
Lead Security Engineer
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in Mexico, +3 more countries.
• Oversee security comprehensively across the PHP/Laravel and TypeScript/React codebase, AWS infrastructure, payment and customer-data processes, as well as compliance strategies.
• Define a long-term security vision and implement scalable security measures.
• Develop threat models, automated scanning procedures, incident runbooks, and security protocols.
• Take charge of application security, which includes secure SDLC, code and design evaluations, CI scanning, and vulnerability management initiatives.
• Enhance AWS and infrastructure security, focusing on IAM, networking, encryption, secrets management, and EKS/Kubernetes fortification.
• Identify PCI scope and facilitate SOC 2 and LGPD compliance readiness.
• Oversee vendor risk management and address security inquiries from customers or auditors.
• Expand detection capabilities utilizing Datadog, Sentry, and AWS signals.
• Lead incident response efforts and establish baseline Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR).
• Define security controls, review processes, and guidelines for AI-generated code.
• Develop standards, playbooks, and recruitment criteria for the future security team.
• Work closely with delivery teams and Cloud & DevOps, initially engaging in the majority of hands-on tasks.
• Create a business case and strategy for the initial security hires, with a clear trajectory to lead a small team within approximately 12–18 months.
• Practical expertise in at least three areas: application security, cloud security, compliance, and incident response.
• Significant experience in establishing and managing security controls across various domains.
• Proficiency in utilizing AI tools on a daily basis for triaging findings, threat modeling, reviewing AI-generated code, drafting detections, and policy formulation.
• Background in application security, threat modeling, secure SDLC, code and design review, SAST, secret scanning, dependency scanning, and vulnerability management.
• Experience securing AWS infrastructure, including IAM, networking, encryption, secrets management, and EKS/Kubernetes fortification.
• Familiarity with PCI scope mapping, SOC 2 and LGPD compliance, vendor risk management, and security questionnaires.
• Experience in detection and response utilizing Datadog, Sentry, and AWS signals.
• Capability to construct automated security gates, secure coding standards, and assessments for AI-generated code.
• Hands-on engineering skills to create scripts, develop pipelines, configure AWS guardrails, and implement detections.
• Ability to pragmatically prioritize risks and automate security measures.
• Strong collaborative skills with delivery teams and Cloud & DevOps.
• Awareness of payment and marketplace risks.
• Enthusiasm for shaping a security function and advancing into team leadership roles.
• Base salary: $80,000–$100,000 USD annually.
• Lead security initiatives and elevate them to new heights.
• Competitive cash compensation that is top-of-market.
• Fully remote work opportunity with a US-distributed engineering team.
• Deep-focus and asynchronous work environment.
• Flexible autonomy to manage your own workspace.
• AI tools provided, including Claude Code and the engineering agent stack.
Integrity360
Rackspace Technology
Efficient Computer
Presidio
Get handpicked remote jobs straight to your inbox weekly.