Arcadia logo
Arcadia

We transform data into powerful insights that deliver results.

Senior Engineer, Security – AppSec

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 201-500H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

82 days ago

Salary

$140K - $175K / year

Seniority

Senior

6 yrs expEnglishAWSCloudPython

Job Description

Senior Engineer, Security – AppSec

Arcadia

• Design, implement, and maintain application security controls across Arcadia’s cloud-native SaaS platform • Partner with Product and Engineering teams to embed security into system design, development workflows, and CI/CD pipelines • Conduct threat modeling, architecture reviews, and secure design assessments for new and existing services • Own and improve vulnerability management processes, including identification, prioritization, and remediation tracking • Implement and maintain security tooling such as SAST, DAST, dependency scanning, container scanning, and secrets detection • Participate in security incident response activities including detection, investigation, containment, and remediation • Monitor and analyze logs, alerts, and security events to identify suspicious activity and emerging threats • Contribute to detection engineering by tuning alerts, improving signal quality, and reducing noise • Support threat intelligence analysis and apply insights to improve preventive and detective controls • Perform post-incident analysis and recommend technical and process improvements • Build security-as-code solutions to automate control enforcement, validation, and remediation • Use scripting and automation to reduce manual effort and improve consistency • Support secure AWS architecture using services such as EKS, ECS, Lambda, IAM, and VPC • Contribute to identity and access management best practices across AWS, Okta/Auth0, and SaaS platforms • Translate compliance requirements (e.g., SOC 2, ISO 27001, HITRUST, HIPAA) into practical technical controls • Partner with Security Assurance to support audits, evidence collection, and continuous control monitoring • Help identify and remediate security risks discovered through assessments, audits, or incidents

Job Requirements

  • 6+ years of experience in application security, cloud security, or security engineering roles
  • Strong hands-on experience securing cloud-native, SaaS-based environments (AWS required)
  • Solid understanding of:
  • Application security principles and common vulnerabilities (OWASP Top 10)
  • Secure software development practices and CI/CD integration
  • Cloud security architecture and IAM
  • Incident detection and response fundamentals
  • Experience with security tools such as SIEM, SAST/DAST, EDR, vulnerability scanners, and cloud security platforms
  • Ability to script and automate security workflows using Python, Bash, or similar languages
  • Strong analytical skills and the ability to clearly communicate security risks and recommendations.

Benefits

  • A senior, high-impact security engineering role in a mission-driven healthcare company
  • The opportunity to work deeply hands-on with modern cloud and application security challenges
  • Be a part of a mission driven company that is transforming the healthcare industry by changing the way patients receive care
  • A flexible, remote friendly company with personality and heart
  • Employee driven programs and initiatives for personal and professional development
  • Become a member of the talented, energized, diverse and purpose-driven Arcadian Community

Related Categories

Related Job Pages

More Security Engineer Jobs

Doyensec logo

Application Security Intern

Doyensec

We work at the intersection of software development and offensive engineering to help companies craft secure code.

InternshipRemoteTeam 11-50Since 2017H1B No Sponsor

• Perform professional security testing for both startups and Fortune 500 companies • Engage in cutting-edge offensive security research, including tools development

United States
Huntington National Bank logo

IS Technical Specialist – RACF Security Engineer

Huntington National Bank

Sine 1866, Huntington National Bank has served midwestern communities with banking and financial services for consumers and businesses of all sizes. The regiona

• Ensure that Huntington’s identity & access management services are designed to be compliant with security and privacy standards and other industry standards and practices. • Alter security standards and settings to evolve with emerging threats in the mainframe space. • Work with other IBM Related Huntington Mainframe teams to complete application installs/decommissions • Work with Portfolio Manager deliver IAM projects and key milestones. • Consult with business units when implementing access for new systems. • Other duties as assigned

Illinois + 1 moreAll locations: Illinois | Ohio
$70K - $140K / year
Full TimeRemoteTeam 51-200Since 1973H1B No Sponsor

Job Title: Senior Security Engineer Company: Virtual Technologies Group (VTG) Location: Remote: Mid-West Position Type: Full-Time Employee Type: FTE Position Summary: Virtual Technologies Group is seeking a Senior Security Engineer to serve as a strategic lead in a staff augmentation model. You will be responsible for maturing a modern security stack centered on AWS/Azure, Rapid7, and Proofpoint, transitioning the environment from reactive triage to proactive architecture. This remote-eligible role requires a blend of hands-on technical automation and high-level mentorship to elevate existing security operations and ensure robust governance across a diverse cloud infrastructure. Company Overview: Virtual Technologies Group is a leading innovator in the technology sector, specializing in the development and implementation of advanced virtual solutions. Our mission is to empower businesses with cutting-edge technology that enhances efficiency, productivity, and connectivity. With a team of highly skilled professionals, we deliver customized solutions tailored to meet the unique needs of our clients across various industries. Our commitment to excellence, innovation, and customer satisfaction drives us to continuously push the boundaries of what is possible. At Virtual Technologies Group, we are dedicated to shaping the future of technology and making a positive impact on the world. Minimum Qualifications - Experience: 5+ years of experience in Security Engineering, with at least 3 years specifically focused on Cloud Security (AWS or Azure). - Cloud Architecture: Foundational knowledge of cloud infrastructure (VPC/VNet, Security Groups, S3/Blob storage) and Identity & Access Management (IAM). - Security Operations: 2+ years of hands-on experience managing a SIEM or XDR platform (e.g., Rapid7, Splunk, or Sentinel) including log onboarding and basic tuning. - Vulnerability Management: Proven ability to manage vulnerability scans, prioritize risks based on business impact, and coordinate remediation with IT/Infrastructure teams. - Incident Response: Experience participating in a formal IR process, from initial detection through to containment and post-incident reporting. - Compliance: Basic understanding of regulatory frameworks such as SOX or PCI-DSS and their application in technical environments. - Communication: Ability to mentor junior staff and translate complex technical security risks into actionable tasks for non-security peers. Preferred Qualifications - Platform Expertise: Direct experience with Proofpoint (specifically TAP, TRAP, and IMD) for automated email threat orchestration. - Advanced Detection Engineering: Proven track record of building custom detection rules and "tuning out the noise" in Rapid7 InsightIDR. - Automation & Scripting: Proficiency in Python or PowerShell to automate repetitive security tasks or integrate tools via APIs. - Deep Microsoft Security Stack: Hands-on experience with Microsoft Defender for Cloud and Microsoft Purview for data governance. - Certifications: Professional-level certifications such as CISSP, AWS Certified Security Specialty, or Microsoft AZ-500. - Strategic Maturity: Experience contributing to security roadmaps, architectural reviews, and process documentation (moving from "reactive" to "proactive" security). - Staff Aug Experience: Previous experience working in a Lead capacity within a managed services or staff augmentation model. Benefits Overview: VTG offers a comprehensive benefits package to meet the needs of our employees and their families. Benefits include medical insurance plans, dental insurance, vision insurance, health savings accounts (HSA), flexible spending accounts (FSA), life insurance, short and long-term disability insurance, paid time off and holidays, and a 401(k) with employer match. EEO Statement: VTG is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other legally protected status. We believe that diversity strengthens our team and drives innovation. All employment decisions are based on qualifications, merit, and business needs. If you require reasonable accommodation during the application or interview process, please contact HR@vtgus.com.

United States
Job Closed
GoDaddy logo

Security Engineer I

GoDaddy

GoDaddy is a web services platform that helps individuals and businesses worldwide start, grow, and manage their online presence. GoDaddy employs team members a

Location Details: Remote, India At GoDaddy the future of work looks different for each team. Some teams work in the office full-time; others have a hybrid arrangement (they work remotely some days and in the office some days) and some work entirely remotely. This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings Join our team... GoDaddy’s Product Security group is looking for a Security Engineer to join our organization. Do you want to be an Information Security Leader at GoDaddy? Can you solve large-scale and cross-company security challenges while ensuring that partnership with the development and operational communities remains front of mind? At GoDaddy, Security Engineers apply their strong hands-on technical and leadership skills to design scalable solutions to complex problems! You must be comfortable communicating with GoDaddy Engineering teams, performing security assessments, prioritizing security risks, and designing and implementing high-quality security engineering solutions What you'll get to do... - Identify security threats and vulnerabilities in applications and infrastructure and provide remediation mentorship to system owners - Collaborate with SRE and development teams to discover and implement creative ways to reduce the occurrence of vulnerabilities at scale - Develop repeatable and reusable security processes and frameworks - Advocate for secure by build and secure by default development strategies - Review quality issues and strive to detect both obvious and subtle security flaws - Assist with prioritising prospective projects and participate in projects from kickoff through “definition of done” via end-to-end ownership - Apply your industry experience to own and drive resolution and retesting of complex security events, policy questions, and technical security risks Your experience should include... - 1+ years of progressive security engineering experience with expertise in multiple security domains, including but not limited to Security Architecture, Cryptography, Network Security, Cloud Security, Mobile Security, and Web Security - Demonstrated problem-solving abilities combined with a strong technical grasp of security engineering - Experience in threat modelling complex software services, secure code review, and penetration testing - Solid knowledge of security controls across all layers of the OSI model related to common technologies - Experience applying security engineering guidelines that align with security and privacy compliance requirements You might also have... - Master's / Bachelor's degree or PhD or equivalent experience in Computer Science or related field - Experience in Secure Development Lifecycle and Shift Left with a Security by Build methodology - Proficiency in system architecture and building, scripting/development skills (e.g., Python, C, C++, Java, Ruby, or PowerShell) - Hosting Industry and/or Cloud Experience - Hardware security experience We've got your back...  We offer a range of total rewards that may include paid time off, retirement savings (e.g., 401k, pension schemes), bonus/incentive eligibility, equity grants, participation in our employee stock purchase plan, competitive health benefits, and other family-friendly benefits including parental leave. GoDaddy’s benefits vary based on individual role and location and can be reviewed in more detail during the interview process We also embrace our diverse culture and offer a range of Employee Resource Groups (Culture). Have a side hustle? No problem. We love entrepreneurs! Most importantly, come as you are and make your own way. We encourage you to apply even if your experience or skillset doesn’t align perfectly with every requirement. We value a wide range of backgrounds and transferable skills, and we are excited to support learning and growth. About us... GoDaddy is empowering everyday entrepreneurs around the world by providing the help and tools to succeed online, making opportunity more inclusive for all. GoDaddy is the place people come to name their idea, build a professional website, attract customers, sell their products and services, and manage their work. Our mission is to give our customers the tools, insights, and people to transform their ideas and personal initiative into success. To learn more about the company, visit About Us At GoDaddy, we know diverse teams build better products—period. Our people and culture reflect and celebrate that sense of diversity and inclusion in ideas, experiences and perspectives. But we also know that’s not enough to build true equity and belonging in our communities. That’s why we prioritize integrating diversity, equity, inclusion and belonging principles into the core of how we work every day—focusing not only on our employee experience, but also our customer experience and operations. It’s the best way to serve our mission of empowering entrepreneurs everywhere, and making opportunity more inclusive for all. To read more about these commitments, as well as our representation and pay equity data, check out our Diversity and Pay Parity annual report which can be found on our Diversity Careers page GoDaddy is proud to be an equal opportunity employer. GoDaddy will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements. Refer to our full EEO policy Our recruiting team is available to assist you in completing your application. If they could be helpful, please reach out to myrecruiter@godaddy.com GoDaddy doesn’t accept unsolicited resumes from recruiters or employment agencies

India
Job Closed