IT Security and Systems Engineer

SilencerCo - West Valley City, UT

Hiring: IT Security and Systems Engineer Company: SilencerCo Location: West Valley City, UT Job Posted Time: 2026-09-03 14:26:18 Employment Type: Full-time Target Skills & Keywords : AWS, Azure, Linux, PCI DSS, SIEM, SOC 2, Systems Engineering About the job Experience: •8 to 12 years in IT with meaningful depth in security and compliance •12 years in IT with meaningful depth in security and compliance Required Skills: •Lead readiness and ongoing compliance for CMMC Level 2 and NIST SP 800-171 across our defense-adjacent business units •Support SOC 2 and PCI DSS efforts, including evidence collection, control design, gap remediation, and audit coordination •Own security and infrastructure projects end to end: scope them, build the plan, coordinate vendors and internal stakeholders, drive them to agreed timelines, and keep leadership informed on status and risk •Administer and improve security tooling: endpoint protection, identity and access management, SIEM, MFA, email security, vulnerability management, and logging •Run access reviews, security awareness training, phishing simulations, and incident response tabletop exercises •Write and maintain the policies, procedures, and system security plans that our frameworks require, and make sure they reflect what we actually do •Partner with business unit leaders on risk decisions, vendor reviews, and security questions from customers and partners •Work alongside the core IT team on systems and infrastructure initiatives beyond security, including Microsoft 365/Entra ID and identity administration, server and network projects, endpoint management, and other technology work that supports all business units Qualifications: •Direct experience with at least one government contracting framework, ideally NIST SP 800-171 or CMMC •Solid functional working knowledge of at least one commercial framework such as SOC 2, PCI DSS, or ISO 27001 •A track record of running projects from kickoff through completion on committed timelines, including ones you identified and proposed yourself •Strong general IT fundamentals: Windows and Linux Servers, Microsoft 365 administration, identity and access management, networking, and Windows and Mac endpoint management •CompTIA Security+ or equivalent certification •The judgment to know when a control needs to be enforced and when it needs to be adapted to how the business actually operates •Clear written communication. You will be producing documentation that both auditors and executives read. •CISA, CCSP, CySA+, or CMMC CCP •Manufacturing or regulated industry background •Operational familiarity with ITAR or EAR export control requirements Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!