Apply

Security Engineer

Posted 2 months agoViewed

View full description

πŸ’Ž Seniority level: DevSecOps or related role

πŸ“ Location: United States

πŸ’Έ Salary: 86000 - 202000 USD per year

πŸ” Industry: Technology

🏒 Company: OrkesπŸ‘₯ 11-50πŸ’° $20,000,000 Series A 11 months agoArtificial Intelligence (AI)Open SourceCloud ComputingApps

⏳ Experience: DevSecOps or related role

πŸͺ„ Skills: AWSDockerNode.jsPostgreSQLSoftware DevelopmentBashEs6FlutterGCPGitHTMLCSSJavaJavascriptJenkinsKubernetesMongoDBMySQLVue.JsC++AzureGoAngularReactCommunication SkillsCI/CDRESTful APIsDevOpsTerraformAttention to detailMicroservicesComplianceRisk ManagementScripting

Requirements:
  • Experience in a DevSecOps or related role in a software development environment.
  • Strong understanding of integrating security within the software engineering lifecycle.
  • Hands-on experience with major cloud providers focusing on security best practices.
  • Experience with infrastructure-as-code tools like Terraform or CloudFormation.
  • Familiarity with programming languages such as Java, Golang, or C++.
  • Proficiency with security tools like OWASP ZAP or SonarQube.
  • Knowledge in securing containerized applications with Docker and Kubernetes.
  • Strong proficiency in scripting languages like Python or Bash.
  • Experience with version control (Git) and CI/CD tools.
  • Knowledge of compliance and risk management standards.
Responsibilities:
  • Monitor and improve security tools integrated into the CI/CD pipelines.
  • Automate security testing to ensure fast and secure releases.
  • Audit cloud security in major cloud providers to follow best configurations.
  • Regularly scan for vulnerabilities in code and infrastructure.
  • Develop scripts to automate security tasks.
  • Secure containerized applications and set up security policies.
  • Monitor security logs for breaches and respond to incidents.
  • Document plans for effective incident response.
  • Ensure ongoing compliance with security policies and standards.
  • Evaluate new security tools to improve security posture.
Apply

Related Jobs

Apply

πŸ“ U.S.

πŸ” Information Security

🏒 Company: GuidePoint Security

  • Minimum 8-10 years of experience building or managing cloud environments.
  • Professional certification in Azure, such as Azure Solutions Architect Expert preferred.
  • Strong understanding of cloud computing technologies and business drivers.
  • Proficient in Azure services including Entra ID, Azure VMs, and more.
  • Must pass the CCSK or (ISC)2 CCSP within 6 months.

  • Design Azure cloud solutions with a secure-by-design approach.
  • Collaborate with customer IT teams to implement and secure cloud resources.
  • Develop scalable and resilient cloud architecture solutions in Azure environments.
  • Create and implement migration strategies for on-premises to Azure.
  • Ensure compliance with architectural policies and enforce security requirements.

Microsoft AzureCI/CDTerraformNetworking

Posted 3 days ago
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 180000.0 - 230000.0 USD per year

πŸ” Cybersecurity

🏒 Company: Trail of BitsπŸ‘₯ 11-50SecurityNational SecurityCyber SecuritySoftware

  • Extensive experience in application security, focusing on identifying and mitigating cloud infrastructure vulnerabilities.
  • Track record of conducting technical security assessments across different platforms.
  • Strong programming and code auditing skills with experience in fuzzing and static analysis tools.
  • Proficiency in programming languages such as Go, Python, Rust, and JavaScript.
  • Ability to communicate complex security concepts effectively and mentor junior engineers.

  • Lead comprehensive security reviews of cloud-native applications and architectures, including cloud platform configurations.
  • Design and implement custom security tools for automated vulnerability detection.
  • Perform detailed architecture reviews and threat modeling, providing remediation guidance.
  • Work directly with industry-leading teams to analyze and recommend security improvements.
  • Contribute to application security advancement through research and development efforts.

AWSDockerPythonCloud ComputingCybersecurityGCPJavascriptKubernetesAPI testingAzureGoRustMicroservices

Posted 4 days ago
Apply
Apply

πŸ“ United States

πŸ’Έ 120000.0 - 175000.0 USD per year

πŸ” Cybersecurity

🏒 Company: PraetorianπŸ‘₯ 101-250πŸ’° $10,000,000 Series A almost 5 years agoPenetration TestingSecurityCloud SecuritySoftware EngineeringCyber SecurityEnterprise SoftwareNetwork Security

  • Demonstrated passion for offensive security and adversarial engineering.
  • 2+ years of IoT security experience in hardware/software reverse engineering, firmware analysis, embedded cryptography, wireless protocols, or IoT PaaS security.
  • Additional experience in product security testing, network security testing, web app penetration testing, and cloud security.
  • Understanding of threat models and attack paths.
  • Ability to write technical reports and present findings.

  • Provide technical execution on offensive security projects focused on IoT Security.
  • Identify nuanced vulnerabilities in advanced systems.
  • Develop custom methodologies, payloads, exploits, and tools.
  • Document mitigation strategies for emerging or undocumented risks.
  • Create comprehensive reports and presentations for clients.
  • Mentor other engineers in technical and professional development.
  • Collaborate with the security community to develop novel attack techniques.

AWSPythonEmbedded SystemsIoTMentoring

Posted 4 days ago
Apply
Apply

πŸ“ United States, Canada, Singapore, Poland, UK

πŸ’Έ 120000.0 - 175000.0 USD per year

πŸ” Cybersecurity

🏒 Company: PraetorianπŸ‘₯ 101-250πŸ’° $10,000,000 Series A almost 5 years agoPenetration TestingSecurityCloud SecuritySoftware EngineeringCyber SecurityEnterprise SoftwareNetwork Security

  • Demonstrated passion for offensive security and adversarial engineering.
  • 2+ years of experience in one or more offsec domains: software, hardware, network, or cloud penetration testing.
  • Ability to write technical reports and present technical findings both internally and externally.
  • Experience with startup and/or high-tech companies.
  • Prior security consulting experience a major plus.
  • Software development experience in core offsec languages such as golang or python.
  • Track record in vulnerability research, exploit development, and CVE assignments.

  • Provide technical execution on challenging offensive security projects for our customers.
  • Identify nuanced vulnerabilities in advanced systems.
  • Develop custom methodologies, payloads, exploits, and tools to ensure project success.
  • Develop documentation for novel mitigation strategies to emerging or undocumented security risks identified in client environments.
  • Develop comprehensive reports and presentations for our customers.
  • Serve as a mentor to other engineers in their technical and professional development.
  • Collaborate with the security community to develop novel attack techniques, tactics, and procedures (TTPs) through community engagement.

PythonSoftware Development

Posted 5 days ago
Apply
Apply

πŸ“ US

🧭 Full-Time

πŸ’Έ 116000.0 - 182000.0 USD per year

πŸ” Technology

🏒 Company: MozillaπŸ‘₯ 5001-10000πŸ’° $300,000 Angel about 20 years agoπŸ«‚ Last layoff 2 months agoInternetOpen SourceWeb BrowsersSoftwareBrowser Extensions

  • 3+ years of relevant hands-on experience in a cybersecurity domain designing, publishing and building security practices.
  • 3+ years of experience translating technical and administrative security controls into actionable platform configurations.
  • Strong infrastructure security knowledge from high-level architectural concepts to implementation.
  • Experience securing large-scale deployments in major cloud stacks (AWS, GCP, or Azure).
  • Proficiency in using Terraform and GitHub Actions.
  • Experience with CNAPP / CSPM / CWPP solutions and Web Application Firewalls.
  • Experience in vulnerability management and with DevOps or SRE teams.
  • Development skills primarily in Python and Go.

  • Protect the services our products depend on from security risks and attacks.
  • Design, implement, and maintain tooling, systems, and processes for securing our cloud infrastructure.
  • Design, review, and improve the security controls of the organization.
  • Write, maintain, and expand security automation and monitoring tools.
  • Work with developers and operations to keep infrastructure safe.
  • Collaborate with cross-functional teams to enhance security practices.
  • Support other cybersecurity functions to improve security posture.

AWSPythonCybersecurityGCPAzureGoCI/CDDevOpsTerraform

Posted 8 days ago
Apply
Apply

πŸ“ United States, Brazil, Tel Aviv

πŸ” Cybersecurity

🏒 Company: AxoniusπŸ‘₯ 600-600πŸ’° $200,000,000 Series E 11 months agoAsset ManagementCloud SecurityInformation TechnologyCyber SecurityNetwork Security

  • 2-3 years of experience in application security focused on web applications and APIs.
  • Hands-on experience as a software engineer with proficiency in Python, JavaScript, or similar.
  • Strong knowledge of application security principles, including OWASP Top Ten.
  • Familiarity with security tools such as SAST, DAST, and SCA integrated into CI/CD pipelines.
  • Experience with vulnerability management practices.
  • Experience with cloud environments (AWS, GCP) and modern DevOps tools (Terraform, Docker, Kubernetes).
  • Excellent English and Hebrew communication skills.
  • Strong sense of ownership and ability to work independently or collaboratively.

  • Implement and maintain security tools (e.g., SAST, DAST, SCA) as part of the SDLC.
  • Conduct vulnerability management activities including monitoring and coordinating remediation with development teams.
  • Stay updated with the latest application security threats and improve Axonius' security practices.
  • Develop and maintain security automation scripts.
  • Assist in coordinating external penetration testing engagements.
  • Collaborate with R&D teams and external partners to strengthen product security.
  • Support initiatives like bug bounty programs and internal testing.

AWSDockerPythonGCPJavascriptKubernetesCI/CDTerraform

Posted 10 days ago
Apply
Apply

πŸ“ United States

πŸ’Έ 110400.0 - 138000.0 USD per year

πŸ” SaaS (Software as a Service)

🏒 Company: G-P

  • Education: BS (or higher) in Computer Science or related field, or equivalent work experience.
  • Experience: 3+ years in application security.
  • Excellent communication skills and business acumen.
  • Proficiency in coding/scripting languages (e.g., Python, Go).
  • Web application penetration testing experience.
  • AWS security and engineering knowledge.
  • Experience with developing or testing web application technologies.
  • Nice to have: security certifications, experience with Linux, Docker, Terraform.

  • Support the implementation of G-P’s established application security program.
  • Assess the company's web technologies using enterprise-grade tools.
  • Coordinate remediation efforts with engineering teams.
  • Participate in threat modeling exercises with engineering team members.
  • Triage SCA/SAST/DAST/CSPM findings.
  • Support vulnerability management efforts for networks and infrastructure.
  • Perform security assessments, reviews, and internal penetration tests.
  • Develop scripts and tools to automate repetitive security tasks.

AWSDockerPythonGoREST APITerraformScripting

Posted 11 days ago
Apply
Apply

πŸ“ Washington DC Metropolitan

🧭 Full-Time

πŸ” Information technology consulting services

🏒 Company: Arlo Solutions LLC

  • Must have an active TS Clearance SCI eligible.
  • Bachelor’s degree in computer science/information technology or related fields preferred.
  • At least 10+ years of cybersecurity experience including a senior role.
  • At least one IAT/IAM or equivalent security certification (e.g., CISSP, CCSP, CISM, CISA, or CASP).
  • Expert understanding of NIST 800 series guidelines and DoDI standards.
  • Experience in CI/CD DevSecOps environments and government cloud integrations.

  • Work with Programs to develop a comprehensive System Security Engineering (SSE) Body of Evidence (BOE).
  • Provide senior advisory support to CDAO AO regarding authorizations of CDAO capabilities.
  • Utilize expert knowledge for risk management strategies.
  • Evaluate threats and vulnerabilities to determine safeguards.
  • Collaborate with AO, program leadership, and CDAO leadership.
  • Provide independent risk analysis and recommendations.
  • Identify security baseline and develop assessment criteria.
  • Author and present briefs regarding authorization status.

AWSCloud ComputingCybersecurityGCPAzureComplianceRisk Management

Posted 11 days ago
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 100000.0 - 150000.0 USD per year

πŸ” Information Security and Engineering

🏒 Company: EVOTEK, Inc.

  • 5-10 years' experience in Information Security and Engineering.
  • Strong background in data/information security and system engineering.
  • Deep and wide expertise in the security space.
  • Extensive experience with various security solutions and concepts.
  • Proficient in deploying, troubleshooting, and managing security solutions.
  • Experience monitoring infrastructure for security breaches.
  • Familiarity with regulatory requirements like GDPR, CCPA, HIPAA, and PCI DSS.
  • Deep understanding of server operating systems, particularly Windows Server and Linux.
  • Experience with AWS and/or Azure environments is a plus.
  • Excellent written and verbal communication skills.

  • Testing, installing, configuring, and maintaining security solutions/tools.
  • Monitoring infrastructure for unusual activity, breaches, and incidents.
  • Collaborating with client teams on security tool implementation and maintenance.
  • Communicating security findings, incidents, and concerns effectively.
  • Engaging in Resident Engineer positions with specific clients as needed.
  • Developing and documenting security standards and policies.
  • Assisting with installation and operation of new security products.
  • Conducting vulnerability scans and participating in remediation efforts.
  • Leading incident response and investigations.
  • Educating client staff on information security best practices.

AWSAzureLinuxDocumentation

Posted 15 days ago
Apply
Apply
πŸ”₯ Security Engineer
Posted 24 days ago

πŸ“ United States

🧭 Full-Time

πŸ’Έ 101500.0 - 178250.0 USD per year

πŸ” Design-driven platform for building brands and businesses online

🏒 Company: SquarespaceπŸ‘₯ 1001-5000πŸ’° Post-IPO Secondary about 1 year agoDeveloper ToolsPublishingE-Commerce PlatformsWeb DesignSoftware

  • Bachelor's degree in Computer Science or a relevant field, or equivalent hands-on experience in the security domain.
  • 1+ years of experience in threat modeling and risk assessments, helping identify security risks and proposing mitigation strategies.
  • Hands-on experience deploying secure coding practices, automation tools, and application security solutions (e.g., SAST, DAST, SCA tools).
  • Experience in programming languages such as Python, Java, JS or Go.

  • Demonstrate a broad understanding of security fundamentals to protect the organization's assets and infrastructure.
  • Collaborate with product teams to design security solutions and implement patching workflows.
  • Improve existing security monitoring tools and workflows.
  • Conduct threat modeling and risk assessments to identify vulnerabilities.
  • Communicate complex technical security issues cross-functionally.

PythonJavaJavascriptGo

Posted 24 days ago
Apply