Security Engineer

AGS LLC

Atlanta (GA)

On-site

USD 110,000 - 150,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

AGS LLC in Atlanta, GA is seeking a Security Engineer to own secure configuration, hardening, and ongoing operation of the security control set protecting critical systems. You will ensure documented security policy and standards match what is deployed and remediate drift across Windows, Linux, and cloud environments.

This hands-on role collaborates with Infrastructure, Network, and Business Systems teams, uses PowerShell and KQL to automate tasks, and supports audits and incident response.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, IT, or equivalent.
  • At least 3 years of experience in security or systems engineering with security responsibilities.
  • Hands-on experience hardening Windows and Linux to recognized baselines.
  • Experience administering enterprise security tools (EDR/XDR, email security, access control).
  • Experience reconciling policy with live configurations and closing gaps.
  • Experience in hybrid on-premise and cloud environments.
  • Familiarity with NIST, CIS, ISO 27001; translate to technical configuration.
  • Ability to balance strong security controls with user experience.
  • Relevant certifications (CompTIA Security+, CySA+, SSCP, GSEC) preferred.

Responsibilities

  • Lead system and platform hardening across servers, endpoints, network devices, and cloud services using baselines.
  • Validate that configurations align to policy and technical standards, and remediate deviations.
  • Identify, document, and remediate misconfigurations across infrastructure, identity, and tooling.
  • Implement and monitor configuration drift detection and drive corrective action where baselines have decayed.
  • Enforce endpoint baseline hardening and device compliance policies through enterprise endpoint management tooling.
  • Operate security platforms including endpoint protection, email security, and access control tooling.
  • Maintain security tooling coverage and health, and resolve gaps in agent deployment or policy application.
  • Support vulnerability remediation by implementing patches, configuration changes, and compensating controls.
  • Implement changes required to keep the environment aligned with evolving industry standards and vendor guidance.
  • Implement and maintain security controls for hybrid environments combining on-premises and cloud-based systems.
  • Use scripting and automation (PowerShell, KQL, Graph API) to reduce manual configuration work and enforce consistency.
  • Maintain accurate technical documentation for configuration standards, operational procedures, and control implementation.
  • Partner with systems, network, database, and application teams to implement security requirements with minimal disruption.
  • Provide technical evidence supporting internal and external audit, certification, and regulatory assessment activities.
  • Participate in the incident response lifecycle as assigned, including containment, eradication, and recovery support.
  • Balance security requirements with user experience needs to maintain productivity alongside a strong security posture.

Skills

Secure config
Endpoint management
Security tooling
Configuration drift remediation
Patch & vulnerability
Hybrid infrastructure
Scripting automation
Documentation discipline
Audit support
Travel flexibility

Education

Bachelor's Degree in Computer Science, Information Security, IT, or equivalent

Tools

EDR/XDR
Email security
Access control tools

Job description

Position Title: Security Engineer

Description
Job Overview

The Security Engineer is responsible for the secure configuration, hardening, and ongoing operation of the AGS security control set and the systems those controls protect. The role ensures that documented security policy and technical standards match what is actually configured in the environment, identifies and remediates configuration drift and misconfiguration, and keeps the technical estate aligned to current industry baselines as they evolve. This is a hands-on engineering role focused on sustained operational quality, taking ownership of the platforms and standards the security team implements and keeping them healthy, current, and effective over time. The role receives technical direction from the Senior Security Engineer and partners closely with Infrastructure, Network, Enterprise Apps, and Business Systems teams.

Responsibilities
  • Lead system and platform hardening across servers, endpoints, network devices, and cloud services using recognized configuration baselines such as CIS Benchmarks and vendor security baselines.
  • Validate that logical configuration across the environment aligns to documented security policy and technical standards, and remediate deviations.
  • Identify, document, and remediate misconfigurations across infrastructure, identity, and security tooling.
  • Implement and monitor configuration drift detection and drive corrective action where baselines have decayed.
  • Enforce endpoint baseline hardening and device compliance policies through enterprise endpoint management tooling.
  • Operationalize device control, application control, and disk encryption policies.
  • Administer day-to-day operation, tuning, and lifecycle maintenance of enterprise security platforms, including endpoint protection, email security, and access control tooling.
  • Maintain security tooling coverage and health, and resolve gaps in agent deployment or policy application.
  • Support vulnerability remediation by implementing patches, configuration changes, and compensating controls in coordination with IT operations.
  • Implement changes required to keep the environment aligned with evolving industry standards, vendor guidance, and control framework updates.
  • Implement and maintain security controls for hybrid environments combining on-premises infrastructure and cloud-based systems.
  • Use scripting and automation (PowerShell, KQL, Graph API) to reduce manual configuration work and enforce consistency.
  • Maintain accurate technical documentation for configuration standards, operational procedures, and control implementation.
  • Partner with systems, network, database, and application teams to implement security requirements without unnecessary disruption to operations.
  • Provide technical evidence supporting internal and external audit, certification, and regulatory assessment activities.
  • Participate in the incident response lifecycle as assigned, including containment, eradication, and recovery support.
  • Balance security requirements with user experience needs to maintain productivity alongside a strong security posture.
  • Occasional travel throughout the United States.
Qualifications
  • Secure configuration and hardening: CIS Benchmarks, DISA STIGs, or vendor security baselines across Windows and Linux systems.
  • Endpoint management and compliance: MDM/MAM tooling, compliance policies, security baselines, device and application control.
  • Enterprise security platform administration: endpoint protection (EDR/XDR), email security, access control tooling.
  • Configuration drift detection and remediation, and reconciling documented policy against live configuration.
  • Patch and vulnerability remediation execution, including compensating control design.
  • Hybrid infrastructure fundamentals: virtualization, enterprise directory services, and cloud service configuration.
  • Scripting and automation (PowerShell, KQL, Graph API); configuration management or infrastructure-as-code preferred.
  • Working understanding of network segmentation and access control concepts.
  • Strong documentation discipline and attention to detail.
Skills/Requirements
  • Bachelor's Degree in Computer Science, Information Security, Information Technology, or equivalent work experience.
  • At least 3 years of experience in security engineering, systems engineering, or infrastructure operations with meaningful security responsibility.
  • Demonstrated hands-on experience hardening Windows and Linux systems against recognized configuration baselines.
  • Practical experience administering enterprise security tooling such as endpoint protection, email security, or access control platforms.
  • Experience reconciling documented policy against live system configuration and closing the resulting differences.
  • Experience working in hybrid environments with a mix of on-premises and cloud-based systems.
  • Familiarity with industry frameworks (NIST, CIS, ISO 27001) and how framework requirements translate into technical configuration.
  • Demonstrated ability to balance robust security controls with positive user experience and business enablement.
  • Relevant technical certifications required or strongly preferred: CompTIA Security+, CySA+, SSCP, GSEC, or equivalent.
Preferred Certification
  • Professional technical certifications such as CompTIA Security+, CySA+, CEH, SSCP, or GSEC, with demonstrated progression toward a senior-level technical certification. Platform-specific certifications are considered supplemental to demonstrated hands-on capability.

Note: All offers are contingent upon successful completion of a background check

AGS is an equal opportunity employer

Equal Opportunity Employer, including disability/protected veterans

Equal employment opportunity, including veterans and individuals with disabilities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

AGS - American Gaming Systems • Atlanta (GA)

On-site
USD 100,000 - 150,000
Security Engineer
Security Engineer

AGS LLC • Duluth (GA)

On-site
USD 110,000 - 140,000
Security Engineer
Security Engineer

Talentify • Duluth (GA)

On-site
USD 110,000 - 140,000
Senior Security Engineer
Senior Security Engineer

AGS LLC • Duluth (GA)

On-site
USD 120,000 - 180,000
Senior Security Engineer
Senior Security Engineer

AGS LLC • Atlanta (GA)

Hybrid
USD 110,000 - 170,000
Senior Security Engineer
Senior Security Engineer

Talentify • Duluth (GA)

On-site
USD 120,000 - 180,000
Senior Security Engineer
Senior Security Engineer

AGS - American Gaming Systems • Atlanta (GA)

On-site
USD 120,000 - 180,000
Security Analyst
Security Analyst

Koitecc Solutions • Atlanta (GA), Northern (KY)

Hybrid
USD 90,000 - 125,000
Senior Security Engineer
Senior Security Engineer

Koitecc Solutions • Duluth (GA)

On-site
USD 120,000 - 180,000
Security Engineer
Security Engineer

Jobvite, Inc. • Duluth (GA)

On-site
USD 120,000 - 210,000