ForgeApply
Try it free

ForgeApply · Job listing

Information Security Engineer

Mariner

Remote · US$115k – $145k

See all 46 open roles at Mariner

Tailor your resume for this Mariner job in about a minute.

ForgeApply rewrites your resume for this exact posting, then autofills the application on Mariner's site with it. You review everything before it's sent. Free trial, no card required.

About this role

INFORMATION SECURITY ENGINEER

Mariner is seeking a hands-on Security Engineer to join our Security Engineering & Architecture team. In this role, you will report to the VP of Security Engineering & Architecture and be responsible for implementing, configuring, and operating security controls that safeguard our network, infrastructure, cloud, applications, and integration services. You’ll work within established reference architectures and secure-default standards informed by zero trust principles and aligned to NIST CSF and CIS Controls.

As a Security Engineer, you’ll be instrumental in building and maintaining the guardrails and observability systems that protect client assets and sensitive information. You’ll also play a key role in onboarding and securing new environments as we integrate numerous acquisitions each year. Collaborating closely with senior engineers, infrastructure teams, and Governance, Risk & Compliance (GRC), you’ll translate standards and control requirements into effective configurations, automation, and enforceable controls. If you thrive on solving technical security challenges, automating routine tasks, and embedding security into enterprise platforms, this position offers significant, hands-on impact.

RESPONSIBILITIES

- Implement Secure-Default Controls: Design, deploy, and maintain security controls across the network, infrastructure, hybrid cloud environments (AWS and Azure), application delivery, and integration services, following architecture team standards.

- Drive Zero Trust Adoption: Apply zero trust access models, including verification of identity, device state, and request context, when onboarding new and acquired environments. Grant access by identity rather than network trust.

- Develop Controls as Code: Build and maintain policies, infrastructure modules, and automation scripts (PowerShell, Python, Terraform, or equivalent) to deliver preventive controls by default. Tune control rigor according to data sensitivity.

- Enhance Observability & Monitoring: Configure and operate telemetry for asset and configuration visibility, access activity monitoring, and exposure management. Ensure new environments achieve visibility upon integration, and support detection and remediation through data layer partnerships.

- Reduce Exposure & Remediate Findings: Implement compensating controls (segmentation, access restriction, virtual patching, egress control, feature disablement, credential-scope reduction, enhanced monitoring) and remediate findings swiftly, following architecture team guidance.

- Manage Findings at Scale: Use fleet-wide tools to address high volumes of findings, migrate off-standard legacy and acquired systems to standardized builds, and provide evidence for validation and closure.

- Support Risk Quantification: Provide GRC with key environment data—such as asset criticality, data classification, exposure state, and dependency mapping—and automate risk scoring to ensure current, consistent risk information.

- Assist Acquisition Integration: Execute repeatable onboarding, migration, and decommissioning processes to bring acquired firms onto standardized environments using identity-based integration patterns.

QUALIFICATIONS

- Bachelor’s degree in Computer Science, Information Security, or equivalent practical experience.

- 4–8 years of hands-on experience in security engineering, systems/network engineering with a security focus, or a similar technical area.

- Solid experience implementing and operating security controls in hybrid cloud environments (AWS and/or Azure), including network, infrastructure, or application delivery.

- Hands-on experience with identity and access management (Okta, Entra ID, MFA, privileged access), with the ability to configure identity as a primary security control.

- Proficiency in automation and scripting (PowerShell, Python, Terraform, or equivalent), plus experience in CI/CD, infrastructure-as-code, or policy-as-code toolchains.

- Working knowledge of NIST CSF, CIS Controls, and defense-in-depth; ability to apply these as practical engineering guidance.

- Proven vulnerability management and remediation experience (CVSS, EPSS, CISA KEV), including prioritizing findings and implementing fixes or compensating controls.

- Strong collaboration skills across engineering, infrastructure, and GRC to implement controls and resolve findings.

PREFERRED QUALIFICATIONS

- Security certifications (Security+, SSCP, AWS Security Specialty, Microsoft SC-200/AZ-500, or progress toward CISSP).

- Experience in regulated industries with audit/examination involvement; financial industry background and Reg S-P familiarity are a plus.

- Experience supporting high-volume acquisition integration.

- Exposure to securing AI or agentic systems (workload identity, tool authorization, data boundaries).

- Demonstrated ability to deliver security capabilities through automation over manual processes.

If you are passionate about security engineering and ready to make an immediate impact within a dynamic, acquisition-driven environment, we encourage you to apply!

We welcome your interest in being a part of our firm. We believe in giving associates progressive opportunities, actively nurturing professional growth and giving back to the community. We are dedicated to building a diverse culture where everyone has the support they need to achieve their career goals. We offer an innovative workplace and a culture that fosters camaraderie, teamwork and work-life balance.

By submitting your application, you agree to the collection and use of your personal information as described in our Employee and Applicant Privacy Notice https://www.marinerwealthadvisors.com/mariner-employee-applicant-privacy-notice/.

EOE M/F/D/V

Tailor your resume for this Mariner role before you apply.

Tailor my resume for this job

Similar jobs

More like this: Security & Cybersecurity Jobs · Remote Security & Cybersecurity Jobs · Browse all jobs

Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)