SpyCloud logo
SpyCloud

The leader in operationalizing Cybercrime Analytics to prevent ATO, ransomware, and online fraud.

Senior Security Engineer

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 51-200H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

87 days ago

Salary

0

Seniority

Senior

Job Description

Senior Security Engineer

SpyCloud

SpyCloud is on a mission to make the internet a safer place by disrupting the criminal underground. SpyCloud’s solutions thwart cyberattacks and protect more than 4 billion accounts worldwide. Cybersecurity is an exciting, evolving space, and being at the forefront of the fight to disrupt cybercrime makes SpyCloud a special place to work. If you’re driven to align your career with a fantastic mission, look no further! Overview of Job/Team: We are seeking an experienced Security Engineer to join our internal security team who thrives in a fast-paced environment. You have a passion for innovation, solid design principles, and high-quality development. You bring strong infrastructure and detection engineering fundamentals, a security-first mindset, and a deep understanding of cloud and networking concepts. What You'll Do: - Infrastructure Design and Maintenance: - Design, improve, and maintain secure, durable, and performant infrastructure to power applications, security tooling, log collection, and data mining/ETL workflows. - Evolve log collection, processing, and storage infrastructure enabling security monitoring and investigations. - Support multi-account and multi-region AWS networking architectures with security-first principles. - Detection Engineering and Automation: - Develop and maintain Splunk detection content aligned to the relevant frameworks and evolving threat intelligence. - Administer the Splunk Cloud platform, including search health, log health, and app, platform, and content updates. - Design and implement SOAR playbooks to automate investigation and response workflows. - Integrate infrastructure security tooling and automation to enhance detection, prevention, and response capabilities. - Build and maintain detection-as-code and automated deployment pipelines to ensure consistency, repeatability, and auditability. - Continuously refine detection logic to reduce false positives and increase signal quality. - Security and Compliance: - Implement and operate security technologies across the enterprise, such as an endpoint security platforn. - Support incident response and investigation escalations. - Proactively meet standards for information security and compliance, such as SOC 2/ISO27001. - Implement and uphold security measures across all infrastructure components. - Work cross-functionally with Product, IT, DevOps, and Engineering teams to drive secure-by-default practices. - Technical Leadership - Drive architectural and design decisions for SpyCloud’s detection program and platforms. - Mentor junior engineers and establish best practices across infrastructure and detection engineering domains. Requirements: - Professional Experience: - At least 5 years of professional experience in a DevOps, Security Engineering, or Detection Engineering role maintaining relevant production infrastructure. - Technical Proficiency: - Strong working knowledge of AWS services such as EC2, ECS or EKS, Lambda, ELBs, Transit Gateway, VPC, CloudWatch, S3, Code/Build/Pipeline/Deploy, etc. - Strong working knowledge of Terraform or similar tools, AWS CLI/SDK, Boto. - Extensive experience with SIEM content engineering, data transformation, and log onboarding. - Proficiency with scripting languages such as Python, Bash, etc. - Proficiency integrating systems via API and their respective authentication mechanisms. - Strong understanding of networking fundamentals and troubleshooting techniques for bare metal and containerized workloads. - Experience with best practice build pipelines, including Git/GitHub. Nice to Have: - Experience with EDR tools, such as CrowdStrike Falcon and Sentinel One. - Experience with SOAR playbook building and automation, such as Tracecat and Chronicle SecOps. - Experience with Cribl Stream. - Familiarity with Cloud Security Posture Management, such as Crowdstrike and Wiz. Benefits + Perks: At SpyCloud, we are committed to working alongside individuals who are equally passionate about preventing cybercrime, regardless of their department or role. Guided by our core values in all business decisions, we prioritize unity in our mission and ensure all SpyCloud employees have the support and benefits they need to stay focused on our goals. In addition to our engaging workspace in South Austin, flexible and remote-friendly work options, and competitive salary package, we offer our employees a comprehensive benefits package that includes: - 401(k) - Health, Vision, and Dental Insurance - Generous PTO Plan - In-office meals provided SpyCloud is not sponsoring visas at this time. U.S.-Based Benefits + Perks (for Full Time Employees): At SpyCloud, we are committed to working alongside individuals who are equally passionate about preventing cybercrime, regardless of their department or role. Guided by our core values in all business decisions, we prioritize unity in our mission and ensure all SpyCloud employees have the support and benefits they need to stay focused on our goals. In addition to our engaging workspace in South Austin, flexible and remote-friendly work options, and competitive salary package, we offer our employees a comprehensive benefits package that includes: - 401(k) with Employer Contribution - Health, Vision, and Dental Insurance - Health Savings Account (HSA) available with Employer Contribution - Employer Paid Life, Short-term, and Long-term Disability Insurance - Generous PTO Plan and 16 paid holidays per year U.K.-Based Benefits + Perks (for Full Time Employees): - Retirement Savings Plan with Employer Contribution - Employer Provided Private Health Insurance and Healthcare Cashplan - Employer Paid Life Insurance and Income Replacement - Generous Holiday Plan and 14 paid holidays per year About SpyCloud: SpyCloud transforms recaptured darknet data to disrupt cybercrime. Its automated identity threat protection solutions leverage advanced analytics and AI to proactively prevent ransomware and account takeover, detect insider threats, safeguard employee and consumer identities, and accelerate cybercrime investigations. SpyCloud's data from breaches, malware-infected devices, and successful phishes also powers many popular dark web monitoring and identity theft protection offerings. Customers include seven of the Fortune 10, along with hundreds of global enterprises, mid-sized companies, and government agencies worldwide. Headquartered in Austin, TX, SpyCloud is home to more than 200 cybersecurity experts whose mission is to protect businesses and consumers from the stolen identity data criminals are using to target them now. To learn more and see insights on your company’s exposed data, visit spycloud.com. Our Mission: Our mission is to make the internet a safer place by disrupting the criminal underground. Together with our customers and partners, we aim to end criminals’ ability to profit from stolen information. Who We Are: SpyCloud is a place for innovative, collaborative, and problem-solvers to thrive. Individually, we’re amazing, but together, we’re unstoppable. We celebrate diversity and various perspectives and aim to create an inclusive and supportive environment for all. We are proud to be an Equal Employment Opportunity and Affirmative Action employer of choice. All aspects of employment decisions will be based on merit, performance, and business needs. We do not discriminate on the basis of any status protected under federal, state, or local law. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. Women, minorities, individuals with disabilities, and protected veterans are encouraged to apply. SpyCloud complies with applicable state and local laws governing nondiscrimination in employment. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. SpyCloud expressly prohibits any form of workplace harassment. Improper interference with the ability of SpyCloud's employees to perform their job duties may result in discipline up to and including discharge. SpyCloud shares the right to work and participates in the E-Verify program in all locations. If you need assistance or accommodation due to a disability, you may contact us. Our Culture: Our culture is something really special. We’re all driven to disrupt the cybercriminal economy as we keep customer accounts safe from compromise. We support a truly worthy and serious mission, but we have fun doing it together. If you are driven, inventive, and collaborative, you’ll fit right in. SpyCloud’s Recruitment Policy: We will never ask an applicant for sensitive or personal financial information during the recruitment process. We advise all applicants seeking employment with SpyCloud to review available information on recruitment fraud. Anyone who suspects that they have been contacted by someone falsely representing SpyCloud should email careers@spycloud.com. Compensation Transparency Policy: At SpyCloud, we believe in transparency and fairness in compensation. We strive to ensure that all employees are fairly compensated for their contributions, and we openly discuss our compensation philosophy and structure. We are committed to providing competitive salaries and benefits packages to attract and retain top talent, and we encourage open dialogue and feedback regarding compensation matters. Learn more and apply: SpyCloud Careers For applicants residing in California, please click here to read SpyCloud's CCPA Notice.

Job Requirements

  • At least 5 years of professional experience in a DevOps, Security Engineering, or Detection Engineering role maintaining relevant production infrastructure.
  • Strong working knowledge of AWS services such as EC2, ECS or EKS, Lambda, ELBs, Transit Gateway, VPC, CloudWatch, S3, Code/Build/Pipeline/Deploy, etc.
  • Strong working knowledge of Terraform or similar tools, AWS CLI/SDK, Boto.
  • Extensive experience with SIEM content engineering, data transformation, and log onboarding.
  • Proficiency with scripting languages such as Python, Bash, etc.
  • Proficiency integrating systems via API and their respective authentication mechanisms.
  • Strong understanding of networking fundamentals and troubleshooting techniques for bare metal and containerized workloads.
  • Experience with best practice build pipelines, including Git/GitHub.
  • Experience with EDR tools, such as CrowdStrike Falcon and Sentinel One.
  • Experience with SOAR playbook building and automation, such as Tracecat and Chronicle SecOps.
  • Experience with Cribl Stream.
  • Familiarity with Cloud Security Posture Management, such as Crowdstrike and Wiz.

Benefits

  • 401(k)
  • Health, Vision, and Dental Insurance
  • Generous PTO Plan
  • In-office meals provided
  • 401(k) with Employer Contribution
  • Health Savings Account (HSA) available with Employer Contribution
  • Employer Paid Life, Short-term, and Long-term Disability Insurance
  • Generous PTO Plan and 16 paid holidays per year

Related Categories

Related Job Pages

More Security Engineer Jobs

SITS Group logo

Teamlead Offensive Security

SITS Group

Your digital security: Our center of focus.

Full TimeRemoteTeam 501-1,000H1B No Sponsor

• You will take on both the technical and disciplinary leadership of our pentesting team, and develop them further through trust, coaching, and your professional expertise according to their individual technical strengths. • With passion, commitment, and a strong customer focus, you will drive commercial success. • You will manage existing and prospective customer relationships, expand them, and ensure high customer satisfaction in your projects. • Based on market analyses and current security trends, you will continuously develop our service and portfolio offerings. • You will analyze customer and market requirements, prepare proposals, and conduct negotiations through to successful contract conclusion. • You will plan, coordinate, and delegate penetration tests of, among others, IT infrastructures, web applications, industrial control systems (ICS), mobile devices and applications, as well as source code analyses to your team.

Germany
Job Closed
SITS Group logo

Team Lead Offensive Security

SITS Group

Your digital security: Our center of focus.

Full TimeRemoteTeam 501-1,000H1B No Sponsor

• You will assume the technical and disciplinary leadership of our penetration testing team and develop its members through trust, coaching, and your technical expertise, aligned with their individual strengths. • With passion, commitment and a strong customer focus, you drive business success. • You manage existing and prospective client relationships, expand them, and ensure high customer satisfaction in your projects. • Based on market analyses and current security trends, you continuously evolve our service and portfolio offerings. • You analyze customer and market requirements, prepare proposals, and conduct negotiations through to successful contract closure. • You plan, coordinate and delegate penetration tests of IT infrastructures, web applications, industrial control systems (ICS), mobile devices and applications, as well as source-code analyses to your team.

Germany
Job Closed
OtherRemoteTeam 201-500Since 2012H1B No Sponsor

• Build high-performance systems for AI research • Create training environments that teach AI systems • Design pipelines to analyze software projects and construct training environments

United States
$176.4K - $242.6K / year
Job Closed
Trulieve logo

Senior Information Security Manager

Trulieve

We strive to bring you the relief you need in a product you can trust.

OtherRemoteTeam 5,001-10,000Since 2016H1B No Sponsor

If you have an interest in being part of one of the fastest growing industries in the nation in you may consider wanting to work for Trulieve! If you have a desire to help others in need through your efforts, this may be the role for you! At Trulieve, we strive to bring our patients the relief they need in a product they can trust. Our plants are hand-grown in an environment specially designed to reduce unwanted chemicals and pests, keeping the process as natural as possible at every turn. Our products are designed to alleviate seizures, severe and persistent muscle spasms, pain, nausea, loss of appetite, and other symptoms associated with serious medical conditions such as cancer. Our specially trained staff works hand-in-hand with physicians to provide the right products and the correct dosage to ensure patients get the compassionate care they need. To learn more about our company, please visit our website; https://www.trulieve.com Requisition ID: 18441 Remote Work Available: Yes Job Title: Senior Information Security Manager Department: Information Security Location: Remote Reports to: Information Security Director FLSA Status: Exempt Regular Full-Time Role Summary: The Senior Information Security Manager is responsible for overseeing one of the key areas of the Information Security Department, ensuring that all technological initiatives meet Trulieve's security standards and requirements. This role involves managing the Cybersecurity Operations Centre (CSOC), and planning, directing, and controlling the CSOC functions and operations. The Senior Information Security Manager will monitor and analyze incidents to protect people, technology, and processes, addressing all security incidents and ensuring timely escalation. They will be accountable for securing Trulieve’s information by using their extensive experience to assess systems, identify, develop, and implement additional tools as needs evolve. This role requires a strategic approach to transforming Trulieve’s infrastructure security through designing and implementing advanced security technologies across the network. The role of the Senior Information Security Manager is to be business customer-facing and to play an active role in transforming Trulieve’s infrastructure security through designing and implementing security technologies across the network. Key Duties and Responsibilities: - Develop and execute SOC strategy, plan, and lead the Information Security Operations team to ensure stable operation of the function. - Direct security event monitoring, management, and response, and oversee cyber intelligence efforts. - Establish and refine incident identification, assessment, quantification, reporting, communication, mitigation, and monitoring processes. - Ensure compliance with policies, processes, and procedures, and drive process improvements to achieve operational objectives. - Align corporate and security strategic goals with ongoing initiatives. - Apply a disciplined and systematic approach to all tasks. - Leverage broad experience with technical engineering and design to enhance security measures. - Revise and develop processes to strengthen the Security Operations framework, review policies, and address challenges in managing SLAs. - Lead the team and manage the overall use of resources and initiate corrective actions for the Cybersecurity Operations Center as needed. - Validate daily management, administration, and maintenance of security devices to achieve operational effectiveness. - Create threat management and modeling, identify threat vectors, and develop use cases for security monitoring. - Escalate and manage cybersecurity risk, threats, and protection. - Develop comprehensive reports, dashboards, and metrics for CSOC operations and present them to management. - Guide the team in detecting critical deficiencies and recommending technical solutions for continuous improvement. - Collaborate with IT and Security leadership and cross-functional teams to develop strategies and plans to enforce security requirements and address identified risks. - Demonstrate strong organizational skills and problem-solving expertise while working with current and emerging technologies. - Serve as a subject matter expert for colleagues, providing insights on multiple technologies, compliance requirements, and risk analysis methodologies. Skills and Qualifications: - Bachelor’s degree in Computer Science, Engineering, Information Technology, or a related discipline. - A minimum of ten (10) years of experience in Information Security, and three (3) years of management experience leading IS teams with a deep understanding of implementing security best practices, architecture, and security management. - Background in managing the Cybersecurity Operations Center. - Extensive knowledge of security frameworks such as ISO 27001, NIST, CIS, etc. - Familiarity with compliance requirements such as SOX and others. - At least one advanced security certification (CISSP, CISM, or equivalent). - Proven experience leading the installation, configuration, and deployment of security tools, including project management roles. - Expertise in managing security tools such as firewalls (IDS/IPS/WAF), vulnerability management, and endpoint security. - Experience in developing and implementing incident response plans. - Self-motivated, organized, and capable of managing multiple responsibilities and driving concurrently conducted projects to successful completion. - High sense of urgency with strong pragmatic problem-solving skills and the ability to identify, analyze, and resolve problems. - Relationship-building skills to successfully interact with collaborators across all levels and all parts of the organization. - Excellent communication and leadership skills. - A solid customer-focused mindset. Work Schedule: - 40+ hours weekly with flexible hours depending on department needs. Equal Opportunity Employer / Trulieve Supports a D Salary will be commensurate with experience. A comprehensive benefits package including paid time off is offered with this position. Trulieve provides equal employment opportunities to all employees and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, pregnancy or any other characteristic protected by federal, state or local laws.

United States
Job Closed