
Senior Security Engineering Architect
Posted Jul 24

Posted Jul 24
This is a fully remote position, open to applicants in Alabama, +32 more states.
• Take ownership of and uphold the organization's baseline security standards related to Linux hardening, VM image governance, container and Kubernetes security, as well as CI/CD pipeline security controls, ensuring that these standards are practical, well-documented, and easily adoptable by engineering teams.
• Serve as the key liaison between Security, Compliance, and Engineering, interpreting regulatory and policy requirements into actionable guidance that does not hinder delivery speed.
• Collaborate with engineering squads in a consultancy role, integrating into team workflows to evaluate the current security posture, pinpoint vulnerabilities, and provide implementable remediation strategies across bare metal, virtual, and container environments.
• Work closely with the DevSecOps Engineer to identify security controls suitable for codification, ensuring that hardening standards, compliance checks, and policy enforcement are integrated into images, configuration management pipelines, and CI/CD workflows, rather than relying on manual processes.
• Advocate for secure-by-default practices by ensuring that security requirements are visible early in the design and architecture phases, prior to engineering teams commencing their builds.
• Oversee the security review process for infrastructure architecture modifications, collaborating with SecOps on tooling and third-party integration assessments to guarantee that engineering context and requirements are duly represented.
• Create and maintain easily accessible runbooks, playbooks, and onboarding materials that empower engineering teams to independently adopt security best practices across bare metal, virtual, and container environments.
• Foster and maintain cross-functional relationships to identify emerging risks early, synthesizing insights from engineering teams into prioritized remediation tasks that can be automated and scaled.
• Advocate for the security needs of engineering in compliance and risk conversations, ensuring that security strategy remains aligned with operational realities.
• Evaluate program effectiveness through metrics related to adoption, policy compliance rates, and trends in mean-time-to-remediate, leveraging data to continually enhance both the standards and the methods of communication.
• A minimum of 5 years of experience in security engineering, DevSecOps, or a related field, with direct involvement alongside infrastructure and platform engineering teams.
• Profound understanding of Linux hardening, container security, and Kubernetes security standards along with their practical application.
• Proven experience in translating compliance frameworks (such as SOC 2, ISO 27001, PCI-DSS, or similar) into actionable engineering requirements.
• Strong technical writing abilities to create clear, adoption-focused documentation, runbooks, and onboarding materials.
• Experience functioning as a consultant or in an embedded role with engineering teams, balancing security requirements with the need for delivery speed.
• Familiarity with security scanning tools and security controls within CI/CD pipelines.
• Experience in measuring and reporting on the effectiveness of security programs using data-driven metrics.
• Exceptional communication skills with a demonstrated ability to build cross-functional relationships and influence without direct authority.
• Background in infrastructure security across bare metal, virtual, and container environments.
• 100% company-covered insurance premiums for employee medical, dental, and vision plans.
• A 401(k) plan that matches 100% up to 4%, with immediate vesting.
• Professional Development Reimbursement of $2,500 each year.
• 11 Holidays + Paid Time Off Accrual + Rollover Plan.
• Commitment is valued at Vultr! Increased PTO at 3-year and 10-year anniversaries + 1 month paid sabbatical every 5 years + Anniversary Bonus each year.
• $500 stipend for remote office setup in the first year + $400 each subsequent year.
• Internet reimbursement up to $75 per month.
• Gym membership reimbursement up to $50 per month.
• Company-paid Wellable subscription.
GuidePoint Security
Redpanda Data
CyberSheath
Akamai Technologies
Get handpicked remote jobs straight to your inbox weekly.