM tooling
Endpoint protection tooling
Email security tooling
Access control platforms
Cloud service configuration

Job description

The Security Engineer is responsible for the secure configuration, hardening, and ongoing operation of the AGS security control set and the systems those controls protect. The role ensures that documented security policy and technical standards match what is actually configured in the environment, identifies and remediates configuration drift and misconfiguration, and keeps the technical estate aligned to current industry baselines as they evolve. This is a hands‑on engineering role focused on sustained operational quality, taking ownership of the platforms and standards the security team implements and keeping them healthy, current, and effective over time. The role receives technical direction from the Senior Security Engineer and partners closely with Infrastructure, Network, Enterprise Apps, and Business Systems teams.

Responsibilities
  • Lead system and platform hardening across servers, endpoints, network devices, and cloud services using recognized configuration baselines such as CIS Benchmarks and vendor security baselines.
  • Validate that logical configuration across the environment aligns to documented security policy and technical standards, and remediate deviations.
  • Identify, document, and remediate misconfigurations across infrastructure, identity, and security tooling.
  • Implement and monitor configuration drift detection and drive corrective action where baselines have decayed.
  • Enforce endpoint baseline hardening and device compliance policies through enterprise endpoint management tooling.
  • Operationalize device control, application control, and disk encryption policies.
  • Administer day‑to‑day operation, tuning, and lifecycle maintenance of enterprise security platforms, including endpoint protection, email security, and access control tooling.
  • Maintain security tooling coverage and health, and resolve gaps in agent deployment or policy application.
  • Support vulnerability remediation by implementing patches, configuration changes, and compensating controls in coordination with IT operations.
  • Implement changes required to keep the environment aligned with evolving industry standards, vendor guidance, and control framework updates.
  • Implement and maintain security controls for hybrid environments combining on‑premises infrastructure and cloud‑based systems.
  • Use scripting and automation (PowerShell, KQL, Graph API) to reduce manual configuration work and enforce consistency.
  • Maintain accurate technical documentation for configuration standards, operational procedures, and control implementation.
  • Partner with systems, network, database, and application teams to implement security requirements without unnecessary disruption to operations.
  • Provide technical evidence supporting internal and external audit, certification, and regulatory assessment activities.
  • Participate in the incident response lifecycle as assigned, including containment, eradication, and recovery support.
  • Balance security requirements with user experience needs to maintain productivity alongside a strong security posture.
  • Occasional travel throughout the United States.
Qualifications
  • Secure configuration and hardening: CIS Benchmarks, DISA STIGs, or vendor security baselines across Windows and Linux systems.
  • Endpoint management and compliance: MDM/MAM tooling, compliance policies, security baselines, device and application control.
  • Enterprise security platform administration: endpoint protection (EDR/XDR), email security, access control tooling.
  • Configuration drift detection and remediation, and reconciling documented policy against live configuration.
  • Patch and vulnerability remediation execution, including compensating control design.
  • Hybrid infrastructure fundamentals: virtualization, enterprise directory services, and cloud service configuration.
  • Scripting and automation (PowerShell, KQL, Graph API); configuration management or infrastructure‑as‑code preferred.
  • Working understanding of network segmentation and access control concepts.
  • Strong documentation discipline and attention to detail.
Skills/Requirements
  • Bachelor's Degree in Computer Science, Information Security, Information Technology, or equivalent work experience.
  • At least 3 years of experience in security engineering, systems engineering, or infrastructure operations with meaningful security responsibility.
  • Demonstrated hands‑on experience hardening Windows and Linux systems against recognized configuration baselines.
  • Practical experience administering enterprise security tooling such as endpoint protection, email security, or access control platforms.
  • Experience reconciling documented policy against live system configuration and closing the resulting differences.
  • Experience working in hybrid environments with a mix of on‑premises and cloud‑based systems.
  • Familiarity with industry frameworks (NIST, CIS, ISO 27001) and how framework requirements translate into technical configuration.
  • Demonstrated ability to balance robust security controls with positive user experience and business enablement.
  • Relevant technical certifications required or strongly preferred: CompTIA Security+, CySA+, SSCP, GSEC, or equivalent.
Preferred Certification
  • Professional technical certifications such as CompTIA Security+, CySA+, CEH, SSCP, or GSEC, with demonstrated progression toward a senior‑level technical certification. Platform‑specific certifications are considered supplemental to demonstrated hands‑on capability.
Note: All offers are contingent upon successful completion of a background check
*Posted positions are not open to third party recruiters and unsolicited resume submissions will be considered free referrals.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

AGS - American Gaming Systems • Atlanta (GA)

On-site
USD 120,000 - 180,000
Security Analyst
Security Analyst

AGS - American Gaming Systems • Atlanta (GA)

On-site
USD 70,000 - 110,000
Security Engineer
Security Engineer

Phoenix Staff, Inc. • Tempe (AZ)

On-site
USD 85,000 - 110,000
Security Engineer
Security Engineer

Gravity IT Resources • Salt Lake City (UT)

On-site
USD 120,000 - 160,000
Security Engineer: Platform Hardening & Automation
Security Engineer: Platform Hardening & Automation

AGS - American Gaming Systems • Atlanta (GA)

On-site
USD 110,000 - 150,000
Information Security Engineer
Information Security Engineer

eTrepid • Mechanicsville (MD)

On-site
USD 90,000 - 130,000
Security Engineer
Security Engineer

RouteOne • Farmington Hills (MI)

On-site
USD 85,000 - 115,000
Security Engineer
Security Engineer

SentriLock • Olde West Chester (OH)

On-site
USD 110,000 - 160,000
Security Engineer
Security Engineer

GlobalXperts • Reston (VA)

On-site
USD 70,000 - 100,000
Information Security Engineer II
Information Security Engineer II

Jobtailor • Little Rock (AR)

On-site
USD 90,000 - 130,000