Sr. Security Engineer

Posted 2 Days Ago
Be an Early Applicant
28217, Charlotte, NC, USA
In-Office
Senior level
Information Technology • Logistics • Mobile • Software
The Role
Own the organization’s infrastructure and application security posture across Azure, AKS, on-premises systems, and client applications. Lead vulnerability management, penetration testing, IAM hardening, container and CI/CD security, incident response, compliance readiness for SOC 2 and GDPR, client security requirements, and audit coordination. Develop runbooks, detection logic, remediation plans, and leadership metrics while partnering with engineering, DevOps, offshore teams, auditors, vendors, and clients.
Summary Generated by Built In

Sr. Security Engineer

Type: Full-time
Location: Charlotte, NC (Onsite)
Team: IT / Information Security

About Velocitor Solutions

Velocitor Solutions is a leader in enterprise fleet management and mobile innovation, celebrating over 25 years of profitably growing technology. We go beyond standard telematics by offering a comprehensive, managed ecosystem—managing over 200,000 mobile assets for Fortune 500 clients across North America. Our V-Track platform integrates GPS tracking, AI-powered video telematics, and real-time data to drive safety and efficiency. We are in a pivotal phase of growth and looking to expand technology team.

Why Join Velocitor Solutions

You will own security for a platform that runs mission-critical fleet operations for national enterprise clients. The work is visible, the stakes are concrete, and the roadmap is active. You will have the mandate to fix what you find.

Role Summary

We are hiring a Senior Security Engineer in IT to own the day-to-day security posture of Velocitor's infrastructure and application platform. You will drive vulnerability management, lead and coordinate penetration testing, harden our Azure and AKS environments, and tighten identity and access controls across the organization. You will work closely with the platform, DevOps, engineering, and client-facing teams, and you will translate findings into fixes that ship. This is a hands-on role for someone who can both run the assessment and shape the remediation of the environment.

Key Responsibilities

  • Own vulnerability management across Azure, AKS, on-premises systems, and client-facing applications. Prioritize by real risk and client impact, not raw CVE counts.
  • Lead and coordinate penetration testing engagements, including scoped tests against client UAT and production environments. Manage internal testers and third-party firms, track findings to closure, and produce client-ready results.
  • Harden our identity stack on Entra ID and Auth0. Drive least-privilege access, reduce standing Domain Admin exposure through Restricted Management Administrative Units, and close IAM gaps as access volume scales.
  • Secure the AKS platform and CI/CD pipelines. Review container images, cluster configuration, secrets management, and network policy.
  • Build and maintain security runbooks, incident response procedures, and detection logic.
  • Participate in the security on-call rotation and lead incident response when events occur.
  • Own compliance and audit readiness end to end, including SOC 2 and GDPR. Manage relationships with external auditors and security vendors, coordinate evidence collection, and drive remediation of findings.
  • Own client security requirements and questionnaires. Lead RCAs and remediation plans when incidents touch client environments.
  • Partner with DevOps and engineering to embed security into the delivery pipeline rather than gating it at the end.
  • Track and report platform security posture to leadership with clear metrics and recommendations.
Qualifications

Required Qualifications

  • Bachelor Degree or at least 8-10 years of IT Technical experience.
  • 8+ years in security analysis, application security, or cloud security, with at least 2 years in a senior or lead capacity.
  • Strong hands-on Azure security experience: Defender for Cloud, Entra ID, network security, key management.
  • Working knowledge of Kubernetes and container security, ideally AKS.
  • Solid grasp of identity and access management, including RBAC, privileged access, and modern auth patterns (OAuth, OIDC, SSO).
  • Hands-on experience owning or leading compliance programs, specifically SOC 2 and GDPR, including audit coordination and evidence management.
  • Scripting for automation (PowerShell, Python).
  • Comfort working across a distributed organization, coordinating with the offshore engineering teams and engaging directly with client stakeholders.
  • Incident response experience, including participation in an on-call rotation and leading response during active incidents.
  • Clear written communication. You can turn a finding into a decision.

Preferred Skills

  • Security certifications such as CISSP, OSCP, GCIH, or Azure Security Engineer Associate.
  • Experience securing telematics, IoT, or fleet platforms.
  • Experience with EU data residency and multi-region deployment security.

Compensation & Benefits

  • Competitive salary commensurate with experience and qualifications.
  • Comprehensive health, dental, and vision insurance.
  • Paid time off and holidays.
  • Retirement savings plan options.
  • Opportunities for career advancement and professional growth.

Skills Required

  • Bachelor’s degree or at least 8–10 years of IT technical experience
  • 8+ years of experience in security analysis, application security, or cloud security
  • At least 2 years in a senior or lead security capacity
  • Hands-on Azure security experience, including Defender for Cloud, Entra ID, network security, and key management
  • Working knowledge of Kubernetes and container security, ideally AKS
  • IAM knowledge, including RBAC, privileged access, OAuth, OIDC, and SSO
  • Hands-on ownership or leadership of SOC 2 and GDPR compliance programs, including audit coordination and evidence management
  • Scripting experience with PowerShell and Python
  • Experience coordinating with distributed or offshore engineering teams and client stakeholders
  • Incident response experience, including on-call participation and leading active incident response
  • Clear written communication and ability to translate findings into decisions
  • Security certification such as CISSP, OSCP, GCIH, or Azure Security Engineer Associate
  • Experience securing telematics, IoT, or fleet platforms
  • Experience with EU data residency and multi-region deployment security
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Charlotte, NC
194 Employees
Year Founded: 2000

What We Do

Velocitor Solutions is a software development firm specializing in enterprise mobile solutions and fleet management, providing cloud-based enterprise solutions to maximize field workforce productivity.

Similar Jobs

Remote or Hybrid
US
15100 Employees
107K-150K Annually

Beyond Finance Logo Beyond Finance

Cloud Security Engineer

Fintech • Financial Services
Easy Apply
Remote or Hybrid
United States
2200 Employees
140K-165K Annually

Crexi Logo Crexi

Senior Security Engineer

Real Estate • Sales • Software • PropTech
Easy Apply
Remote or Hybrid
United States
400 Employees
167K-227K Annually
In-Office or Remote
4 Locations
20990 Employees
55K-122K Hourly

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account