Job Closed
This listing is no longer active.
Connectivity Everywhere
Senior Security Engineer
Location
United States
Posted
153 days ago
Salary
$165K - $200K / year
Seniority
Senior
Job Description
Senior Security Engineer
Aalyria
• Design and implement security controls across cloud infrastructure, endpoints, identity systems and applications • Harden GCP environments including compute, networking, GKE, IAM and logging configurations • Deploy, configure, and maintain security tooling including SIEM, vulnerability scanners, EDR, and secrets management • Build automation for security operations, evidence collection and compliance reporting using Python, Terraform, and CI/CD pipelines • Develop and maintain logging and monitoring architecture to support detection, response, and audit requirements • Implement and enforce identity and access management controls, including SSO, MFA and least privilege access • Conduct vulnerability assessments and drive remediation efforts across infrastructure and applications • Support incident response activities including investigation, containment, and root cause analysis • Collaborate with engineering teams to integrate security into development workflows and CI/CD pipelines • Document security configurations, architecture decisions, and runbooks • Support compliance efforts by implementing technical controls required for CMMC, FedRAMP, ITAR and DFARS
Job Requirements
- 5+ years of experience in security engineering, infrastructure security, or related technical security roles
- Strong hands-on experience with cloud security in GCP, AWS (GCP preferred)
- Proficiency in infrastructure-as-code tools, particularly Terraform
- Scripting and automation skills in Python, Bash, or similar languages
- Experience with container and Kubernetes security (GKE, EKS, or AKS)
- Hands-on experience deploying and managing security tools (SIEM, vulnerability scanners, EDR)
- Strong understanding of identity and access management principles and platforms (Okta, Azure AD, or similar)
- Experience with CI/CD security and integrating security into DevOps workflows
- Solid understanding of networking fundamentals including firewalls, VPNs, and network segmentation and Zero Trust Architecture
- Ability to investigate, diagnose, and resolve security issues independently
- Excellent communication skills with ability to explain technical concepts to non-technical stakeholders.
Benefits
- Competitive salary
- Comprehensive benefits (401(k), dental, vision, health, life insurance)
- Paid time off
- Flexible working arrangements including hybrid remote/in-office schedules
- Growth opportunities
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Cybersecurity GRC – Compliance Analyst
Trimble Inc.Trimble technology is transforming critical industries to power an interconnected world of work.
• Perform SOC 1 & 2, NIST 800-171, ISO 27001, ISO 27701 and ISO 42001 gap analysis and recommend process, procedural, documentation and tooling recommendations to remediate. • Improve Compliance and certification scope efficiency via review and enhancements of the Trimble Common Control Framework • Perform ISO 27001 & ISO27701 Internal Audits. • Perform SOC 1 & 2, NIST 800-171 Internal & External Audits • Contribute to annual policy revisions and maintenance of the IMS. • Constantly coordinate with key business stakeholders and the external auditor • Present metrics derived from the Integrated Management System, audit results, trends in risk, and corrective action plans to senior leadership. • Contribute to the creation of processes and procedures that increase efficiency of the overall compliance program across all standards and frameworks. • Collaborate with Cybersecurity team members, Trimble businesses across various geographies. • Contribute to risk management processes to ensure business risk posture is properly calculated and proactively managed. • Produce and analyze information that will accurately demonstrate the risk posture of each business and drive actions to reduce and manage technical risks. • Be able to understand and communicate technical risks to a broad set of stakeholders.
• I’m seeking a knowledgeable, collaborative, and creative leader to scale our security program and build out our security team. • This leader will report directly to me. • You’ll inherit a competent security program and scale this program through our next phase of high growth. • This includes building the Security team from scratch (which means you’ll be a hands-on security generalist to start). • By the end of the year, you’ll have defined our security strategy and roadmap, and added people (1-3 individuals), processes, and automation to scale yourself out of routine work. • Collaborate with other departments to solve interesting security challenges concerning sensitive information and PII. • Lead and grow a culture of security awareness among over 250 people today and more than 500 people by the end of the year.
Senior Cloud Security Engineer
UnqorkUsing CaaS (Codeless-as-a-Service) to accelerate time-to-market & eliminate legacy code for the enterprise 🚀
• Multi-Cloud Governance: Monitor and triage security findings across AWS, GCP, and Azure, prioritizing high-risk vulnerabilities and misconfigurations. • Security Automation: Architect and maintain security automation workflows using Python. • Posture Management (CSPM): Identify and remediate insecure cloud configurations (e.g., exposed buckets, overly permissive IAM roles, unencrypted data). • Edge Security: Manage and fine-tune AWS WAF (Web Application Firewall) rules using Terraform (Infrastructure as Code). • Consultative Partnership: Collaborate with Cloud Architects and Developers during the design phase to prevent security debt and ensure "Secure by Design" principles.
Lead Security Architect
Protective LifeWe are on a mission to help more people achieve the sense of protection and security they deserve.
• Define and drive enterprise security architecture across hybrid and cloud environments. • Lead the design, governance, and evolution of secure architectures. • Collaborate with leadership, technology teams, and stakeholders to embed security into IT strategy. • Champion secure-by-design principles through automation and innovation. • Develop and execute the security architecture roadmap aligned with organizational goals. • Create and maintain security documentation, standards, patterns, and reference architectures. • Drive secure-by-design initiatives and develop security standards. • Define, track, and report security metrics to demonstrate security maturity, program effectiveness, and compliance with standards. • Design and oversee implementation of security architecture topologies for systems and enterprise enablement. • Drive DevSecOps adoption and secure CI/CD integration. • Apply strong business acumen to align security initiatives with organizational goals. • Lead threat modeling, risk assessments, and incident response planning for Azure and hybrid systems. • Provide expert guidance on identity and access management (IAM), network segmentation, encryption, and cloud security. • Evaluate, recommend, and select security products and vendors. • Build and maintain strong relationships with technology teams, suppliers, and business units. • Mentor architects and engineers; foster a secure-by-design culture. • Deliver security awareness training and guidance to business and IT teams. • Stay current with emerging threats, technologies, and regulatory changes; recommend innovative solutions.




