Go anywhere onchain, instantly. Relay makes it easy to move money across any blockchain with a powerful API + App.
Security Engineer
Location
New York
Posted
82 days ago
Salary
$220K - $250K / year
Seniority
Senior
Job Description
Security Engineer
Relay
• Own Relay's security posture • Lead threat modeling, vulnerability management, access controls, and dependency auditing • Map Relay's attack surface and document gaps • Harden CI/CD pipelines, secrets management, and least-privilege access • Build and maintain observability • Instrument monitoring, alerting, and dashboards that give the team real-time visibility into Relay's health • Define and enforce SLOs by setting availability and performance targets, and drive the team to meet them • Lead incident response • Own the incident response process end to end: triage when things break, run postmortems, and make sure the same issue doesn't happen twice • Drive compliance readiness • Prepare Relay for customer security reviews and formal certifications (SOC 2, etc.) • Embed security and reliability practices into team culture as we grow
Job Requirements
- 3+ years operating production infrastructure on AWS
- Hands-on experience with security fundamentals including vulnerability management, access control, secrets management, and network security
- Experience in crypto/blockchain infrastructure
- Strong background in observability tooling (Datadog, PagerDuty, or similar)
- Experience defining and operating against SLOs
- Experience leading or contributing to SOC 2 or similar compliance certifications (Nice to have)
- Background in smart contract security or wallet/key management infrastructure (Nice to have)
- Familiarity with infrastructure-as-code (Terraform) (Nice to have)
- Prior experience as a first security/reliability hire at a startup (Nice to have)
- Relevant certifications (AWS Security Specialty, CISSP, etc.) (Nice to have)
Benefits
- Competitive base salary
- Equity package
- Comprehensive health benefits
- Unlimited PTO policy with encouraged minimum
- Remote-first culture with emphasis on collaboration, communication, and flexibility
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior Engineer, Security – AppSec
ArcadiaWe transform data into powerful insights that deliver results.
• Design, implement, and maintain application security controls across Arcadia’s cloud-native SaaS platform • Partner with Product and Engineering teams to embed security into system design, development workflows, and CI/CD pipelines • Conduct threat modeling, architecture reviews, and secure design assessments for new and existing services • Own and improve vulnerability management processes, including identification, prioritization, and remediation tracking • Implement and maintain security tooling such as SAST, DAST, dependency scanning, container scanning, and secrets detection • Participate in security incident response activities including detection, investigation, containment, and remediation • Monitor and analyze logs, alerts, and security events to identify suspicious activity and emerging threats • Contribute to detection engineering by tuning alerts, improving signal quality, and reducing noise • Support threat intelligence analysis and apply insights to improve preventive and detective controls • Perform post-incident analysis and recommend technical and process improvements • Build security-as-code solutions to automate control enforcement, validation, and remediation • Use scripting and automation to reduce manual effort and improve consistency • Support secure AWS architecture using services such as EKS, ECS, Lambda, IAM, and VPC • Contribute to identity and access management best practices across AWS, Okta/Auth0, and SaaS platforms • Translate compliance requirements (e.g., SOC 2, ISO 27001, HITRUST, HIPAA) into practical technical controls • Partner with Security Assurance to support audits, evidence collection, and continuous control monitoring • Help identify and remediate security risks discovered through assessments, audits, or incidents
Application Security Intern
DoyensecWe work at the intersection of software development and offensive engineering to help companies craft secure code.
• Perform professional security testing for both startups and Fortune 500 companies • Engage in cutting-edge offensive security research, including tools development
IS Technical Specialist – RACF Security Engineer
Huntington National BankSine 1866, Huntington National Bank has served midwestern communities with banking and financial services for consumers and businesses of all sizes. The regiona
• Ensure that Huntington’s identity & access management services are designed to be compliant with security and privacy standards and other industry standards and practices. • Alter security standards and settings to evolve with emerging threats in the mainframe space. • Work with other IBM Related Huntington Mainframe teams to complete application installs/decommissions • Work with Portfolio Manager deliver IAM projects and key milestones. • Consult with business units when implementing access for new systems. • Other duties as assigned
Job Title: Senior Security Engineer Company: Virtual Technologies Group (VTG) Location: Remote: Mid-West Position Type: Full-Time Employee Type: FTE Position Summary: Virtual Technologies Group is seeking a Senior Security Engineer to serve as a strategic lead in a staff augmentation model. You will be responsible for maturing a modern security stack centered on AWS/Azure, Rapid7, and Proofpoint, transitioning the environment from reactive triage to proactive architecture. This remote-eligible role requires a blend of hands-on technical automation and high-level mentorship to elevate existing security operations and ensure robust governance across a diverse cloud infrastructure. Company Overview: Virtual Technologies Group is a leading innovator in the technology sector, specializing in the development and implementation of advanced virtual solutions. Our mission is to empower businesses with cutting-edge technology that enhances efficiency, productivity, and connectivity. With a team of highly skilled professionals, we deliver customized solutions tailored to meet the unique needs of our clients across various industries. Our commitment to excellence, innovation, and customer satisfaction drives us to continuously push the boundaries of what is possible. At Virtual Technologies Group, we are dedicated to shaping the future of technology and making a positive impact on the world. Minimum Qualifications - Experience: 5+ years of experience in Security Engineering, with at least 3 years specifically focused on Cloud Security (AWS or Azure). - Cloud Architecture: Foundational knowledge of cloud infrastructure (VPC/VNet, Security Groups, S3/Blob storage) and Identity & Access Management (IAM). - Security Operations: 2+ years of hands-on experience managing a SIEM or XDR platform (e.g., Rapid7, Splunk, or Sentinel) including log onboarding and basic tuning. - Vulnerability Management: Proven ability to manage vulnerability scans, prioritize risks based on business impact, and coordinate remediation with IT/Infrastructure teams. - Incident Response: Experience participating in a formal IR process, from initial detection through to containment and post-incident reporting. - Compliance: Basic understanding of regulatory frameworks such as SOX or PCI-DSS and their application in technical environments. - Communication: Ability to mentor junior staff and translate complex technical security risks into actionable tasks for non-security peers. Preferred Qualifications - Platform Expertise: Direct experience with Proofpoint (specifically TAP, TRAP, and IMD) for automated email threat orchestration. - Advanced Detection Engineering: Proven track record of building custom detection rules and "tuning out the noise" in Rapid7 InsightIDR. - Automation & Scripting: Proficiency in Python or PowerShell to automate repetitive security tasks or integrate tools via APIs. - Deep Microsoft Security Stack: Hands-on experience with Microsoft Defender for Cloud and Microsoft Purview for data governance. - Certifications: Professional-level certifications such as CISSP, AWS Certified Security Specialty, or Microsoft AZ-500. - Strategic Maturity: Experience contributing to security roadmaps, architectural reviews, and process documentation (moving from "reactive" to "proactive" security). - Staff Aug Experience: Previous experience working in a Lead capacity within a managed services or staff augmentation model. Benefits Overview: VTG offers a comprehensive benefits package to meet the needs of our employees and their families. Benefits include medical insurance plans, dental insurance, vision insurance, health savings accounts (HSA), flexible spending accounts (FSA), life insurance, short and long-term disability insurance, paid time off and holidays, and a 401(k) with employer match. EEO Statement: VTG is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other legally protected status. We believe that diversity strengthens our team and drives innovation. All employment decisions are based on qualifications, merit, and business needs. If you require reasonable accommodation during the application or interview process, please contact HR@vtgus.com.




