Security & Infrastructure Engineer

janus

United States

Remote

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Janus is seeking a Security & Infrastructure Engineer to own external penetration testing and SOC 2 processes, manage identity across Microsoft 365, AWS, and third-party apps, and partner with DevOps to secure infrastructure.

The ideal candidate is a hands-on generalist across security, compliance, and cloud infrastructure, capable of drafting audit-ready policies and building scalable processes from the ground up.

Qualifications

  • 3–5 years in information security or IT security.
  • Hands-on Microsoft 365 identity and access management experience.
  • Experience configuring SSO/SAML/OIDC with SaaS apps.
  • Knowledge of NIST, CIS Controls, SOC 2.
  • Ability to document repeatable security processes.
  • Strong communication and teamwork.
  • Must be located in the United States; sponsorship not available.

Responsibilities

  • Manage Microsoft 365 identity and access, including MFA and role-based permissions.
  • Design and automate provisioning/deprovisioning across cloud and SaaS.
  • Extend coverage to application-layer vulnerabilities with development teams.
  • Own external security and penetration testing engagements end-to-end.
  • Design and implement SOC 2 compliance controls.
  • Improve AWS security posture, IAM, network security, and hardening.
  • Partner with DevOps on secure provisioning for cloud resources and CI/CD.
  • Monitor vulnerabilities and maintain security documentation and audit evidence.

Skills

Information security
Microsoft Entra ID
SSO/SAML/OIDC
Security frameworks
Security processes
Strong communicator
Startup adaptability

Tools

AWS security
Datadog
Splunk

Job description

At Janus, we believe in a world where healthcare functions efficiently. Join us in our mission to improve the lives of administrative workers and fundamentally change how work gets done. Our team is building a world-class process improvement platform to help healthcare providers generate more cash with fewer resources.
Our employees are our greatest asset, and we are passionate about creating a strong culture with deep purpose. We are entrepreneurial and focused, yet humble, empathetic, and inclusive. We value the individual and tackle problems as a team. The best idea wins, and teams celebrate together.

Summary

We are seeking a Security & Infrastructure Engineer with information security experience to help protect our systems, data, and customers. In this role, you will own our external penetration testing program and SOC 2 audit process end-to-end, building the processes and controls needed to meet security standards and maintain compliance. You will also manage identity and access across Microsoft 365, AWS, and third-party applications, strengthen AWS and end-user compute security posture, and partner closely with DevOps to secure infrastructure.

The ideal candidate is comfortable operating as a hands-on generalist across security, compliance, and cloud infrastructure, at home writing an audit-ready policy, and experienced managing identity and access management across the organization. This role is critical to improving Janus' security program and offers the opportunity to build scalable, well-documented processes from the ground up while working closely with engineering, DevOps, and leadership teams.

Responsibilities
  • Manage Microsoft 365 identity and access, including user lifecycle, conditional access policies, MFA, and role-based permissions.
  • Design and automate processes for provisioning and deprovisioning of user accounts and service accounts across cloud and SaaS environments
  • Extend coverage to application-layer vulnerabilities, working in close coordination with development teams to surface and track findings
  • Own and manage external security and penetration testing engagements end-to-end, including scoping, coordinating with vendors, tracking remediation, and validating fixes through retesting.
  • Design, document, and implement the security processes, policies, and controls required to achieve and maintain SOC 2 (and other applicable control frameworks) compliance on an ongoing basis.
  • Continuously assess and improve our AWS security posture, including IAM, network security, and configuration hardening, and build ongoing security reporting and dashboards to track risk and compliance status.
  • Partner with the DevOps team on infrastructure security and secure provisioning for cloud resources and CI/CD pipelines.
  • Monitor for vulnerabilities and emerging threats across the environment, and maintain clear documentation of security policies, procedures, and audit evidence.

Please note that this job description is not intended to be an exhaustive list of all responsibilities, expected outcomes, or qualifications associated with the role. Janus reserves the right to make changes and/or assign additional responsibilities within reason at any time, with or without notice.

Qualifications

Required

  • 3-5 years of experience in information security, IT security, or a closely related field.
  • Hands-on experience administering Microsoft 365 identity and access management, including Entra ID (Azure AD), conditional access, and MFA.
  • Experience configuring and managing SSO/SAML/OIDC integrations with third-party SaaS applications.
  • Working knowledge of security frameworks and controls (e.g., NIST, CIS Controls, SOC 2).
  • Experience building or documenting repeatable security processes and procedures.
  • Highly motivated self-starter with a strong team orientation.
  • Outstanding verbal and written communication skills.
  • Flexibility and comfort working in a dynamic, constantly evolving startup environment.
  • Commitment to contributing to a positive, collaborative culture.
  • Must be located in the United States; sponsorship is not available at this time.

Preferred

  • Experience securing AWS environments (IAM, GuardDuty, Security Hub, CloudTrail, VPC security, etc.).
  • Familiarity with DevOps practices and infrastructure-as-code
  • Networking fundamentals: DNS, VPNs, firewalls, routing basics
  • SIEM or observability platform experience (Datadog, Splunk, or similar)
  • Security certifications (CISSP, CISM, AWS Security Specialty, or CompTIA Security+)
Travel Requirements

This role may require occasional domestic travel. Travel expectations will be communicated by the department manager or executive. Janus is committed to providing as much flexibility and advance notice as possible when scheduling travel.

Physical Demands

This job operates in a professional remote or in-office environment and uses standard office equipment. The role is largely sedentary; however, employees have the flexibility to move as needed. The employee regularly operates a computer, phone, keyboard, mouse, and other office equipment and frequently communicates with internal and external stakeholders. The employee must be able to exchange accurate information in a timely manner and recognize objects at short and long distances.

Equal Opportunity Statement

Janus is an equal opportunity employer. We hire great people from a wide variety of backgrounds and appreciate our differences. We welcome the unique contributions you bring through your education, opinions, culture, ethnicity, race, ancestry, sex, gender identity and expression, national origin, citizenship, marital status, age, languages spoken, veteran status, color, religion, disability, sexual orientation, and beliefs.

We consider qualified applicants regardless of criminal history, consistent with legal requirements.

Consistent with applicable federal and state law, Janus provides reasonable accommodations when requested by qualified applicants or employees with disabilities, unless doing so would cause an undue hardship. Janus' policy regarding requests for reasonable accommodation applies to all aspects of employment, including the application process. If you require a reasonable accommodation, please contact the People team.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security & Infrastructure Engineer
Security & Infrastructure Engineer

Janus Health • United States

Remote
USD 120,000 - 180,000
Security & Cloud Infrastructure Engineer
Security & Cloud Infrastructure Engineer

janus • United States

Remote
USD 120,000 - 180,000
Security & Infrastructure Engineer — IAM, AWS & SOC 2
Security & Infrastructure Engineer — IAM, AWS & SOC 2

Janus Health • United States

Remote
USD 120,000 - 180,000
Cybersecurity Engineer
Cybersecurity Engineer

Cape Henry Associates, Acquired by JANUS Research Group • Austin (TX)

On-site
USD 120,000 - 145,000
Cybersecurity Engineer
Cybersecurity Engineer

JANUS Research Group • Austin (TX)

On-site
USD 120,000 - 145,000
Health and welfare plans
Referral bonus program
Great Place to Work certification
Microsoft 365 Administrator and Security Analyst
Microsoft 365 Administrator and Security Analyst

Journeyteam • Draper (UT)

On-site
USD 65,000 - 90,000
Healthcare & dental coverage
401(k) with employer match
Flexible time off
+3
Business Analyst
Business Analyst

Remote Jobs • Dallas (TX)

On-site
USD 65,000 - 95,000
Enterprise Security Engineer
Enterprise Security Engineer

Jenzabar1 • United States

On-site
USD 83,000 - 95,000
Medical Insurance
Life Insurance
Dental Insurance
+8
Business Analyst
Business Analyst

janus • Dallas (TX)

Hybrid
USD 70,000 - 90,000
Equal opportunity employer
Remote or in-office work flexibility
Domestic travel as needed
Cybersecurity Engineer
Cybersecurity Engineer

cape-henry • Austin (TX)

On-site
USD 120,000 - 145,000
Great Place to Work
Referral bonus program