Security Engineer

Posted 3 days ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Take ownership of the identity program, cloud security posture, and vulnerability management from start to finish.

• Reduce standing access and manual provisioning for joiner-mover-leaver changes, as well as non-human identity management.

• Strengthen and enhance the GCP-first cloud-native environment, focusing on organization policy, IAM least privilege, workload identity, network segmentation, secrets management, and posture monitoring.

• Collaborate with SRE to establish security guardrails for infrastructure-as-code.

• Manage vulnerability processes, including asset coverage, risk-based prioritization, remediation collaboration, SLAs, and actionable reporting.

• Utilize Censys to oversee the company’s external attack surface.

• Develop detection capabilities for identity, cloud, and SaaS.

• Engage in security escalation rotations and lead or co-lead high-severity incidents.

• Conduct blameless post-incident reviews, maintain runbooks, and facilitate tabletop exercises.

• Safeguard the company’s AI presence, including agent identity, MCP servers, tool permissions, secrets, data flows, prompt-injection boundaries, and AI tooling.

• Design and implement agentic security workflows for alert triage, evidence collection, access reviews, phishing response, and posture drift detection.

• Create Slack-native ChatOps requests, approvals, self-service paths, and automation for security processes.

• Work alongside SRE on cloud and infrastructure guardrails, contributing security expertise to their initiatives.


⛳️ Requirements

• Over 5 years of experience in security engineering, with substantial expertise in at least two of the following: identity and access management, cloud security, vulnerability management, detection, and response.

• Practical experience in identity operations, including SSO/SAML/OIDC, MFA and conditional access, device trust, and lifecycle automation.

• Proven experience securing cloud-first or cloud-native environments, preferably GCP, or a strong background in AWS/Azure with a genuine interest in GCP.

• Proficiency in scripting and automation using Python, Go, or similar languages, sufficient to create tools and API integrations.

• Experience in incident response as a primary responder or lead during high-severity incidents, including conducting post-incident analyses.

• Hands-on experience in building with LLMs or agent frameworks.

• Familiarity with a prescriptive control framework such as ISO 27XXX, CMMC, or FedRAMP.

• Ability to navigate ambiguity within a lean team and prioritize tasks independently.

• Strong written communication skills suited for an asynchronous, Slack-centric environment.


🏝️ Benefits

• Identity verification through CLEAR for candidates who receive an offer of employment.

People also viewed

Sony Interactive Entertainment16 hours ago

Senior Security AI Risk Analyst

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$167.5k – $251.3k/year
ApplyView job
Squads16 hours ago

Security Engineer

North AmericaFull-timeCybersecurity / Security Engineer$175k – $220k/year
ApplyView job
Neo4j16 hours ago

Senior Director, Product, Security and Privacy

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$260k – $300k/year
ApplyView job
PingWind Inc. (SDVOSB)17 hours ago

Cloud Security Architect – Engineer

US flagAlabama, +1 more stateFull-timeCybersecurity / Security Engineer
ApplyView job
CSCI Consulting18 hours ago

SAP S/4HANA Defense & Security Functional Lead

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Strategic Systems International18 hours ago

AI Security Engineer – AI, Agentic Security

MX flagMexico, +4 more countriesFreelanceCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers