4 months ago
Responsibilities
- Design, implement, and improve secure cloud-native architectures and CI/CD pipelines.
- Identify cloud infrastructure risks, enforce security best practices, and harden systems across the technology stack.
- Automate security controls and educate developers on vulnerability prevention.
- Help design and evolve information security governance and compliance programs, including policies, standards, procedures, and awareness.
- Collaborate with engineering, infrastructure, and product teams to align security controls with business and technical requirements.
- Conduct security design reviews, threat modeling, and security testing.
Requirements
- 5+ years of experience in a security engineering role.
- Mastery of cloud infrastructure, particularly AWS.
- Prior experience with infrastructure security and Kubernetes.
- Familiarity with secret management tools such as Vault or KMS.
- Strong understanding of information security concepts and regulatory frameworks and standards including SOC2, ISO 27001, and NIST CSF.
- Strong written and verbal communication skills, including the ability to present technical details as clear, risk-focused recommendations.
Benefits
- Remote-first global workforce with a New York office.
- Professional reimbursement program for industry conferences, certifications, and related activities.
- Medical, dental, and vision coverage in the US and some other countries.
- 401k retirement plan with company match for US employees.
- Wellness stipend.
- Home office setup and ergonomic equipment program.
- This role cannot be performed in California or Colorado.
