Security Engineer Jobs in Georgia
Security Engineer jobs in Georgia are in strong demand, concentrated in cybersecurity, defense contracting, financial technology, and cloud infrastructure, with openings at every level from entry-level analyst-track roles through senior architect positions. Atlanta, Augusta, and Savannah drive the bulk of hiring, anchored by employers such as NCR Voyix, Delta Air Lines, and Northrop Grumman, which maintain significant Georgia operations requiring dedicated security talent. The most sought-after specialties in the Georgia market are cloud security, network security engineering, and identity and access management. Find a role that fits below and apply directly.
Find Security Engineer JobsOverview
Showing 5 of 71+ Security Engineer jobs











About Acrisure
A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human support together, we connect clients with customized solutions across a range of insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services – and more.
In the last twelve years, Acrisure has grown in revenue from $38 million to almost $5 billion and employs over 19,000 colleagues in more than 20 countries. Acrisure was built on entrepreneurial spirit. Prioritizing leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible.
Job Summary:
The Security Incident Response Engineer is responsible for detecting, investigating, containing, eradicating, and recovering from cybersecurity incidents across Acrisure's global environment. This role serves as a key member of the Security Operations team and works closely with Infrastructure, Cloud, Identity, Workplace Technology, Legal, Privacy, Human Resources, and business stakeholders to rapidly respond to security threats and reduce organizational risk.
The engineer leverages enterprise security technologies including EDR, SIEM, cloud security platforms, email security solutions, threat intelligence, and security automation tooling to identify and respond to attacks impacting endpoints, identities, cloud environments, applications, and data. This position combines hands-on incident response, threat hunting, detection tuning, forensic investigation, and continuous improvement activities.
Success in this role means rapidly detecting and containing threats before they become business-impacting events, continuously improving the organization's ability to respond to attacks, and driving measurable reductions in response times, incident severity, and operational risk.
Responsibilities:
Incident Response Operations
- Investigate and respond to cybersecurity incidents involving endpoints, identities, cloud platforms, email systems, applications, data, and network infrastructure.
- Perform incident triage, severity classification, impact analysis, containment, eradication, and recovery activities.
- Execute cyber incident response procedures and escalation processes in accordance with the Cyber Incident Response Plan (CIRP).
- Coordinate response efforts across Security, Infrastructure, Cloud, IAM, Workplace Technology, Legal, Privacy, Human Resources, and business teams.
- Support major incident management activities and provide technical leadership during active security events.
- Maintain detailed incident records, timelines, evidence, findings, and lessons learned.
Threat Detection and Investigation
- Analyze alerts generated by EDR, SIEM, MDR, email security, cloud security, deception, and threat intelligence platforms.
- Validate suspicious activity to distinguish true security incidents from false positives.
- Perform root cause analysis to identify attack vectors, affected assets, compromised accounts, and attacker activities.
- Conduct proactive threat hunting to identify indicators of compromise, adversary behaviors, and emerging threats.
- Leverage MITRE ATT&CK techniques to improve detection and investigative effectiveness.
Digital Forensics and Evidence Collection
- Collect, preserve, and analyze system, endpoint, cloud, email, and identity-related evidence.
- Perform log analysis, forensic triage, malware investigation, and timeline reconstruction.
- Support legal, regulatory, audit, and compliance investigations as required.
- Maintain evidence handling and chain-of-custody procedures where applicable.
Security Engineering and Continuous Improvement
- Develop and maintain incident response playbooks, investigation procedures, and operational runbooks.
- Recommend detection improvements, new use cases, automations, and response capabilities.
- Tune security alerts and detection logic to improve fidelity and reduce false positives.
- Assist in the implementation and improvement of SOAR workflows and automated response capabilities.
- Participate in tabletop exercises, incident simulations, and purple team activities.
Metrics and Reporting
- Track and report operational metrics including:
- Mean Time to Detect (MTTD)
- Mean Time to Respond (MTTR)
- Incident volume
- Severity trends
- Containment effectiveness
- Detection fidelity
- Produce incident reports, executive summaries, and post-incident reviews.
- Identify recurring trends and recommend corrective actions.
Collaboration and Enablement
- Partner with Security Engineering teams to improve telemetry, monitoring, and investigative capabilities.
- Work with Vulnerability Management and Exposure Management teams on remediation activities resulting from incidents.
- Provide guidance and mentorship to analysts and junior responders.
- Participate in after-hours incident response and on-call rotations as required.
Education and Experience:
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or related discipline (or equivalent experience).
- Minimum 3 years of progressive information security experience.
- Strong understanding of incident response methodologies, attack lifecycle, and containment strategies.
- Experience with one or more EDR platforms such as Microsoft Defender for Endpoint, SentinelOne, CrowdStrike, or equivalent.
- Experience with SIEM technologies such as Microsoft Sentinel, Google SecOps, Splunk, QRadar, or similar platforms.
- Knowledge of Microsoft 365, Entra ID, Active Directory, and cloud security concepts.
- Understanding of MITRE ATT&CK, threat intelligence, and threat hunting methodologies.
- Familiarity with Windows, Linux, and macOS operating systems.
- Ability to analyze logs, indicators of compromise (IOCs), and attacker techniques.
- Experience with PowerShell, Python, KQL, or other scripting/query languages.
#LI-CH1
Candidates should be comfortable with an on-site presence to support collaboration, team leadership, and cross-functional partnership.
Why Join Us:
At Acrisure, we’re building more than a business, we’re building a community where people can grow, thrive, and make an impact. Our benefits are designed to support every dimension of your life, from your health and finances to your family and future.
Making a lasting impact on the communities it serves, Acrisure has pledged more than $22 million through its partnerships with Corewell Health Helen DeVos Children's Hospital in Grand Rapids, Michigan, UPMC Children's Hospital in Pittsburgh, Pennsylvania and Blythedale Children's Hospital in Valhalla, New York.
Employee Benefits
We also offer our employees a comprehensive suite of benefits and perks, including:
Physical Wellness: Comprehensive medical insurance, dental insurance, and vision insurance; life and disability insurance; fertility benefits; wellness resources; and paid sick time.
Mental Wellness: Generous paid time off and holidays; Employee Assistance Program (EAP); and a complimentary Calm app subscription.
Financial Wellness: Immediate vesting in a 401(k) plan; Health Savings Account (HSA) and Flexible Spending Account (FSA) options; commuter benefits; and employee discount programs.
Family Care: Paid maternity leave and paid paternity leave (including for adoptive parents); legal plan options; and pet insurance coverage.
… and so much more!
This list is not exhaustive of all available benefits. Eligibility and waiting periods may apply to certain offerings. Benefits may vary based on subsidiary entity and geographic location.
Acrisure is an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, religion, sex, national origin, disability, or protected veteran status. Applicants may request reasonable accommodation by contacting leaves@acrisure.com.
Final candidates will be required to complete post-offer verification processes related to the role and in accordance with applicable laws.
California Residents: Learn more about our privacy practices for applicants by visiting the Acrisure California Applicant Privacy Policy.
Recruitment Fraud: Please visit here to learn more about our Recruitment Fraud Notice.
Welcome, your new opportunity awaits you.
See All 71 Security Engineer Jobs in Georgia
Find roles in Georgia that match your experience and apply in just a few clicks.
Find Security Engineer JobsSecurity Engineer Jobs by City in Georgia
Where Georgia roles are concentrated, by current openings.
Security Engineer Job Market in Georgia
A snapshot from current Georgia openings, updated as new roles post.
Who's Hiring


Top Industries Hiring
- Technology & Software
- Manufacturing
- Education
- Chemicals & Materials
- Distribution & Wholesale
What Georgia Employers Look For
The qualifications that appear most often in security engineer jobs across Georgia.
- Relevant industry certifications such as CISSP, CEH, or CompTIA Security+ required or strongly preferred
- Hands-on experience with SIEM platforms, endpoint detection, and incident response tooling
- Proficiency securing cloud environments including AWS, Azure, or Google Cloud Platform
- Experience with vulnerability management frameworks and penetration testing methodologies
- Familiarity with federal or industry compliance standards such as NIST, CMMC, or PCI-DSS
- Strong scripting or automation skills in Python, Bash, or PowerShell for security operations
Security Engineer Jobs in Georgia: Frequently Asked Questions
How do you become a security engineer in Georgia?
Most security engineer roles in Georgia require a bachelor's degree in computer science, information security, or a related field, though some employers accept equivalent experience. Georgia does not issue a state license for security engineers, so hiring is credential-driven: industry certifications such as CISSP, CompTIA Security+, or CEH carry significant weight. Candidates targeting defense contractors in Augusta or Atlanta should also pursue a federal security clearance early, as many positions list it as a condition of employment.
How much do security engineers make in Georgia?
Security engineers in Georgia earn a median of about $104,610 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $60,920 for the lowest 10% to over $173,060 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire security engineers in Georgia?
Employers hiring security engineers in Georgia right now include Truist, Information Technology Senior Management Forum, and Box, based on current listings on Migrate Mate as of August 2026. Georgia's deep base of defense contractors, Fortune 500 headquarters, and fast-growing fintech firms means consistent demand across a broad range of company types and security disciplines.
Which Georgia cities have the most security engineer jobs?
Atlanta, Alpharetta, and Augusta have the most security engineer openings in Georgia. Atlanta dominates due to its concentration of Fortune 500 headquarters, major financial institutions, and a large cybersecurity services ecosystem, while Augusta and Savannah draw significant demand from military installations such as Fort Eisenhower and the port logistics sector respectively.
Are there remote security engineer jobs in Georgia?
Yes, and more than most technical fields. About 67% of security engineer openings tied to Georgia are remote or hybrid as of August 2026, reflecting how much of the work centers on cloud platforms, SIEM consoles, and code-level security reviews that translate well to distributed teams. Roles involving on-site infrastructure or classified government systems are the most likely to require physical presence.
How can I get hired as a security engineer in Georgia with little or no experience?
The most realistic entry path is a security-adjacent role such as IT support, systems administration, or network operations, which are plentiful across Atlanta's large employer base and Georgia's state agency infrastructure. From there, CompTIA Security+ is the credential that most consistently opens the door to a first security role. Large Georgia employers including Northrop Grumman and Georgia-Pacific run early-career programs, and Georgia Tech's Cybersecurity Bootcamp produces candidates that Atlanta-area employers actively recruit.
Where can I find and apply to security engineer jobs in Georgia?
You can find and apply to security engineer jobs in Georgia on Migrate Mate, which lists current openings from employers actively hiring in the state. Search the listings, find roles that match your background and the Georgia market you want to work in, and apply directly.
See All 71 Security Engineer Jobs in Georgia
Find roles in Georgia that match your experience and apply in just a few clicks.
Find Security Engineer Jobs