SlipstreamJobsFresh Startup & VC-Backed Jobs

Cyber Security & Infrastructure Engineer

XO Health - Remote - Remote - posted 2026-08-17

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

XO Health is seeking a Cybersecurity & Infrastructure Engineer to design, implement, monitor, and secure the organization's hybrid cloud and infrastructure environments. This role combines hands-on infrastructure administration with cybersecurity engineering responsibilities across Microsoft Azure, AWS, Microsoft 365, Entra ID, and security platforms. Key responsibilities include: SOC 2 Audit & Compliance: Support the organization's annual SOC 2 Type II audit program, including control design, evidence collection, remediation management, and auditor coordination. Develop and maintain policies, procedures, risk assessments, and control documentation to maintain an audit-ready environment and promote a culture of security and compliance. Cybersecurity Operations: Administer and optimize the Microsoft Sentinel SIEM platform, develop security monitoring and analytics rules, investigate security incidents, and coordinate containment and remediation activities. Monitor threats across Microsoft Defender, Sentinel, AWS security services, and third-party platforms. Conduct threat hunting, vulnerability management, and lead incident response activities including forensic investigations. Cloud Security & Architecture: Design and maintain secure Microsoft Azure environments using Entra ID, Conditional Access, Privileged Identity Management, Defender for Cloud, and Microsoft Purview. Secure AWS environments including IAM, CloudTrail, GuardDuty, and Security Hub. Implement zero-trust security principles across cloud platforms. Infrastructure Engineering: Maintain hybrid infrastructure including Azure, AWS, Active Directory, Windows Server, virtualization platforms, and Microsoft 365. Design high-availability and disaster recovery solutions, manage identity lifecycle and privileged access controls, and support cloud migrations and infrastructure modernization. Governance, Risk & Compliance: Lead technical compliance activities, collaborate with external auditors, develop security control documentation, perform access reviews and risk assessments, and support regulatory requirements. The ideal candidate will have strong technical expertise in cloud platforms, security operations, and infrastructure management, with the ability to balance hands-on engineering with strategic security leadership.

Similar roles