Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Sherpa

Information Security Specialist

Sherpa

. Maintain the security posture of the organization’s internal information systems .

Posted 9/25/2026full-timeSpring Lake • North Carolina • United StatesMid-LevelSenior💰 $105,000 - $115,000 per yearWebsite

Tech Stack

Tools & technologies
CloudCyber SecurityLinuxMacOS

About the role

Key responsibilities & impact
  • Maintain the security posture of the organization’s internal information systems
  • Ensure compliance with applicable cybersecurity frameworks
  • Manage system vulnerabilities through scanning, prioritization, and remediation
  • Support patching and configuration enforcement through endpoint management solutions
  • Continuously monitor information systems and identify and mitigate anomalous activity
  • Analyze and correlate logs from endpoints, servers, identity systems, and cloud services
  • Configure and tune alerting and automated response capabilities for security events
  • Perform incident response and reporting for malware, phishing, unauthorized access, and data exfiltration
  • Maintain Plans of Action & Milestones (POA&M) and track remediation to closure
  • Keep system security documentation, including SSPs, baselines, policies, and procedures, current and audit-ready
  • Assist in developing and maintaining security policies, standards, and technical controls
  • Review and assess the security impact of system changes through change control processes
  • Recommend and implement security configurations across Microsoft 365, endpoint, and identity platforms
  • Conduct user activity monitoring and support investigations related to potential insider threats or policy violations
  • Run security awareness initiatives, including phishing simulations and training activities
  • Prepare reports on vulnerabilities, incidents, and overall security posture
  • Collaborate with Security, IT, leadership, and compliance stakeholders

Requirements

What you’ll need
  • U.S. Citizenship required
  • Must be able to obtain and maintain Secret clearance
  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field
  • 3–5 years of experience in information security or cybersecurity operations
  • Experience with Microsoft Defender, Microsoft Intune, and Microsoft Purview
  • In-depth understanding of software and system vulnerability management
  • Experience with log aggregation, SIEM tools, or advanced threat detection
  • Experience managing the security of Windows and Linux systems in an enterprise environment
  • Experience implementing and maintaining STIGs or CIS Benchmarks
  • Industry certifications such as Security+, CISSP, or equivalent preferred
  • Experience supporting CMMC/NIST 800-171 or NIST 800-53/RMF preferred
  • Familiarity with endpoint management and configuration baselines across enterprise systems preferred
  • Experience working in a regulated environment handling Controlled Unclassified Information (CUI) preferred
  • Experience managing macOS systems in an enterprise environment preferred
  • Experience maintaining security controls and working on a change control board preferred
  • Experience leveraging AI tools in an enterprise setting preferred
  • Experience as a COMSEC custodian preferred
  • Successful completion of a background screening/check/investigation will/may be required as a condition of hire

Benefits

Comp & perks
  • Medical coverage for you and your family
  • Dental benefits
  • Vision benefits
  • Health and wellness benefits
  • Generous retirement savings plan
  • Generous PTO policy
  • Reasonable accommodations in compliance with the Americans with Disabilities Act 1990