Information Security Engineer - Atlanta - Brightwell

    Brightwell
    Brightwell Atlanta

    1 week ago

    Description

    Overview

    Brightwell is a pioneering payments company dedicated to providing innovative solutions and technology for global money transfers while navigating the intricate landscape of regulatory requirements. Through strategic partnerships and technological advancements, Brightwell facilitates cross-border payments, offering a range of options including bank transfers, mobile wallets, and cash transactions, empowering businesses and individuals to seamlessly manage and move money worldwide.

    Who We Need

    We're searching for a senior Information Security Engineer to play a key role in our security and compliance programs. You'll balance hands-on security engineering with compliance program management, working closely with our Chief Compliance Officer and General Counsel on risk decisions and audit matters.

    You'll lead SOC2 Type II and PCI DSS program execution (~50% of your time) while conducting security assessments, penetration testing, and vulnerability management across our applications and Azure infrastructure (~50% of your time). You should be the security subject matter expert who can independently drive programs while partnering with our CCO on compliance strategy.

    This role is perfect for a seasoned security professional who thrives at balancing compliance rigor with hands-on security work. You'll write control narratives for auditors in the morning and pentest APIs in the afternoon. Reporting to the VP of Engineering within IT Operations, you'll have direct access to our Chief Compliance Officer and General Counsel for compliance matters and risk decisions.

    This is a HYBRID position based in Atlanta, GA. Candidates will be expected in the office a minimum of two days per week.

    What You'll Do

    SOC2 & PCI Compliance Programs (~50%)

    • Own SOC2 Type II program execution, including control design, audit preparation, and evidence collection in partnership with our Chief Compliance Officer
    • Develop and maintain information security policies, procedures, and control narratives aligned with SOC2 Trust Services Criteria and PCI DSS requirements
    • Lead risk assessments and security audits, ensuring documentation meets industry and regulatory requirements
    • Create and maintain technical documentation (network diagrams, system architecture, data flows) and conduct internal control testing
    • Serve as primary technical liaison with external auditors and manage PCI vulnerability scans and penetration testing

    Application & Infrastructure Security (~50%)

    • Conduct threat modeling, security assessments, and penetration testing of Azure-based applications and APIs, including code reviews focused on authentication, authorization, and data protection
    • Review, validate, and design security controls across Azure infrastructure, including Network Security Groups, firewalls, Azure AD/Entra ID, and Key Vault
    • Manage and optimize security tools (endpoint protection, SIEM, vulnerability scanners, automated testing platforms) and coordinate continuous vulnerability scanning and remediation with development and infrastructure teams
    • Investigate and respond to security incidents with root cause analysis and implement preventive measures
    • Partner with DevOps to integrate security into CI/CD pipelines
    • Evaluate and implement new security and automation technologies
    • Provide security training and guidance to promote a strong security culture

    As an Information Security Engineer, you have

    • Bachelor\'s degree in Information Security, Computer Science, or related field (or equivalent experience)
    • 7+ years of hands-on information security experience, preferably in financial services or highly regulated environments
    • Proven experience managing SOC2 Type II and PCI DSS compliance programs, including control design, policy development, and audit coordination
    • Strong technical skills in penetration testing, vulnerability assessments, and security code reviews
    • Experience with Azure security (Network Security Groups, Azure AD, Key Vault, Security Center) and security tooling (SIEM, vulnerability scanners, endpoint protection)
    • Experience investigating and responding to security incidents with strong analytical and problem-solving skills
    • Excellent communication skills with the ability to explain technical security concepts to both technical and non-technical stakeholders
    • Proven ability to work independently as a security subject matter expert
    • Security certifications (CISSP, OSCP, CEH, GIAC, or Azure Security) are preferred but not required

    What We're Offering in Return

    • Empowered Work: Own your work and grow your career with real autonomy and impact
    • Hybrid Flexibility: 3 days remote, 2 days in our Atlanta office at the Battery
    • Global Impact: Join a passionate team building mission-critical tools for people around the world
    • Great Benefits: Medical, dental, vision, disability, 401(k), paid parental leave, PTO, and more
    • Supportive Environment: Thrive in a collaborative, inclusive workplace that values innovation and continuous learning

    Brightwell is an equal opportunity employer (EOE) committed to employing a diverse workforce and sustaining an inclusive culture.


    #J-18808-Ljbffr

  • Only for registered members Atlanta

    Join a Global Leader in Workforce Solutions - Net2Source Inc. who are recognized for 300% growth in the past three years and operate in 34 countries with a global team of over 5,500 employees. · Hands-on experience with CyberArk Privileged Access Security (onboarding, vaulting, J ...

  • Only for registered members Atlanta

    Cortavo is hiring a senior security engineer to design implement and scale security across internal platforms and customer environments. · This role secures on-premises data center and cloud workloads with primary focus on networking identity Microsoft 365 endpoint security and i ...

  • Only for registered members Atlanta, GA

    Cortavo is hiring a senior Security Engineer to design implement and scale security across internal platforms and customer environments. · ...

  • Only for registered members Atlanta OTHER

    Orange Business is seeking a highly motivated customer-oriented Mid-Level Network Security Engineer to join our team. · Create technically detailed reports on firewall block lists device status change management hardwaresoftware upgrades and other areas · Analyze and evaluate ano ...

  • Only for registered members Atlanta

    We're hiring a Security Engagement Engineer to partner with product, strategy, and engineering teams and ensure solutions meet security and privacy requirements from concept through delivery. · Partner with cross-functional teams to embed security and privacy requirements into in ...

  • Only for registered members Atlanta

    The Security Engineer supports cloud applications, infrastructure, platform security and related technologies within the Cyber Security organization. · ...

  • Only for registered members Atlanta

    Title - Security Engineer Location Atlanta GA Duration Full Time Description Duties include training a team and conducting penetration tests Cyber threat training will be provided to the team by the contract resource Ideal candidate will possess all of the above plus airline indu ...

  • Only for registered members Atlanta

    This individual will enable key business initiatives by partnering with cross-functional project teams and providing guidance on security and privacy requirements. · The Cybersecurity Sr. Engineer is involved with a solution from concept to completion, ensuring the architecture s ...

  • Only for registered members Atlanta

    We're partnered with a well-established organization in the Atlanta area that's investing in a full modernization of its security environment. · This is a hands-on, high-impact role for a security professional who wants ownership, influence and the opportunity to help build the f ...

  • Only for registered members Atlanta, GA

    We are looking for a Security Engineer to focus on the implementation of Tanium Security and work with all levels of management and security teams globally. · ...

  • Only for registered members Atlanta $120,000 - $145,000 (USD)

    The Security Engineer role serves as a technical engineer within one of the NuHarbor Managed Services Pods. · Maintains industry and vendor certifications required to support the Managed Services catalog. · Regularly meet with clients to drive forward engineering objectives. · ...

  • Only for registered members Atlanta Full time $88,300 - $131,400 (USD)

    We are seeking a Security Software Engineer to join our team at Rivian. · As a Security Software Engineer at Rivian, you will sit at the intersection of cybersecurity, software engineering, and artificial intelligence. Your role is not just to ...

  • Only for registered members Atlanta

    We are looking for a Security Engineer to support and advance security controls across applications, data, and cloud services in a Microsoft-based enterprise environment. This role requires 2-3 days onsite in Atlanta per week. · ...

  • Only for registered members Atlanta, Georgia, , United States

    We are seeking an experienced IT Security Engineer to support and advance our cybersecurity program within a regulated healthcare environment. · Engineer, operate, and continuously improve security controls across our enterprise environment. · ...

  • Only for registered members Atlanta

    Are you seeking to work on a team of professionals protecting one of the world's largest global air lines? As a Data Protection Engineer at Delta Air Lines you'll be collaborating with multiple teams to support data protection. · ...

  • Only for registered members Atlanta

    The Security Engineer will collaborate with multiple teams to support data protection, architecting, implementing, documenting, and maintaining Data Protection technologies such as BitLocker endpoint encryption. The team seeks a self-motivated individual who is always looking for ...

  • Only for registered members Atlanta, GA

    +We are a network and digital integrator that understands the entire value chain of the digital world, freeing our customers to focus on strategic initiatives that shape their business. · +Create technically detailed reports on firewall block lists, device status, change manageme ...

  • Only for registered members Atlanta, GA

    We are hiring a senior Security Engineer to design implement scale security across internal platforms customer environments. · This role serves as the dedicated security escalation point our Service Delivery team customer-facing technical expert assessments audits risk discussion ...

  • Only for registered members Atlanta

    +h2>Job summary · p>Join Orange Business as a Network Security Engineer in our team dedicated to providing consistent, sustainable global solutions./p> +ul>li>Create technically detailed reports on firewall block lists/li>/ul>+li>Analyze and evaluate anomalous network and system ...

  • Only for registered members Atlanta

    The Vulnerability Management Engineer is responsible for assessing, managing, and reducing security vulnerabilities across enterprise server and workstation environments.This role will perform scheduled vulnerability scans, · evaluate risks, · recommend remediation plans, · suppo ...

  • Only for registered members Atlanta

    BeVera Solutions LLC is seeking a Security Engineer to support cybersecurity and compliance efforts for the CDC Office of Advanced Molecular Detection OAMD. · ...

Jobs
>
Information security engineer
>
Jobs for Information security engineer in Atlanta