Job Closed
This listing is no longer active.
LocalStack - tools and services that revolutionize the development flow for modern cloud&AI applications.
Head of Security
Location
Spain
Posted
136 days ago
Salary
0
Seniority
Lead
Job Description
Head of Security
LocalStack
• Ensure robust security posture of our product across various components • Lead initiatives for incident monitoring, intrusion detection, and vulnerability management • Define and implement regular security auditing procedures across systems and access controls • Deliver a sustainable process for vendor risk assessments and other security-related initiatives • Ensure secure configurations and permission models while collaborating with engineering teams • Identify gaps between claimed and actual compliance and propose/lead corrective actions • Own documentation of security controls, configurations, and policies • Engage with internal stakeholders to evaluate different security threats and attack vectors • Generate and distribute internal audit and compliance reports at regular intervals
Job Requirements
- 7+ years in a security engineering or security compliance role
- Experience leading vendor risk assessments and building compliance frameworks from the ground up
- Strong background in API design and build
- Strong background in DevSecOps, incident response, and risk-driven security leadership
- Expert knowledge of threat modelling, vulnerability management, and tools like intrusion detection, network security, or Linux/Unix OS hardening
- Practical experience with cloud security (AWS preferred)
- Good knowledge of common standards (e.g., SOC 2, ISO 27001, GDPR)
- Strong documentation skills and ability to make complex topics accessible to non-experts
- Good understanding of US and EU security and compliance expectations
- Prior engineering experience preferred.
Benefits
- Fully remote
- Competitive salary
- Annual company retreat
- 2 extra company-wide holidays
- Friendly and inclusive workplace culture (community guilds and online company events)
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Account Executive, National Security
Slingshot AerospaceWe build space simulation and analytics solutions to bring clarity to complex environments and create a safer world.
• Own the full sales lifecycle for assigned National Security accounts, from opportunity identification through contract execution and expansion • Develop deep relationships with senior government stakeholders, program offices, and mission users across the Intelligence Community and related national security organizations • Build and maintain a qualified pipeline of enterprise opportunities aligned to territory and revenue targets • Shape customer requirements and acquisition strategies through early engagement and solution positioning • Partner cross-functionally with Product, Engineering, Science, Capture, and Program teams to deliver customer-aligned proposals, briefings, RFIs, and demonstrations • Forecast accurately and maintain disciplined pipeline hygiene using established sales processes and tools • Represent Slingshot at customer meetings, industry events, and mission-focused forums • Communicate customer feedback and market insights to internal stakeholders to inform roadmap and go-to-market strategy • Perform other duties as assigned (less than 10%)
Cybersecurity Researcher, Threat Analysis, Detection Engineering
AcronisNatively integrated, highly efficient cyber protection.
• Participate in design and implementation of detection capabilities of Acronis Security and EDR products. • Analyze clean and malicious content: executables, scripts, various document formats, websites, memory dumps, vulnerabilities. • Develop, support, and fine-tune threat detection logic and signatures. • Conduct online research of the latest cyber threats and ensure those can be detected by existing in-house technologies. • Contribute to sharing research results in blog posts and articles. • Monitor automated detection pipelines to ensure high detection accuracy. • Support scan engine and product development by participating in joint research projects.
Consultant, Offensive Security
KrollKroll Inc. is a risk consulting firm that provides proprietary data and technology to help its clients manage growth, risk, and governance, and therefore, manag
• Execute offensive security and consultative engagements for our clients’ applications, cloud assets, and infrastructure • Author deliverables such as vulnerability reports and executive reports • Engage with our clients to understand their requirements, update them on project status, answer their queries, and present your findings and recommendations • Keep your skills and knowledge up to date with the latest trends in cybersecurity and emerging technology • Willingness to work in EST Time zone
• Colaborar con los equipos de desarrollo para comprender, verificar y solucionar los problemas de seguridad identificados • Determinar e informar el nivel de riesgo presente en los aplicativos • Utilizar los conocimientos de problemas frecuentes para crear y brindar orientación y mejores prácticas




