
Security Engineer
Posted 21 hours ago

Posted 21 hours ago
This is a fully remote position, open to applicants in United States.
• Take ownership of production security across a multi-cloud environment that includes AWS, GCP, Azure, and Vercel.
• Ensure the security of multi-tenant SaaS, dedicated VPCs, self-hosted Kubernetes, and air-gapped deployments.
• Safeguard the Hermes Agent platform by implementing sandboxing, kernel-level file system and network isolation, agent identity management, credential controls, egress controls, and trace integrity measures.
• Manage SOC 2 technical controls, evidence collection, remediation efforts, and ongoing readiness activities.
• Strengthen identity and access management, which encompasses SSO and SAML consolidation, least-privilege access reviews, 2FA, and BYOD policies.
• Lead initiatives in vulnerability management, penetration testing, incident response, and cloud-native security monitoring.
• Enhance the secure software development lifecycle with practical controls, such as peer-review requirements, while ensuring high development velocity.
• Assist enterprise initiatives by completing security questionnaires, guiding architecture reviews, and addressing penetration-testing necessities.
• Collaborate with teams across engineering, infrastructure, product, FDE, and operations to identify and mitigate security risks.
• A minimum of 8 years of security engineering experience with extensive hands-on knowledge in infrastructure and multi-cloud security.
• Proven history of securing production SaaS environments and managing security comprehensively at a rapidly growing technology firm.
• Solid foundation in Kubernetes, identity, and identity and access management (IAM) principles.
• Familiarity with enterprise SSO, SAML, and SCIM protocols.
• Experience in implementing compliance-driven engineering initiatives such as SOC 2 or ISO 27001.
• Strong comprehension of vulnerability management, incident response, access controls, penetration testing, and secure software development methodologies.
• Interest in securing agentic AI systems and addressing risks related to agent identity, tool permissions, prompt injection, and data provenance.
• Ability to thrive in a high-velocity, open-source-native engineering culture.
• Security-focused and pragmatic, demonstrating sound judgment in balancing protection and development speed.
• Experience supporting regulated clients, financial services organizations, or air-gapped deployments is a plus.
• Previous experience securing AI, machine learning, or open-source systems is advantageous.
• Familiarity with detection and response tools in cloud-native settings is considered a plus.
• Knowledge of kernel-level sandboxing, network isolation, and agent security practices is beneficial.
• Experience assisting Fortune 500 security reviews, architecture assessments, and penetration-testing requirements is appreciated.
• Competitive salary and performance-based bonuses.
• Comprehensive health, dental, and vision insurance.
• Flexible working hours and remote work opportunities.
• Professional development and training programs.
• Collaborative and innovative work environment.
Driven Brands Inc.
Akamai Technologies
Deutsche Telekom IT Solutions HU
CBIZ
Get handpicked remote jobs straight to your inbox weekly.