Senior Security Engineer

🕒 May 5

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of iHerb, LLC

iHerb, LLC

1001 - 5000 employees

Founded 1996

🛍️ eCommerce

🧘 Wellness

🛒 Retail

eCommerce • Wellness • Retail

iHerb, LLC is an e-commerce platform that specializes in health and wellness products. The company offers a wide range of products including vitamins, supplements, herbs, sports nutrition, beauty products, grocery items, and more. iHerb is committed to providing high-quality products sourced directly from manufacturers or authorized distributors. The platform is known for its competitive pricing, extensive product reviews, prompt delivery services, and a strong emphasis on customer satisfaction. iHerb serves an international customer base, offering shipping to numerous countries worldwide.

📋 Description

• Design, develop, and maintain automation frameworks and scripts (Python, Bash, Terraform) to streamline security processes and workflows. • Deploy and manage secure, scalable infrastructure on AWS using Terraform via Scalr and Harness, with additional presence in GCP and Azure. • Build, support, and optimize AWS Step Functions, Lambda, and EventBridge workflows from a centralized tooling account that operates across multiple spoke accounts in the AWS Organization. • Maintain Kubernetes clusters using Helm charts, including in-house security automations on pods that integrate with CSPM tools and Jira ticketing processes. • Develop and enforce cloud security guardrails using OPA, Guardrails, Service Control Policies (SCPs), IaC security gates, and tag policies. • Architect, build, and maintain Splunk Enterprise Security (ES) integrations, including onboarding log sources, managing indexes, tuning correlation searches, and configuring automated response actions. • Design and implement Splunk SOAR playbooks to automate security tasks, reduce Mean Time to Respond (MTTR), and scale SOC capabilities. • Serve as the subject matter expert for Okta Identity Engine (OIE) — building and managing scalable SSO policies, modern authentication (SAML/OIDC), and identity lifecycle processes. • Leverage AWS security services (GuardDuty, Macie, IAM, Control Tower, KMS, CloudTrail, EventBridge) to build event-driven automations for threat detection and response. • Own the in-house Jira management process for CSPM findings and the supporting data pipeline that feeds AWS QuickSight dashboards. • Collaborate with cross-functional teams (Dev, Platform, Security, and SOC) to integrate security automation into CI/CD pipelines and shift security left. • Conduct risk assessments, enforce security best practices, and continuously improve our defensive posture through automation and tooling. • Monitor, troubleshoot, and optimize cloud infrastructure and security systems to ensure high availability, performance, and compliance. • Stay current with AWS best practices, security trends, and emerging technologies to drive continuous improvement.

🎯 Requirements

• 10+ years of experience. • Strong hands-on experience with: • Terraform, Kubernetes (EKS + Helm), Docker, and scripting in Python & Bash • AWS services including Step Functions, Lambda, EventBridge, GuardDuty, Macie, IAM, Organizations, and QuickSight • Policy-as-code tools (OPA, Guardrails, SCPs) and IaC security scanning • Splunk Enterprise Security (ES) administration, log onboarding, correlation search tuning, and automated responses • Splunk SOAR playbook development and automation • Okta Identity Engine (OIE), SSO, SAML, and OIDC protocols • Proven ability to work independently with minimal supervision while collaborating effectively with cross-functional teams and providing technical guidance. • Experience designing automation solutions that reduce MTTD and MTTR. • Solid understanding of cloud security principles, compliance frameworks, and secure infrastructure design.

🏖️ Benefits

• Employees (and their families) that meet eligibility criteria as outlined in applicable plan documents are eligible to participate in our medical, dental, vision, and basic life insurance programs and may enroll in our company’s 401(k) plan. • Employees will also be eligible for Time Off and Paid Sick Leave pursuant to the company’s policies. • Employees will enjoy paid holidays throughout the calendar year. • Hired applicant may be awarded Restrict Stock Units and receive annual bonuses pursuant to eligibility and performance criteria defined in the respective plan documents and policies.

Apply Now

Similar Jobs

🕒 May 5

Reddit, Inc.

501 - 1000

👥 B2C

📱 Media

🌍 Social Impact

Senior Machine Learning Engineer developing security-focused ML models for Reddit’s GenAI traffic. Leading model development across the full lifecycle to protect AI systems.

ETL

Python

PyTorch

Tensorflow

Go

🕒 May 5

Tyto Athene, LLC

1001 - 5000

🔒 Cybersecurity

🤖 Artificial Intelligence

🏛️ Government

Cloud Security Engineer focused on AWS & GCP systems security for Tyto Athene. Involves security tool management, incident response, and collaboration with security analysts.

Ansible

AWS

Cloud

Cyber Security

Firewalls

Google Cloud Platform

ITSM

Linux

ServiceNow

Splunk

Terraform

🕒 May 5

Stripe

1001 - 5000

💳 Fintech

🛍️ eCommerce

🤝 B2B

Cloud Security Engineer designing and developing security infrastructure for Stripe, ensuring user data privacy and security controls.

Cloud

🕒 May 5

Phoenix Cyber

11 - 50

🔒 Cybersecurity

🏛️ Government

🏢 Enterprise

Cybersecurity Engineer joining Phoenix Cyber's client delivery team. Providing technical expertise and developing security automations in a fast-paced environment.

AWS

Azure

Cloud

Cyber Security

Docker

ElasticSearch

JavaScript

Kafka

Kubernetes

Linux

Logstash

Node.js

Python

Splunk

🕒 May 5

Red Cup IT

11 - 50

🔒 Cybersecurity

☁️ SaaS

Senior Security Engineer at Red Cup IT, Inc. designing cloud security architectures and automating security processes to defend against modern threats. Leading projects and mentoring junior staff.

AWS

Cloud

Cyber Security

Python

Rust

Go