Sezzle

Senior Security Infrastructure Engineer

Sezzle
Apply
5 days ago
Remote, TurkeySenior

Responsibilities

  • Lead vulnerability management across infrastructure, platforms, and applications, including scanning, dependency analysis, validation, and remediation coordination.
  • Build, operate, and mature SIEM/XDR capabilities through log ingestion, detection rule development, alert tuning, and investigation workflows.
  • Investigate and respond to security incidents across cloud infrastructure and applications, including root cause analysis and long-term remediation.
  • Design detection strategies for suspicious activity and data exfiltration using application and database telemetry.
  • Lead threat modeling and security design reviews to identify risks and strengthen architecture.
  • Design, secure, and improve AWS and Kubernetes infrastructure at scale.
  • Harden infrastructure and CI/CD workflows and implement controls to reduce software and container supply chain risk.
  • Partner with engineering teams to remediate vulnerabilities and improve secure development and deployment practices.
  • Implement security controls aligned with PCI DSS, SOC 2, and other compliance requirements.
  • Develop automation, including AI-assisted automation, to improve security operations, detection, and response.
  • Triage and validate external security findings, including bug bounty reports.

Requirements

  • 6+ years of experience in security, software, or infrastructure engineering.
  • Hands-on experience securing cloud-based production systems and working with real-world security challenges.
  • Experience with threat modeling and security design reviews for modern systems.
  • Strong experience with vulnerability scanning, triage, validation, remediation coordination, and verification.
  • Experience with SIEM platforms such as Wazuh, Splunk, or ELK for detection engineering, monitoring, and incident response.
  • Experience triaging findings from vulnerability scanners and bug bounty programs.
  • Strong knowledge of AWS, Linux, and Kubernetes infrastructure, including security architecture and hardening.
  • Experience with CI/CD hardening and mitigation of software supply chain risks.
  • Experience with container and dependency security tools such as Snyk, Trivy, or Grype.
  • Ability to investigate issues using logs, cloud tooling, and system-level data.
  • Knowledge of common security vulnerabilities and mitigation strategies, including OWASP and SANS guidance.
  • Working knowledge of PCI DSS, SOC 2, and other compliance expectations.
  • Experience working with Claude or equivalent large language model tools is required.
  • Preferred qualifications include detection-rule tuning, cloud-native security controls, IAM, network segmentation, telemetry pipelines, secure CI/CD design, risk assessment, and automation or AI experience.

Benefits

  • Full-time remote role.
  • Salary range of $5,000-$9,500 USD gross per month.
  • Opportunity to work on security capabilities across cloud infrastructure, applications, developer workflows, detection, supply chain security, and data protection.
  • Company culture includes musicians, yogis, cyclists, chefs, golfers, dog-lovers, and rock-climbers.

Tech Stack

AWSElasticsearchGitGoKubernetesLinuxMySQLPostgreSQLPythonReactReact NativeSplunkTypeScript

Categories

Sezzle

About Sezzle

201-500 employees
Contact me