via LinkedIn
$90K - 130K a year
Build and operate Ansible automation for OS-level security hardening on Windows and Linux VMs, focusing on Azure environments and enforcing security benchmarks.
Must have hands-on experience with Ansible, strong Azure skills, OS-level security and hardening expertise on Windows and Linux, and familiarity with CIS Benchmarks and IIS security.
We are seeking an experienced Automation & Security Engineer with strong expertise in Ansible, and Microsoft Azure. This role is heavily focused on automation, infrastructure hardening, and supporting a major security initiative aimed at securing Windows and Linux machines through Infrastructure-as-Code. Must-Have Skills • Hands-on Ansible for automation and configuration management • Strong Azure experience (Azure VMs, automation, cloud infrastructure) • Some exposure to AWS is okay, mostly focused on Ansible • Background in infrastructure, DevOps, or systems engineering • OS-level security and hardening (Windows + Linux) • Experience with CIS Lockdown or comparable benchmarks • IIS or Windows web server security experience Day to Day: • Build, optimize, and operate Ansible-based automation to audit, identify gaps, and remediate OS-level security issues on Windows and Linux VMs. • Implement and enforce CIS Benchmarks, password policies, and other security baselines. • Harden Windows workloads, including IIS/web servers, ensuring secure deployment of .NET and HTML applications. • Automate deployment and upgrades of third-party tools (e.g., monitoring agents such as Zabbix). • Support and enhance Azure-focused automation efforts (≈80% of the work), with light contributions to AWS environments. • Contribute to Infrastructure-as-Code and cloud engineering best practices within the infrastructure team. • Work closely with a third-party partner to transition a POC into a production-ready solution. • Continue maintaining, improving, and scaling automation post-implementation.
This job posting was last updated on 12/5/2025