Security Engineer
Quick Summary
Bachelor's degree in a relevant field with 4 years of experience, or at least 6 years of practical experience in security engineering, detection engineering, or incident response.
As a Security Engineer, you will take a hands-on role in protecting cloud infrastructure, applications, and customer data across a modern technology environment. You will identify and remediate vulnerabilities directly in application repositories and infrastructure code rather than simply documenting security findings. The role combines vulnerability management, detection engineering, cloud security, application security, and incident response. You will build and tune SIEM detections, strengthen AWS security controls, and respond directly to security incidents from investigation through remediation. Working within a small, senior, globally distributed security team, you will collaborate with engineering and business stakeholders across the organization. This remote U.S. opportunity is designed for an engineer who enjoys automation, solving complex security problems, and turning findings into measurable improvements.
- Identify and remediate vulnerabilities across applications, infrastructure, and cloud environments by contributing directly to application repositories and Terraform code and driving fixes through deployment.
- Build, maintain, and tune security detections within a SIEM, reducing false positives and improving detection coverage while mapping capabilities to MITRE ATT&CK.
- Lead security incident response activities, including investigation, containment, evidence handling, root-cause analysis, and tracking remediation through completion.
- Harden AWS environments using services and controls including IAM, GuardDuty, Security Hub, Config, CloudTrail, KMS, Secrets Manager, VPC controls, and least-privilege access.
- Strengthen security throughout the software delivery pipeline through code scanning, dependency management, secret scanning, container and image scanning, and Kubernetes admission controls.
- Automate repetitive security operations by developing workflows and scripts that support alert triage, enrichment, investigation, and remediation.
- Develop and maintain security runbooks, standards, detection documentation, and technical evidence supporting compliance requirements.
- Collaborate with engineering, sales, executive, and other cross-functional stakeholders to communicate security risks and drive practical remediation.
- Contribute to security programs supporting PCI DSS Level 1, GDPR, and SOC 2 requirements.
Requirements
~2 min read- Bachelor's degree in a relevant field with 4 years of experience, or at least 6 years of practical experience in security engineering, detection engineering, or incident response.
- Strong programming skills and the ability to investigate unfamiliar application code, understand vulnerabilities, and implement fixes through pull requests.
- Deep hands-on AWS security experience, including IAM and least-privilege design, GuardDuty, CloudTrail, KMS, VPC controls, and securing containerized and serverless workloads.
- Practical experience with security detection engineering in a SIEM, including writing detection rules, tuning alerts, managing false positives, and evaluating detection coverage.
- Proven cloud incident response experience covering investigation, containment, evidence handling, root-cause analysis, and post-incident documentation.
- Strong application security fundamentals, including the OWASP Top 10, dependency and secrets management, and CI/CD security practices such as SAST, DAST, SCA, and infrastructure-as-code scanning.
- Strong written and verbal communication skills, with the ability to explain technical risks clearly and influence stakeholders through evidence and sound reasoning.
- Experience with Datadog Cloud SIEM, CrowdStrike, Okta, or GitHub Advanced Security is a plus.
- Experience supporting PCI DSS Level 1 or SOC 2 audits from an engineering perspective is a plus.
- Experience with Kubernetes, ArgoCD, policy-as-code, Python automation, or Terraform is a plus.
- Must be currently authorized to work in the United States without requiring employer sponsorship for a work visa.
What We Offer
~2 min readLocation & Eligibility
Listing Details
- Posted
- September 30, 2026
- First seen
- September 30, 2026
- Last seen
- September 30, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 68%
- Scored at
- September 30, 2026
Signal breakdown
Similar Security Engineer jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.