Devoteam Cyber Trust | IT Security & Compliance Engineer | Software Engineering & Digital Product Development
We are seeking an IT Security & Compliance Engineer to manage our identity lifecycle, threat monitoring, and daily audit compliance activities. You will sit at the intersection of security operations and governance, ensuring our endpoints, cloud accounts, and access controls strictly adhere to SOC 2 Type 2 and ISO 27001 standards.
Key Responsibilities
Identity Operations & Endpoint Security: Manage user access lifecycles, enterprise credential tools, and apply security policies across all endpoints.
SecOps & Threat Management: Oversee L1/L2 security operations, triage incoming vulnerabilities, and maintain continuous security monitoring.
Daily Compliance & Audit Evidence: Collect, organize, and validate daily audit evidence to satisfy SOC 2 Type 2 and ISO 27001 compliance frameworks.
Cloud & Pipeline Monitoring: Monitor AWS native security tooling and support code/container scanning integrations.
Communication Gateway Protection: Administer email protection tools and compliance automation platforms.
Tech Stack & Tools
Access & Device Management: Microsoft Entra ID (Azure AD), Intune MDM, Credential Managers
Cloud Security (AWS): GuardDuty, Security Hub, Inspector, IAM Identity Center, KMS
Code & Container Security: GitHub Advanced Security, Snyk, Amazon ECR
Email Protection & Compliance: Mimecast, Automated Compliance Platforms (e.g., Drata, Vanta)
Requirements & Qualifications
3 to 5+ years of hands-on experience in IT Security, Compliance Engineering, or SecOps roles.
Demonstrated expertise in managing Microsoft Entra ID and Intune MDM policies.
Proven experience in daily evidence collection and audit management for SOC 2 Type 2 and ISO 27001.
Solid understanding of L1/L2 SecOps, incident response, and vulnerability triage.
Direct experience with AWS security tools (GuardDuty, Security Hub, Inspector) and code/container scanners (Snyk, ECR).
The Devoteam Group works for equal opportunities, promoting its employees based on merit and actively fights against all forms of discrimination. We are convinced that diversity contributes to the creativity, dynamism and excellence of our organization. All of our vacancies are open to people with disabilities.
Join us in our mission to safeguard our clients' critical digital assets by applying deep technical expertise to their most strategic projects.
Apply now to become a key technical leader in this pivotal engagement and make a tangible impact as a key member of our Cybersecurity Engineering Professional Services team!