Staff Security Engineer

🕒 Março 19

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $220.000 - $240.000 / ano

⏰ Tempo Integral

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

info

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Assured

Assured

11 - 50 funcionários

☁️ SaaS

🤖 Inteligência Artificial

Insurance • SaaS • Artificial Intelligence

A Assured é uma empresa que fornece transportadoras de P&C (propriedade e acidentes) com soluções inovadoras para o processamento de sinistros. Sua plataforma oferece uma suíte de soluções modulares projetadas para melhorar a experiência do cliente, fechar sinistros rapidamente e melhorar as taxas de perda por meio da coleta e processamento estruturado de dados. A plataforma da Assured facilita todo o ciclo de vida dos sinistros, incluindo FNOL (First Notice of Loss), mensagens, detecção de fraudes e gerenciamento de catástrofes (CAT). Suas soluções estão disponíveis como ofertas SaaS de marca branca, não exigindo integração e podem ser implementadas rapidamente. Com foco em abordagens baseadas em dados, eles visam transformar a gestão de sinistros na indústria de seguros aproveitando a inteligência artificial e proporcionando processos automatizados e simplificados.

Descrição

• Lead security architecture and design reviews across applications, infrastructure, and integrations to ensure secure patterns are embedded early in the development lifecycle. • Conduct and coordinate penetration testing, threat modeling, and security reviews for critical services, new features, and third-party integrations. • Design and implement security automation within CI/CD pipelines to ensure secure coding practices and infrastructure policies are enforced at scale. • Partner with infrastructure and DevOps teams to secure cloud platforms (AWS) and improve identity, network, and workload security. • Build security observability and detection capabilities, including security data pipelines, SIEM integrations, and threat intelligence signals. • Think like an attacker—identify systemic weaknesses and design controls that protect against entire classes of attacks, not just individual vulnerabilities. • Work closely with developers to improve security practices through secure architecture guidance, code review support, and developer enablement. • Lead incident response investigations and help build processes for identifying, analyzing, and mitigating security incidents. • Own and evolve the bug bounty program, including triage, response processes, and improvements to vulnerability management workflows. • Develop security standards, playbooks, and training programs that make security practices easier for engineering teams to adopt. • Help define the security roadmap, identifying initiatives that improve both risk posture and operational efficiency.

🎯 Requisitos

• Deep understanding of application security, cloud security, and modern threat landscapes, including common vulnerabilities and attack techniques (OWASP Top 10, MITRE ATT&CK, etc.) • Strong software engineering background with experience writing production-grade code or automation (Python, Typescript, or similar) • Hands-on experience securing cloud-native infrastructure, especially AWS, including IAM, networking, and containerized workloads. • Experience building or integrating DevSecOps pipelines, including SAST, DAST, IaC scanning, and container security tooling. • Experience designing security telemetry pipelines using tools such as SIEM platforms, observability systems, or data lakes. • Experience running or participating in penetration testing, threat modeling, or architectural security reviews. • Proven ability to collaborate effectively with engineering, DevOps, and product teams to drive secure design decisions. • Excellent communication skills and the ability to clearly explain complex security risks and trade-offs to both technical and non-technical stakeholders. • Strong understanding of SaaS architectures, distributed systems, and internet-facing platforms. • Experience developing security frameworks aligned with CIS benchmarks, NIST, or SOC2 / PCI / HIPAA compliance requirements. • Experience building security detections, threat intelligence pipelines, or runtime protection mechanisms. • Hands-on experience with Kubernetes, container security, and infrastructure-as-code (Terraform, Ansible).

🏖️ Benefícios

• Competitive Compensation: Competitive salary and equity packages for all employees • Healthcare Plan: Platinum medical, dental, and vision • Free life insurance: Including long-term disability & short-term disability • Unlimited PTO: Uncapped vacation days & paid holidays • Family Leave: Maternity & paternity • 401(k) Contribution: Assured contributes 3% of your income, even if you don't contribute • WFH Benefits: Lunch on us 2x/week, monthly phone stipend & other home office perks • Health FSAs & HSAs: Pre-tax accounts for out-of-pocket medical expenses • Team events & Offsites: We're remote, but we regularly get together

Candidatar-se

Vagas Similares

🕒 Março 19

SafePaaS

11 - 50

🔒 Cibersegurança

☁️ SaaS

📋 Conformidade

EBS Security Technical Consultant solving complex business issues from strategy to execution. Leading security configuration and risk management for Oracle EBS Finance modules.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 19

TEECOM

51 - 200

📡 Telecomunicações

Principal Consultant responsible for delivering multi-discipline projects for TEECOM. Leading design efforts, cultivating client relationships, and mentoring team members.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $145.000 - $180.000 / ano

⏰ Tempo Integral

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 18

Speed

11 - 50

₿ Cripto

💳 Fintech

🔌 API

Sales Director responsible for driving revenue growth by selling Clearspeed's solutions to US federal government agencies. Develops strategies and manages relationships within the defense and security sectors.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 18

LendSwift

11 - 50

💸 Finanças

👥 B2C

💳 Fintech

Chief Compliance Officer / Chief Information Security Officer focusing on compliance in consumer lending at LendSwift. Oversee regulatory adherence and data security in a fintech environment.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 18

Tango

201 - 500

🏠 Imobiliário

☁️ SaaS

🏢 Corporativo

Staff Security Engineer at Tango managing vulnerabilities and securing applications and infrastructure. Collaborating with engineering teams to enhance security practices and mentoring engineers.

🗣️🇺🇸🇬🇧 Inglês obrigatório