
Senior Cybersecurity Engineer
Posted Jul 24

Posted Jul 24
This is a fully remote position, open to applicants in United States.
• Enhance Indico’s technical security framework across AWS, Kubernetes, CI/CD, product security, internal systems, and incident response.
• Collaborate with the CISO and CTO to translate security priorities into actionable technical controls, standards, reviews, and operational processes.
• Evaluate Engineering work against security standards, with the authority to request modifications when necessary.
• Work alongside Engineering on AWS security measures, including IAM, networking, account structure, logging, encryption, key management, backups, production access, and customer-specific environments.
• Assess and enhance Kubernetes and container security measures, such as workload identity, RBAC, network boundaries, image security, runtime monitoring, and deployment patterns.
• Establish and refine secure CI/CD methodologies, including GitHub permissions, branch protections, privileged workflows, secrets management, release controls, and deployment access.
• Define and supervise processes for vulnerability management, committed-secret response, secure development, incident response, and access control while Engineering, Platform, IT/Ops, and system owners execute them within their areas.
• Provide product security assistance, including secure design reviews, threat modeling for sensitive features, scanner tuning, and high-risk change assessments.
• Enhance detection and response capabilities across tools such as CloudTrail, GuardDuty, CrowdStrike, SIEM/logging platforms, vulnerability scanners, and secrets detection.
• Oversee daily security monitoring and response operations, including alert routing, triage expectations, escalation paths, and detection enhancements.
• Coordinate technical containment during security incidents across Engineering, Platform, IT/Ops, and leadership teams.
• Maintain incident response runbooks and collaborate with the CISO on severity assessment, executive escalation, compliance coordination, and customer communication strategies.
• Develop practical security guidelines, standards, procedures, and runbooks for security-sensitive activities such as production access, secrets management, vulnerability remediation, incident response, customer data handling, and secure engineering practices.
• Sustain reusable technical security documentation, standard responses, and evidence packages to support customer due diligence and compliance.
• Assess security tools and vendors with a focus on technical coverage, operational compatibility, and minimizing manual workload.
• Create or sponsor lightweight automation, checks, dashboards, and workflows that facilitate repeatable security controls.
• 6+ years of relevant security experience, preferably in startup, SaaS, cloud-native, or enterprise software settings.
• Strong practical experience with AWS security, including IAM, networking, logging, monitoring, encryption, access controls, and production security.
• Familiarity with securing Kubernetes, containers, CI/CD pipelines, infrastructure-as-code, and modern cloud deployment methodologies.
• In-depth understanding of identity and access management, least privilege principles, privileged access, workload identity, and service-to-service permissions.
• Working knowledge of application and product security, covering authentication, authorization, secure coding practices, common web vulnerabilities, and secure design reviews.
• Experience in defining or managing vulnerability management, secrets management, secure development, access control, or incident response processes.
• Background in secrets management, cloud key management, encryption design, data residency, threat modeling, or secure SDLC programs.
• Experience with security monitoring, alert triage, incident response coordination, and remediation tracking.
• Proficiency in Python, Go, Bash, or other scripting languages for security automation.
• Capability to evaluate infrastructure, application, and operational changes for significant security risks.
• Excellent written and verbal communication skills, including the ability to provide clear technical guidance, standards, runbooks, and customer-facing security documentation.
• Remote work support.
• Flexible working hours.
• Opportunities for professional development.
Leidos
Cisco
RELX
TASQ Staffing Solutions
Get handpicked remote jobs straight to your inbox weekly.