
Security Engineer
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in Colorado.
• Develop and uphold security architecture along with engineering processes and protocols.
• Design system architectures that fulfill established cybersecurity standards while aligning with client requirements.
• Define, document, and effectively communicate security requirements.
• Create security architecture requirements and implementation guidance based on NIST 800-53 and other security control frameworks.
• Architect, design, implement, maintain, and operate information system security controls and countermeasures.
• Provide methodologies and patterns for securing integrations with external security system vendors and cloud providers.
• Lead regular reviews of architecture and design to ensure adherence to requirements.
• Assess and contribute to the lifecycle management of various security technologies.
• Identify security risks and control gaps within systems, designs, products, data flows, and processes; recommend corrective actions for architecture, integrations, controls, and operations.
• Engage in the development of security requirements, architectures, and documentation for new technology deployments.
• Conduct secure architecture and design reviews and incorporate secure-by-design principles into CI/CD pipelines and Agile development methodologies.
• Maintain the security architecture roadmap and strategic planning.
• Utilize emerging technologies and advanced security practices.
• Construct, maintain, and enhance security architecture metrics and reporting.
• Act as a subject matter expert/contributor to enhance the overall security framework and program.
• Mentor junior security engineers and analysts.
• Collaborate closely with information security engineers, teams, stakeholders, and both internal and external software development teams.
• Travel to the Corporate Headquarters in Denver, Colorado, or other office locations across North America as needed.
• Minimum of 5 years of relevant experience in a technical domain (e.g., cybersecurity, software development, or systems administration).
• Bachelor's Degree in a technical field such as Cyber Security, Information Technology, Computer Science, or Information Systems - or equivalent professional experience.
• At least one current industry-recognized security certification; CISSP, CISM, CISA, GIAC, or equivalent experience.
• Outstanding communication and interpersonal skills, with the ability to effectively communicate and collaborate with cross-functional teams, matrixed organizations, and both technical and non-technical stakeholders.
• Proven experience with systems that comply with NIST 800-53, NIST CSF, or ISO 27001-2022 security control frameworks.
• Exceptional knowledge and understanding of the creation, implementation, and security of cloud technologies such as AWS and Azure.
• Familiarity with Information Security risk assessment methodologies and standards.
• Highly adaptable, self-motivated, eager to learn, and possess a strong passion for cybersecurity.
• Excellent verbal and written communication skills in English.
• Preferred: advanced knowledge of common attacks, attack methodologies, and defense architectures.
• Preferred: experience in securing multi-tenant compute services, microservices, and modern APIs.
• Preferred: working knowledge of common web and container-based vulnerabilities.
• Preferred: experience with the development and implementation of Information Security policies and procedures.
• Preferred: experience in developing technical documentation, including reports, proposals, statements of work, and whitepapers.
• Must be eligible to work without sponsorship.
• Continuous investment in your professional development.
• Immediate access to a comprehensive health and wellness benefits package, including an annual wellness stipend.
• 401k plan with up to a 4% match and immediate vesting.
• Flexible and generous paid time off (FTO).
• Employee Stock Purchase Program.
• Opportunity for an annual bonus.
GitLab
GitLab
Cisco
Lovesac
Get handpicked remote jobs straight to your inbox weekly.