AudienceView logo
AudienceView

Grow your audience

Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 201-500Since 2002H1B No SponsorCompany SiteLinkedIn

Location

Chile

Posted

12 days ago

Salary

0

Seniority

Senior

Job Description

Security Engineer

AudienceView

• Support and maintain Audienceview’s PCI DSS compliance program, including scoping exercises, gap assessments, evidence collection, and coordination with QSAs during annual audits • Plan and execute penetration tests against internal and external systems, web applications, and APIs - documenting findings and working with engineering teams to drive remediation • Perform application security assessments and code reviews to identify vulnerabilities across Audienceview’s software portfolio • Evaluate and secure AI and LLM integrations • Incident response - Monitor, detect, and respond to security events and incidents • Be open to flexible working hours to support Incident response • Perform vulnerability assessments and risk analyses to manage security gaps • Design, implement, and maintain security controls, policies, and procedures aligned with Industry and regulatory frameworks • Conduct security reviews of system architectures, network configurations, and application deployments - ensuring PCI DSS requirements are addressed from design through production • Collaborate with Engineering teams to embed security and compliance requirements into the SDLC • Investigate and triage security alerts, perform root cause analysis, and document findings for both operational and compliance purposes

Job Requirements

  • Demonstrated penetration testing experience, including network, web application, and API testing using industry-standard tools (e.g., Burp Suite, Metasploit, Nmap, OWASP ZAP)
  • Software development or secure code review experience - able to read, analyze, and identify security flaws in application source code
  • Strong understanding of PCI DSS requirements (v4.0+) and experience supporting PCI DSS audits
  • Experience with cloud security in AWS or Azure environments
  • Knowledge of OWASP Top 10, common application vulnerabilities, and secure coding practices
  • Knowledge of identity and access management (IAM), multi-factor authentication, and zero-trust principles
  • Understanding of vulnerability management lifecycle, patch management processes, and compensating controls
  • Knowledge of common attack vectors, MITRE ATT&CK framework, and threat intelligence practices
  • Familiarity with one or more of the following languages: Java, JavaScript, C++, Clojure, .NET, or Classic ASP
  • Solid grasp of operating systems security (Windows, Linux, macOS)
  • Awareness of AI security risks, familiarity with MCP (Model Context Protocol) and experience securing AI agent-to-tool integrations
  • Proficiency with SIEM (Security Information and Event Management) platforms & EDR(Endpoint Detection and Response) solutions
  • Familiarity with scripting and automation (Python, PowerShell, Bash) for security operations and compliance evidence collection
  • Experience with endpoint security & DLP(Data Loss Prevention)
  • Experience with containerization and Kubernetes security
  • Experience with SAST(Static Application Security Testing) and DAST(Dynamic Application Security Testing) tools
  • Background in red team or purple team exercises
  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field - or equivalent practical experience
  • Certifications (one or more preferred): PCIP, PCI-QSP, OSCP, CISSP, CRISC, CISA CEH, AWS, Azure Any other industry-recognized cybersecurity or AI security certification
  • 5+ years of hands-on experience in information security, cybersecurity operations, or a related systems security role
  • Excellent communication skills in English.

Benefits

  • Excellent benefits
  • Competitive salaries
  • Flexible hours
  • Remote work opportunities
  • Flexible, uncapped vacation and sick policy
  • Diversity and inclusion initiatives

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 201-500Since 2005H1B No Sponsor

• Designing and implementing endpoint security solutions in cloud and on premise data centers • Installation/Configuration, patching and tuning IDS/IPS signatures, create and amend policies • Monitor events and trends using Kibana • Provide support for internal and external customers in a large enterprise environment • Troubleshoot a range of IT security and connectivity issues • Support other team members in troubleshooting and project efforts • Manage hardware and software inventories • Works with remote teams to install, maintain and troubleshoot security hardware • Administer applications running on Linux and UNIX systems in virtualized and cloud environments • Participate in a rotating on-call schedule; every 6-8 weeks for a period of one week at a time

United States
$130K - $140K / year
Cincinnati Financial logo

IT - Third Party Risk Manager I

Cincinnati Financial

As a relationship-based organization, we welcome and value a diverse workforce. We provide equal employment opportunity to all qualified persons without regard to race, creed, color, sex, including sexual orientation, gender identity and transgender status, religion, national origin, age, disability, military service, veteran status, pregnancy, AIDS/HIV or genetic information, or any other basis prohibited by law.

Full TimeRemoteTeam 1,001-5,000

Role Description Our Vendor Management Office department is currently seeking a Third Party Risk Manager. Be ready to: - Conduct information security risk assessments of vendors and vendor software, based on company standards and risk appetite, leveraging demonstrated working knowledge of industry security practices. - Make information security risk recommendations on behalf of the company, within limits approved by management. - Review project documentation, system design documents, vendor security policies and other vendor security references (i.e. SOC II type 2, SIG, AUP, PCI ROC, TPRM monitoring reports, etc.) to determine the extent, type, and scope of risks of the vendor relationship. - Provide security-related recommendations and communicate the need for the changes to business, IT and other stakeholders. - Coordinate with IT architects, project teams and vendors to bring system designs into alignment with company security standards. - Follow procedures to establish company records for the risk management process. - Modify vendor risk procedures and other tools to support continuous improvement of the vendor risk management program. - Support IT management relative to vendor product ownership responsibility, product license needs, license and support renewal process. - Follow vendor governance policies and procedures that drive the behaviors of those individuals/organizations. - Inform IT and business unit stakeholders on vendor management practices. - Work with business partners and other IT service areas in the requirement gathering process. - Manage vendor relationships including negotiation, license/cost analysis, audit support and coordination, product renewals, and performance monitoring. Qualifications - Demonstrate an understanding of fundamental aspects of information security (i.e. data classification, inventories, technical/ procedural/ physical control categories). - Demonstrate an understanding of information security standards and regulations (e.g., ISO 27001/27002, NIST, FFIEC, etc.), and commonly used concepts, practices and procedures within the information security and privacy fields. - Demonstrate an understanding of the fundamentals of vendor relationship management (i.e. stakeholder management, communication, problem solving and organizational skills, relationship building). Requirements - A bachelor’s degree or technical institute training or any combination of education and experience that would provide an equivalent background. Benefits Your commitment to providing strong service, sharing best practices and creating solutions that impact lives is appreciated. To increase the well-being and satisfaction of our associates, we offer a variety of benefits and amenities. Learn more about our benefits and amenities packages. Many departments at our Headquarters in Fairfield, Ohio, offer hybrid work options, empowering associates to work from home several days a week. Depending on your role and responsibilities, hybrid options may be available. Company Description As a relationship-based organization, we welcome and value a diverse workforce. We grant equal employment opportunity to all qualified persons without regard to race; creed; color; sex, including sexual orientation; religion; national origin; age; disability; or any other basis prohibited by law.

United States
Rosie's People logo

Demand Generation Manager – Cybersecurity, AI

Rosie's People

Your one-stop partner for all your Leadership, HR & Business Operations challenges.

ContractRemoteTeam 1-10Since 2014H1B No Sponsor

• Designing and executing a demand generation roadmap across priority sectors (e.g. financial services, fintech, regulated industries) • Planning and running multi-channel campaigns (LinkedIn, email, webinars, reports, communities) • Building and managing lead-nurture journeys for complex buying committees (CISO, risk, compliance, IT, innovation) • Collaborating with leadership to define ICPs, personas, and core messaging • Creating and repurposing cornerstone content into campaign-ready assets that support the sales cycle • Setting up lightweight marketing operations, including tracking, basic lead scoring, and funnel reporting • Experimenting with targeted, account-based motions for high-value prospects and partner ecosystems • Testing, iterating, and sharing insights across marketing, sales, and product teams to refine GTM approach

New York
SupportYourApp logo

SOC Incident Response Specialist

SupportYourApp

Support-as-a-Service that helps companies scale faster by taking care of their customers’ needs.

ContractRemoteTeam 1,001-5,000H1B No Sponsor

Role Description Our team is continuously growing alongside our expanding client base, so we are looking for a SOC Incident Response Specialist who is eager to apply their technical expertise, develop in the field of security, and work with real incidents and modern tools. What you will do: - Manage security and operational incidents end-to-end, including investigation, coordination, and response; - Communicate directly with Clients and stakeholders during Data Breach incidents; - Conduct Root Cause Analysis, develop preventive measures, and prepare management reports; - Analyze Clients’ workflows and incident trends to identify risks and improve security processes; - Assess the security of software, platforms, and third-party vendors; - Review new hiring locations for compliance with data protection and security standards; - Develop incident response procedures and maintain internal security documentation and knowledge base. Qualifications - Proven experience in investigating and handling information security incidents (from 1 year); - Analytical mindset and the ability to make fast decisions to mitigate incident impact; - Strong self-organization skills and the ability to prioritize work independently; - Understanding of data privacy principles and breach notification requirements; - English proficiency at level B2 or higher. Requirements - Proficiency in OSINT methodologies for investigations; - Experience in the BPO or Customer Support industry; - Basic knowledge of security tools logic (SIEM, EDR, DLP, NGFW, VPN, VDI). Benefits - Providing services during business hours; - Opportunity to cooperate fully remotely; - Inclusive international environment; - Compensation in USD; - Rewards for referring friends; - Balance between project workload and personal time, but also – internal health policy; - Responsive leadership interested in your growth and long-lasting cooperation; - Greenhouse conditions for self-development; - A culture built on trust, with no time-tracking requirements. *The items listed in this section may vary depending on the terms of your engagement. Certain benefits and conditions typically apply to employees; independent contractors may not be eligible for all of these. The specific terms, including compensation, benefits, and work conditions, will be clearly defined in your agreement if selected.

Poland