Security Engineer

Stelle nicht auf LinkedIn

🕒 vor 1 Monat

🇺🇸 Vereinigte Staaten – Remote

💵 $160.000 - $210.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of Flox

Flox

11 - 50 Mitarbeiter

☁️ SaaS

⚡ Produktivität

Software • SaaS • Productivity

Flox ist eine integrierte Software-Plattform, die darauf ausgelegt ist, Teams bei der effektiven Verwaltung von Software und deren Abhängigkeiten während des gesamten Softwarelebenszyklus zu unterstützen. Sie vereinfacht den Onboarding-Prozess für neue Projekte, sodass Entwickler ihre Umgebungen mit minimaler Komplexität schnell einrichten können. Flox-Umgebungen sind flexibel und können leicht zusammengestellt, synchronisiert und geteilt werden, um eine konsistente Leistung über verschiedene Architekturen und Betriebssysteme hinweg sicherzustellen. Das Tool zielt darauf ab, häufige Probleme in der Entwicklung zu lösen, wie das berüchtigte 'es funktioniert auf meiner Maschine'-Problem, und bietet eine zuverlässige und effiziente Lösung für das Management von Softwareentwicklungsumgebungen.

Beschreibung

• Help evaluate whether to stand up an internal SIEM or work with an outsourced SOC provider—then implement whichever path makes sense for where we are as a company. • Build incident response runbooks and triage workflows—then actually test them (e.g. test backups in case needed for ransomware recovery) • Be the person who sees something and does something about it • Scan and harden our AWS posture hands-on: IAM policies, SCPs, security group hygiene, GuardDuty, Security Hub, and automated compliance guardrails need to be evaluated and maintained • Own Cloudflare configuration across WAF rules, DDoS protection, bot management, Zero Trust access, and DLP policies—keeping rules current and tuned as the product evolves • Implement IaC security scanning (Checkov, tfsec, or similar) directly into CI/CD pipelines • Deploy and manage endpoint protection across developer systems and production endpoints—covering EDR, device posture, behavior monitoring (including dynamic scans), DLP, and threat detection • Ensure developer machines (Mac-heavy environment typical of engineering teams) meet baseline security standards while minimizing friction that slows people down. • Define and enforce endpoint compliance policies, including disk encryption, patch posture, and application controls • Secure our build and release pipelines • Consider SLSA framework adoption and supply chain integrity attestations for our catalog and environments • Stand up dependency vulnerability scanning and own the remediation workflow end-to-end for third-party services, libraries, middleware, operating systems, and SaaS • Integrate SAST and SCA tooling (Semgrep, Snyk, GitHub Advanced Security) into developer workflows • Participate in security design reviews and threat modeling for new features • Work shoulder-to-shoulder with developers to find and fix vulnerabilities using a risk-based model instead of just vulnerability aging reports • Audit and rationalize IAM across AWS, Cloudflare, SaaS applications, and internal tooling; implement the fixes, not just the findings • Drive SSO consolidation, enforce MFA universally, and implement least-privilege access in practice, not just policy • Build a lightweight, repeatable access review process—something that actually runs on a cadence and produces real decisions • Own joiner/mover/leaver processes so that entitlements stay clean as the team grows • Evaluate and implement an appropriate identity governance solution for our stage—not an enterprise IGA platform, but something that gives us control and auditability

🎯 Anforderungen

• 3–5 years of hands-on security engineering experience, ideally at a software company or cloud-native environment • A demonstrable track record of implementing security tools and controls, not just scoping or recommending them • Solid working knowledge of AWS security services: IAM, SCPs, GuardDuty, Security Hub, CloudTrail, and related tooling • Hands-on experience with Cloudflare—WAF rule management, Zero Trust, DLP, or similar; comfort learning what you haven’t used yet • Experience deploying and managing endpoint protection (EDR/MDM) across a mixed developer and production environment • Familiarity with software supply chain concepts: SBOMs, dependency management, artifact signing, SLSA • Experience integrating SAST, SCA, or DAST tools into CI/CD pipelines • Comfort with scripting or light automation (Python, Bash, or similar) to build repeatable processes • Ability to work independently, ruthlessly prioritize, and operate without a playbook • The kind of person who is bothered when something is insecure and doesn’t wait for someone else to fix it.

🏖️ Vorteile

• Competitive salary • Meaningful equity in a well-funded company • Flexible hybrid environment

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 1 Monat

Etched

11 - 50

🏭 Fertigung

🤖 Künstliche Intelligenz

🔧 Hardware

Security Engineer at Etched managing security for AI hardware infrastructure. Responsible for monitoring, detection, and response to safeguard critical systems and data.

🇺🇸 Vereinigte Staaten – Remote

💵 $150.000 - $250.000 / Jahr

💰 €5.400.000 Seed Round im 2023-05

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

Gartner

10.000+ Mitarbeiter

📣 Marketing

📦 Logistik

🏥 Gesundheitswesen

Senior Director Analyst providing insights on AI data security and management for Gartner clients. Engage with clients through research reports and presentations while mentoring within the team.

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cloud

Cyber Security

🕒 vor 1 Monat

Apollo Information Systems

51 - 200

💼 Beratung

🏥 Gesundheitswesen

📦 Logistik

Technical Assessor at Apollo Information Systems conducting cybersecurity assessments. Leading assessment efforts and providing actionable guidance to enhance clients' security posture.

🇺🇸 Vereinigte Staaten – Remote

💵 $80.000 - $120.000 / Jahr

💰 €5.000.000 Seed Round - Apollo Information Systems im 2025-02

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

Tenable

1001 - 5000

🔒 Cybersecurity

☁️ SaaS

🏢 Unternehmen

Senior Software Engineer focusing on low-latency systems programming for cloud security at Tenable. Seeking expertise in high-performance code and asynchronous programming.

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

VerTALENTS

11 - 50

🎯 Rekrutierung

🔒 Cybersecurity

Cloud Security Engineer securing cloud environments through automation and vulnerability assessments. Collaborating with engineering teams to develop security controls across AWS, Azure, and GCP.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich