Overview
Security Engineer focused on product and production infrastructure, securing cloud-native environments through reviews, vulnerability management, and detection/response.
What you'll do
- Lead threat modeling and security reviews across products and cloud infrastructure.
- Build automation, policy-as-code, and security tooling to shift-left security.
- Design and implement secure baselines for cloud resources and Kubernetes infrastructure.
- Drive vulnerability management, remediation, and preventative controls for software supply chains.
- Extend detection and response capabilities to identify malicious activity, triage alerts, and investigate incidents.
- Partner with engineering and operations teams to deliver secure-by-design solutions.
What you'll need
- 7+ years of experience in security engineering or security operations in cloud environments.
- Experience with AWS cloud security (or Azure/GCP with some AWS experience).
- Experience with Kubernetes services (EKS/GKE/AKS) and container security principles.
- Experience securing IAM and cloud identities at scale.
- Experience leading technical security reviews and threat modeling, translating findings into controls.
- Practical understanding of web application security concepts such as OWASP Top-10.
- Hands-on experience with IaC tools (Terraform, CloudFormation, Helm, Pulumi) and security tooling languages (Python, Go, Shell, HCL, Rego).
Details
- Must have legal right to work in the country where the position is based, without visa sponsorship.
Read the full description and apply on the company’s own careers page.