All Positions

Security Operations Engineer

location

Dallas

Island is shaping the future of work - creating an enterprise workspace for both knowledge workers and agents - where access, security, and AI-powered productivity are built in. Our enterprise agentic control plane boosts productivity across devices, browsers, applications, networks, and data while protecting sensitive information, simplifying access, and helping enterprises scale AI safely.

Behind all of that is a team of people who care deeply about their craft and want to do the biggest and best work of their careers. At Island, character and drive matter more than your resume. 

Backed by Coatue Management, Insight Partners, Sequoia Capital, Cyberstarts, and other world-class investors, Island is used by millions of people at some of the planet’s largest enterprises.

Come build with us. Together, we’re changing how the world works.   

2026 - #28 + ONLY DFW Company on the CNBC Disruptor 50 List

2025 - #1 in LinkedIn's Top Startups of 2025

2025 - #6 in the 2025 Dallas 100™ Entrepreneur Awards

2025 - Forbes Cloud 100

About the Role

We’re looking for a Security Operations Engineer who will own the day-to-day operation and continuous improvement of our vulnerability and compliance scanning program. This person will play a critical role in strengthening Island’s security posture across both commercial and FedRAMP environments, ensuring we meet the rigorous standards required by government and enterprise customers.

You will drive scanning operations across the stack, partner closely with compliance and engineering teams, and help scale our security tooling and processes as we grow. This is a strong entry point into a fast-moving product security team, with clear opportunities for expanded ownership and impact over time.

How We Work

Note: This position is hybrid four days per week in-office at our Coppell, TX headquarters. We believe collaboration and culture thrive face-to-face, and we can’t wait to welcome you to the team.

What You’ll Do

  • What You’ll Do

    • Operate and maintain vulnerability scanning tools across web applications (Burp Suite), infrastructure/network (Nessus), and container/runtime environments (Sysdig), with exposure to Wiz as a plus
    • Run scans on a regular cadence and on-demand for releases, audits, and special initiatives
    • Support FedRAMP continuous monitoring (ConMon) activities across US GovCloud environments
    • Assist with evidence collection and compliance tracking, including familiarity with NIST 800-53 controls and tools like eMASS
    • Triage scan results, identify and filter false positives, prioritize findings by risk, and open/track remediation tickets in Jira
    • Partner with engineering teams to ensure SLA adherence and timely remediation
    • Produce reports and compliance artifacts for internal stakeholders and external auditors
    • Contribute to and maintain the compliance evidence repository
    • Improve scanning workflows through automation, scheduling, alerting, and result normalization
    • Collaborate closely with the SecOps Lead and broader product security team, contributing to sprint planning and cross-functional initiatives

You Might Be a Fit If

  • 1–3 years of experience in security operations, IT security, or a related field (or equivalent hands-on experience through internships, labs, or personal projects)
  • Hands-on familiarity with vulnerability scanning tools such as Burp Suite, Nessus, Tenable, or similar (experience with at least one required)
  • Basic understanding of AWS cloud infrastructure and containerized environments (Kubernetes, Docker, Chainguard)
  • Exposure to structured compliance environments; familiarity with FedRAMP, NIST 800-53, or similar frameworks is a strong plus
  • Strong organizational skills with the ability to manage multiple open findings and parallel workstreams
  • A curious, self-driven mindset with a desire to expand beyond a defined lane over time
  • Scripting or automation skills (Python, Bash) are a plus
  • Clear and effective communication skills across Slack, Zoom, and email in a distributed team environment
  • US citizenship and ability to work within FedRAMP-regulated environments
  • Ability to work onsite in Dallas, TX

Benefits and Perks  

  • Medical, dental, vision
  • Company paid Life and AD&D Insurance
  • Company paid STD and LTD Insurance
  • 401(k) with company contributions
  • Paid Time Off & 9 Company Holidays
  • In-office wellness instructor and daily lunches (for office-based roles)

Physical Environment 

This position requires the ability to perform sedentary work, which involves exerting up to 10 pounds of force occasionally, and/or a negligible amount of force to lift, carry, push, pull, or otherwise move objects as needed. The employee will primarily operate standard office equipment and keyboards, and may require close visual acuity for tasks like analyzing data and reading extensive text.

Equal Opportunity Statement

Island is an equal opportunity employer. We are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to their background or protected characteristics.

E-Verify

Island Technology participates in E-Verify.For additional information please review the E-Verify Participation & Right to Work Poster from the Department of Homeland Security

General Disclosure

The job description is subject to change with or without prior notice, and a reasonable accommodation may be requested to perform the essential functions of the job.

Data Privacy

You can find information on how we process and protect your personal data in our Employee & Applicant Privacy Notice. For any privacy-related questions, contact us at privacy@island.io. 

Apply via Greenhouse