Security Engineer
- Salary
- $14.5K–$165K
- Hiring from
- United States
- Work type
- Remote
- Posted
Show job descriptionHide job description
Join our fast-paced, growing company and further your career with Maverick Payments, where you can thrive, your ideas are valued, and your colleagues feel more like family than coworkers!
About Us:
Maverick Payments is a family-owned and privately held full-service payment provider. Located in Calabasas, California, Maverick has created innovative technology designed for sales organizations, such as ISO’s and ISV’s, looking to monetize payments by reselling our white-labeled payments stack. Our payment products include merchant acquiring services, a proprietary gateway, ACH processing, fraud & chargeback tools, analytics, and other value-add services. Maverick’s team includes underwriting, risk management, compliance & legal, technology & product development, on-boarding, customer support, information technology, and more.
About the Position:
As a Security Engineer you will be responsible for designing, implementing, maintaining, and enhancing the Company's information security controls across cloud, infrastructure, endpoint, identity, and security operations environments. Reporting to the AVP, Information Security, this role serves as a technical resource for cybersecurity initiatives and works closely with Information Technology, Compliance, Infrastructure, DevOps, and business stakeholders to strengthen Maverick's security posture.
The Security Engineer supports the Company's PCI DSS and SOC 2 Type II compliance efforts through proactive security monitoring, vulnerability management, incident response, threat detection, and secure cloud architecture practices. This position also partners with internal teams to evaluate and implement emerging security technologies, including AI-enabled solutions, while ensuring alignment with industry best practices and regulatory requirements.
Design, implement, and maintain security controls across Azure cloud environments and hosted infrastructure.Configure and manage Microsoft Defender for Cloud, Defender XDR, Sentinel, and related security tools.
- Develop and maintain security baselines, hardening standards, and configuration management processes.
- Monitor cloud security posture and recommend corrective actions to reduce organizational risk.
- Perform security reviews of systems, applications, and infrastructure architectures.
- Collaborate with infrastructure and development teams to ensure security requirements are incorporated into technology solutions.
- Support the implementation and maintenance of Zero Trust security principles and architecture.
- Manage security controls within Microsoft Entra ID and connected SaaS environments.
- Configure and enforce multi-factor authentication, conditional access, privileged access management, and least-privilege controls.
- Participate in user access reviews and identity governance activities.
- Assist with the development and enforcement of access management standards and procedures.
- Perform vulnerability assessments and coordinate remediation efforts across systems, endpoints, cloud environments, and applications.
- Monitor security alerts and assist with threat detection, investigation, and response activities.
- Develop and maintain SIEM, EDR, and security monitoring use cases.
- Coordinate penetration testing activities and track remediation of identified findings.
- Research emerging threats and integrate threat intelligence into security monitoring efforts.
- Develop scripts and automation workflows to improve operational efficiency and reduce manual effort.
- Assist in implementing technical controls for AI-enabled platforms and applications.
- Participate in security assessments and threat modeling activities for AI solutions.
- Monitor emerging AI security risks and recommend mitigation strategies.
- Partner with cross-functional teams to promote secure adoption of AI technologies.
- Assist with PCI DSS, SOC 2 Type II, and customer audit requests.
- Prepare and maintain technical documentation, evidence, and security control records.
- Support remediation activities related to audit findings and risk assessments.
- Ensure security controls remain aligned with regulatory requirements and company policies.
- Other duties as assigned
- Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, or a related field; or equivalent combination of education and experience.
- 5+ years of progressive information security experience.
- Minimum 3 years of hands-on security engineering experience.
- Experience supporting PCI DSS, SOC 2, or other regulated compliance environments.
- Experience working with Azure cloud security technologies, identity management systems, and security monitoring platforms.
- Strong knowledge of Azure security architecture and Microsoft security technologies.
- Proficiency with Microsoft Defender Suite, Sentinel, Entra ID, and endpoint security platforms.
- Understanding of vulnerability management, incident response, threat detection, and security operations processes.
- Knowledge of PCI DSS, SOC 2, and cybersecurity regulatory frameworks.
- Experience with PowerShell, Python, or similar scripting languages.
- Strong analytical, troubleshooting, and problem-solving skills.
- Ability to communicate technical information effectively to both technical and non-technical audiences.
- Ability to manage multiple priorities in a fast-paced environment while maintaining attention to detail.
- Demonstrated ability to work independently and collaboratively across departments.
- Commitment to continuous learning and staying current on emerging security threats and technologies
Preferred:
- Experience within the payments, fintech, financial services, healthcare, or other highly regulated industries.
- Experience securing AI-enabled applications and services.
- Experience with Infrastructure as Code (Terraform, Bicep) and automation technologies.
- Familiarity with Microsoft Copilot, Azure AI services, or similar enterprise AI platforms.
- Professional certifications such as CISSP, CCSP, GCIH, GCIA, GCED, SC-200, SC-100, or Azure Security Engineer Associate.
- Competitive Salary, Bonuses and Incentives.
- Comprehensive employer sponsored health, vision, and dental insurance programs.
- Paid time off, Paid Sick and Paid Holidays.
- 401K plan with up to a 4% matching contribution.
- Commitment to Career Development and Advancement.
- Employee Recognition Programs & Company Sponsored Events
- Vibrant Office Culture, Team Building, Birthdays, Work Anniversaries, Snacks, and more!
This position will consider remote candidates however preference will give to candidates who can work onsite in our Houston or Calabasas, CA offices.
Remote candidates considered in the following states:
AZ, CA (Outside of LA Metro area), CO, FL, GA, ID, IN, KS, KY, MA, MD, ME, MI, NC, NH, NJ, NV, NY, OH, OR, PA TN, TX (Outside Houston Metro), UT, VA, WA.
Maverick Payments is an Equal Opportunity Employer.
Pay Transparency Notice: At Maverick Payments, we believe in openness, honesty, and empowering our candidates to make informed career choices. As part of our commitment to transparency, we disclose the salary range for our positions. These ranges reflect our dedication to fair compensation practices and recognize the value that each team member brings to our organization. The final salary offer will be based on factors such as your experience, skills, and qualifications.
Non-Solicitation from Third Parties: Do not contact Maverick Payments about this position unless you are a job seeker and potential applicant for this position. Do not contact Maverick Payments about other services, products or commercial interests.
Notice to Agency and Search Firm Representatives: Maverick Payments is not accepting unsolicited resumes from agencies and/or search firms for this or other job postings. Resumes submitted to any Maverick Payments employee by a third-party agency and/or search firm without a valid written and signed search agreement, will become the sole property of Maverick Payments. No fee will be paid if a candidate is hired for this position as a result of an unsolicited agency or search firm referral.
Fair Chance Ordinance: Maverick will consider qualified applicants with criminal histories in a consistent manner with the Los Angeles Fair Chance Initiative for Hiring.