
Security Operations Engineer
Posted Sep 14

Posted Sep 14
This is a fully remote position, open to applicants in Canada.
• Oversee, investigate, and address security threats within CircleCI’s cloud and application environments.
• Leverage security and AI-enhanced tools to enhance detection and triage processes.
• Engage in security risk assessments, manage incident responses, conduct post-incident reviews, and participate in rotating on-call support.
• Transform findings into enhanced security controls and procedures.
• Develop and sustain security tools, controls, and automation across cloud, application, and CI/CD settings.
• Detect vulnerabilities and configuration risks.
• Aid in the creation of security runbooks and fulfill compliance obligations.
• Integrate AI-driven security tools into everyday workflows.
• Assess emerging technologies that can enhance detection, response, and automation capabilities.
• Remain updated on AI-specific security threats and promote responsible practices for utilizing AI in security operations.
• Collaborate with Engineering teams to comprehend security needs and offer practical advice.
• Convert technical risks into straightforward, actionable recommendations.
• Contribute to the planning of security roadmaps, technology assessments, and team documentation.
• Foster strong relationships within Security and Engineering teams.
• A minimum of 3 years of experience in security engineering or security operations, or equivalent proven expertise.
• Practical experience with cloud, application, and CI/CD security, preferably in AWS, GCP, or Azure environments.
• Familiarity with security incident response and standard security tools, including EDR, CNAPP, SASE, vulnerability scanners, and log analysis.
• Capability to develop and maintain security automation and tools, with proficiency in Go, Python, or Terraform.
• Strong security judgment and problem-solving abilities, with the capacity to evaluate risk, make recommendations, and act decisively when information is incomplete.
• Hands-on experience utilizing AI/ML-driven security tools in a production setting.
• Insight into where AI can enhance security workflows and where human judgment is crucial.
• Knowledge of AI-specific threat categories, such as prompt injection, model supply chain risks, and LLM abuse patterns.
• Experience in securing developer platforms, SaaS environments, or CI/CD infrastructure.
• Relevant certifications like CEH, AWS Security Specialty, Security+, or equivalent are desirable.
• Contributions to improving team processes, developing security runbooks, or engaging in internal knowledge sharing are valued.
• Reasonable accommodations for individuals with disabilities during the application or interview process and to perform essential job functions.
• Additional benefits and privileges associated with employment.
Talan
Pragmatike
Supply Chimp
Pragmatike
Get handpicked remote jobs straight to your inbox weekly.