Security Engineer in Portland, Oregon - #73438 | VanderHouwen

Location
Portland, Oregon

Type
Direct Hire

Post Date
10/08/2026

Description

Job Id: 73438

Security Engineer
Our client is seeking a Security Engineer to strengthen and mature their enterprise cybersecurity program. This role supports the protection of critical information assets while advancing the organization’s compliance posture, Zero Trust readiness, and secure adoption of AI technologies. The organization works in a deliberate, process-driven environment, so patience and steady follow-through are valued.

This role is a hybrid model in Portland, Oregon.

Security Engineer Responsibilities

  • Support security policies, procedures, and technical documentation aligned to NIST 800-53 and NIST 800-171 standards.
  • Help prepare for CMMC compliance by maintaining the System Security Plan and POA&M, scoping environments that handle CUI, gathering assessment evidence, and tracking remediation through completion.
  • Monitor, triage, and investigate security alerts using Microsoft Sentinel and Defender XDR, performing log analysis and threat hunting with KQL.
  • Configure, tune, and evaluate security tools across servers, endpoints, cloud services, and network devices, with a focus on the Microsoft security stack, including Entra ID and Intune.
  • Advance Zero Trust initiatives by strengthening identity and device controls, including Conditional Access, multi-factor authentication, least-privilege access, and device compliance.
  • Follow established incident response procedures, including containment, escalation, and documentation, and coordinate with internal teams and external security providers.
  • Support governance and security for AI use across the organization, including tools such as ChatGPT, workflow automations, and internally built applications, by identifying unapproved use and applying access, data protection, and logging controls.
  • Assess AI-related risks such as prompt injection, data exposure, and excessive permissions, and help develop monitoring and response playbooks for AI-enabled systems.
  • Contribute to client and third-party security reviews and audits by collecting evidence and tracking remediation.
  • Educate IT staff and end users on security best practices, and communicate threats and incidents clearly to technology leadership.
  • Evaluate emerging security tools and automation, such as PowerShell or Azure Logic Apps, and recommend improvements to detection and response.

Security Engineer Qualifications

  • Two or more years of hands-on experience in at least three areas of security, such as endpoint protection, network security and monitoring, identity and access management, firewalls, intrusion detection, vulnerability management, or operating system and database security.
  • Working knowledge of formal cybersecurity frameworks and standards, including NIST 800-53, NIST 800-171, and CMMC, ideally within a federal contracting environment. Familiarity with ISO 27000 is also valued.
  • Hands-on experience with Microsoft security technologies, including Defender XDR and at least two other tools such as Defender for Endpoint, Defender for Office 365, Entra ID, or Intune.
  • Experience with Microsoft Sentinel or a comparable SIEM platform, including alert investigation and querying security data. Proficiency in KQL, or the ability to develop it, is required.
  • Solid understanding of incident response practices, including alert triage, containment, evidence preservation, and cross-team coordination.
  • Experience with, or strong interest in, AI governance and security, including awareness of risks such as shadow AI, prompt injection, and sensitive data disclosure.
  • Ability to critically validate AI-generated findings against source data and established procedures before taking action.
  • Cybersecurity certifications such as Security+, CySA+, SSCP, GIAC, SC-200, AZ-500, or SC-300, or extensive relevant coursework.
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or an equivalent combination of education, training, and experience.
  • Experience supporting external audits, assessments, or a federal contractor environment is a plus.
  • Strong written and verbal communication skills, with the ability to explain technical concepts to varied audiences.
  • Ability to manage multiple priorities, work collaboratively, and occasionally respond to after-hours incidents or maintenance.

Salary: (DOE)


Benefits
Benefits are available to eligible full-time employees and include coverage for medical, dental, vision, life insurance, short and long term disability, and matching 401k.

Meet VanderHouwen
What kind of recruiter do you see yourself working with? One who prioritizes your best interest, no matter what? VanderHouwen does, and we’re in it for the long game! Our recruiters focus on YOU, building meaningful, long-term relationships while developing a deep understanding of companies’ staffing needs and workplace cultures. This approach helps us find an ideal job match that aligns with your unique career aspirations and goals.

VanderHouwen is an award-winning, Women & Diversity-Owned, WBENC certified professional staffing firm. Founded in 1987, VanderHouwen places experienced professionals across the nation! Our recruitment teams specialize in either Technology and IT, Engineering, Human Resources, or Accounting and Finance career markets. Partner with us to land your next exciting career!

VanderHouwen is an Equal Opportunity Employer and participates in E-Verify. VanderHouwen does not discriminate based on race, color, religion, sex, national origin, age, disability, or any other characteristic protected by applicable local, state, or federal civil rights laws.

#LI-Hybrid

Apply Now

Thank you for your interest in applying for this position! Please fill out the fields below. Your profile will be reviewed with the rest of the applicants.