Apply

Senior Security Engineer

Posted 15 days agoViewed

View full description

💎 Seniority level: Senior, 5+ years

🔍 Industry: Cybersecurity

🏢 Company: Coalition, Inc.

🗣️ Languages: English

⏳ Experience: 5+ years

Requirements:
  • 5+ years of hands-on cybersecurity experience, preferably in threat research, incident response, or vulnerability analysis
  • Experience cybersecurity frameworks (MITRE ATT&CK, NIST, etc.)
  • Proficiency in programming/scripting languages like Python
  • Effective communication skills, with the ability to present technical research to both technical and non-technical audiences
  • Familiarity with network security, cloud security
  • Understanding of attack techniques and exploit development
  • Knowledge of tools like Nmap, Burp Suite, Metasploit, Wireshark or other offensive tools
Responsibilities:
  • Develop detection mechanisms and automated analysis tools to identify cyber risks
  • Collaborate with internal teams to enhance security intelligence and incident response
  • Develop best practices and technical guidance for customers to reduce cyber risks
  • Engage with the broader security community to stay informed about evolving threats
  • Develop POCs to detect specific technologies / vulnerabilities
Apply

Related Jobs

Apply

📍 Canada

🧭 Full-Time

🔍 Software Development

🏢 Company: Docker👥 251-500💰 $105,000,000 Series C about 3 years agoDeveloper ToolsDeveloper PlatformInformation TechnologySoftware

  • Background in Information Security, Computer Science, Computer Engineering, Forensics, or equivalent work experience.
  • 4-5 years of hands-on experience in detection and response, including triage and incident response in enterprise SaaS environments.
  • Proven experience in building log ingestion and normalization pipelines across diverse systems.
  • Expertise in Detection as Code, particularly using Python and SQL.
  • Subject matter expert in endpoint security and/or cloud security.
  • Strong working knowledge of Mac, Linux, and Windows operating systems.
  • Hands-on experience with major cloud infrastructures, including AWS, Azure, and GCP.
  • Experience with Kubernetes is a nice-to-have.
  • Demonstrated experience working across multiple teams in collaborative security roles.
  • Monitor, detect, and respond to cybersecurity threats, lead incident investigations, conduct root cause analysis, and automate threat detection and hunting.
  • Develop detection and response playbooks and participate in on-call rotations.
  • Design, implement, and maintain log ingestion, parsing, and normalization pipelines across endpoint, network, cloud, and application logs.
  • Ensure log consistency across EDR, SIEM, SOAR, and threat detection tools.
  • Use Terraform, Kubernetes, and scripting to automate log infrastructure in cloud environments and improve security monitoring efficiency.
  • Ensure log storage and retention meet regulatory and security requirements, support audit to maintain compliance
  • Work with Product Security, Infrastructure, DevOps, and IT on various initiatives to mature the Detection Engineering program and strengthen Docker’s overall security posture.
  • Partner with stakeholders to improve threat intelligence, detection, and incident response capabilities.

AWSPythonSQLCloud ComputingCybersecurityGCPKubernetesMac OS XAzureLinuxDevOpsTerraformComplianceScripting

Posted 1 day ago
Apply
Apply

📍 United States

🏢 Company: ActivTrak👥 101-250💰 $50,000,000 Series B over 4 years agoInformation ServicesBusiness IntelligenceSaaSInformation TechnologySoftware

  • 5+ years experience in information security, with hands-on experience in security operations and compliance frameworks such as SOC2.
  • Experience implementing and maintaining security tools and controls, including SDLC and GRC tools.
  • Strong knowledge of security best practices and technologies, including access control, intrusion detection, and incident response.
  • Experience with cloud security, specifically in Google Cloud Platform (GCP).
  • Strong communication skills with the ability to explain complex security concepts to various stakeholders.
  • Hands-on experience with security monitoring tools, vulnerability scanning, and security testing.
  • Understanding of common security frameworks and ability to map controls to compliance requirements.
  • Experience with automation and scripting for security operations.
  • Execute our comprehensive security program, including implementing policies, procedures, and guidelines that align with industry standards and best practices.
  • Work with cross-functional teams to implement security measures that align with business objectives.
  • Deploy, maintain, and monitor security technologies, tools, and systems to enhance the organization's security posture.
  • Support the sales engineers by providing technical expertise on security requirements for potential and existing customers.
  • Assist in customer-facing sales calls to address specific technical security concerns.
  • Help develop security presentations and training materials to support internal and customer security objectives.
  • Conduct daily monitoring, triage, and escalation of security alerts from various security systems.
  • Validate and document submissions from our Responsible Disclosure program.
  • Maintain situational awareness of emerging vulnerabilities for our technology stack and escalate as needed.
  • Conduct scheduled and on-demand security assessments to identify and evaluate potential security risks and assist in developing mitigation plans.
  • Implement product security features and capabilities in collaboration with the product development team.
  • Perform scheduled and on-demand vulnerability scanning and penetration testing against networks and applications.
  • Investigate, triage, and respond to security incidents, ensuring proper documentation and escalation.

Cloud ComputingCybersecurityGCPCI/CDLinuxDevOpsComplianceRisk ManagementScripting

Posted 1 day ago
Apply
Apply

📍 Canada, United States

🧭 Full-Time

💸 156000.0 - 210000.0 USD per year

🔍 Security

  • Minimum of 6 years combined experience as a software, infrastructure, and/or security engineer.
  • Demonstrated success at designing, implementing, deploying, securing, and monitoring highly-available, critical production systems with broad company impact.
  • Hands-on experience with a variety of technologies and approaches in both the cloud infrastructure and security spaces; e.g. service identity, workload hardening, networking, authentication and authorization, software supply chain, etc.
  • Expertise with AWS Service Control Policies and permission boundaries.
  • Experience with software development (Golang preferred).
  • Design, build, and maintain tooling, software, and systems for securing our cloud infrastructure.
  • Own the delivery and success of infrastructure security projects that span engineering teams.
  • Work with cross-functional partners to define the best security solutions for our infrastructure and reduce unnecessary friction, while maintaining a high degree of software development velocity.
  • Provide technical leadership and mentorship to fellow engineers on the team.

AWSSoftware DevelopmentAWS EKSCloud ComputingCybersecurityKubernetesGoCI/CDRESTful APIsLinuxDevOpsTerraformNetworkingScriptingSoftware Engineering

Posted 1 day ago
Apply
Apply

📍 Canada

🔍 SaaS

  • Strong software development skills (ideally with Ruby on Rails, but experience with Python, Java, or C# is also welcome).
  • Solid understanding of secure development practices, including threat modelling, secure code review, the principles of DevSecOps, and deep understanding of API security principles and best practices.
  • Experience collaborating with product and engineering teams to improve security posture.
  • Experience building or integrating security automation tools into CI/CD pipelines or developer workflows, including familiarity with SCA/SCA/DAST tools.
  • Excellent communication skills and high emotional intelligence—you’re able to navigate complex conversations, build trust across teams, and influence without being prescriptive.
  • Help teams build and maintain secure systems by conducting threat modelling, manual and automated testing, and guiding secure design practices throughout the SDLC.
  • Evaluate the security posture of both internal features and third-party solutions through code reviews, architectural assessments, and vendor risk evaluations.
  • Drive continuous improvement by triaging vulnerabilities, building and integrating security automation into CI/CD pipelines, and adapting processes to keep pace with evolving threats.
  • Collaborate closely with developers and Security Champions to scale secure development practices and embed a culture of shared responsibility for security.

PythonSoftware DevelopmentJavaRuby on RailsC#API testingCommunication SkillsCI/CDSaaS

Posted 3 days ago
Apply
Apply

📍 Canada

🧭 Full-Time

💸 123600.0 - 193000.0 USD per year

🔍 SaaS

  • Strong software development skills (ideally with Ruby on Rails, but experience with Python, Java, or C# is also welcome).
  • Solid understanding of secure development practices, including threat modelling, secure code review, the principles of DevSecOps, and deep understanding of API security principles and best practices.
  • Experience collaborating with product and engineering teams to improve security posture.
  • Experience building or integrating security automation tools into CI/CD pipelines or developer workflows, including familiarity with SCA/SCA/DAST tools.
  • Help teams build and maintain secure systems by conducting threat modelling, manual and automated testing, and guiding secure design practices throughout the SDLC.
  • Evaluate the security posture of both internal features and third-party solutions through code reviews, architectural assessments, and vendor risk evaluations.
  • Drive continuous improvement by triaging vulnerabilities, building and integrating security automation into CI/CD pipelines, and adapting processes to keep pace with evolving threats.
  • Collaborate closely with developers and Security Champions to scale secure development practices and embed a culture of shared responsibility for security.

PythonSoftware DevelopmentCybersecurityJavaRuby on RailsC#API testingCommunication SkillsCI/CDLinuxDevOpsExcellent communication skillsJSONSoftware EngineeringSaaS

Posted 3 days ago
Apply
Apply

🧭 Contract

  • Experience as a lead in the Security Operations program (7+ years experience)
  • Experience with cybersecurity incident response investigations and management
  • Experience triaging and investigating cybersecurity alerts
  • Experience with SIEM, EDR, and log analysis
  • Experience developing tools to optimize and automate response processes
  • Proficiency in Python
  • Exceptional communication and stakeholder management skills with proven ability to communicate clearly with all leadership levels
  • Familiarity with Cloud Security (AWS) and infrastructure-as-code
  • Monitor, investigate, and respond to security threats across systems and networks
  • Continuously improve cybersecurity response operations
  • Develop Security Operations learning and development materials
  • Grow the presence and thought leadership of Security Operations
  • Define, implement, and track Security Operations KPIs
  • Participate in on-call rotation for incident response and escalations
  • Prepare and present Security Operations vision and strategy for Security leadership
  • Automate Security Operations processes
Posted 5 days ago
Apply
Apply

📍 United States

💸 145000.0 - 160000.0 USD per year

🔍 Software Development

🏢 Company: Harness

  • At least 7 years of relevant industry experience in roles such as systems engineer, security engineer, cloud security specialist, or site reliability engineer.
  • Expert-level professional knowledge in enterprise applications and infrastructure.
  • Extensive experience working in a cloud-native environment, with proficiency in platforms like AWS, GCP, and Azure.
  • Familiarity with industry regulations and compliance certifications, including ISO 27001, SOC 2, FedRAMP, and SOX.
  • A desire to contribute to a high-growth environment and take a leading role in building new programs from the ground up.
  • Strong attention to detail and a willingness to ask questions when uncertain.
  • Comfort with ambiguity, with a proactive approach to bringing clarity in uncertain situations.
  • Take a leading role in the design of the next level of secure operations for Harness' cloud and business infrastructure
  • Take charge of implementing and overseeing security tooling, encompassing the detection and alerting systems for identifying malicious activity and insecure configurations
  • Utilize automation to effectively manage and enhance the security posture of Harness' multi-cloud Kubernetes-based infrastructure
  • Use Harness CI/CD to integrate security processes like vulnerability management into the SDLC
  • Contribute to the development, review, and implementation of technical security and compliance-related engineering requirements across global Engineering teams
  • Detect, respond, and mitigate security related events and incidents.
  • Collaborate with fellow Developers and Product Managers to analyze and implement security standards, methods, and architectures

AWSCloud ComputingCybersecurityGCPKubernetesAzureCI/CDRESTful APIsLinuxDevOpsTerraformComplianceAnsibleScripting

Posted 7 days ago
Apply
Apply

📍 Serbia, Bulgaria, Romania

🔍 Cyber Security

🏢 Company: GoDaddy👥 5001-10000💰 $800,000,000 Post-IPO Equity over 3 years ago🫂 Last layoff over 1 year agoWeb HostingDomain RegistrarWeb DevelopmentOnline Portals

  • 5+ years’ experience in a Cyber Security environment
  • Strong proficiency in AWS apps
  • Experience in providing technical hands-on training workshops
  • Experience designing, supporting, and delivering large-scale distributed solutions
  • Strong analytical and problem-solving skills, with the ability to think critically and uncover complex problems
  • Develop training, documentation, and playbooks for cloud technologies and threat types
  • Implement security detections for evolving threats in AWS and Azure threat landscape
  • Collaborate with security architects and engineers to evaluate, test, and implement new security technologies and solutions
  • Deploy security solutions using high availability and scalability technics
  • Develop and report on Cloud security coverage metrics and remediation plans
  • Conduct proactive threat hunting activities to identify potential security threats across our organization's networks, systems, and applications
  • Build and deploy operational tools with scalability in mind

AWSPythonBashCloud ComputingCybersecurityKubernetesAnalytical SkillsCI/CDProblem SolvingDevOpsDocumentationTrainingAnsibleScripting

Posted 7 days ago
Apply
Apply

📍 United States

🧭 Full-Time

🔍 Payments, Healthcare

🏢 Company: Truemed👥 1-10💰 $3,500,000 Seed over 1 year agoPaymentsWellnessHealth Care

  • 5+ years of experience in security engineering, compliance, or security operations
  • Hands-on experience with SOC2 Type II audits
  • Strong background in vulnerability management, endpoint security, and secure software development practices
  • Familiarity with MDMs, antivirus tools, SIEMs, and web security best practices
  • Experience working with GRC teams and responding to enterprise security questionnaires
  • Lead SOC2 Type II Compliance
  • Governance, Risk, and Compliance (GRC)
  • Security Tooling & Implementation
  • Incident Response & Risk Mitigation
  • Cross-Team Collaboration

CybersecurityComplianceRisk Management

Posted 9 days ago
Apply
Apply

🧭 Full-Time

🔍 Software Development

🏢 Company: Braze👥 1001-5000💰 Grant almost 2 years agoCRMAnalyticsMarketingMarketing AutomationSoftware

  • 5+ years of Security Engineering experience with a strong focus on enterprise security, network security, endpoint security
  • 3+ years of experience working in a corporate security organization/environment with hands on, technical, user facing implementation
  • Prior experience working as a technical authority in a team environment
  • Professional experience with the modern tech stack and protecting SA AS applications. This includes securing Email, Mac endpoints, IAM, EDR, JAMF, Enterprise networking
  • Design, implement, and manage security solutions to protect Braze’s users and infrastructure
  • Take an active role in developing, facilitating, and implementing security infrastructure designed to scale with the organizations growing needs
  • Help expand SIEM capabilities by configuring detections and enhancing alerting
  • Implement automation systems to assist in detections and reporting, and be responsible for prioritizing ingestion and maintaining system operability
  • Work with us to build new functionality that will make it easier, faster, and safer to build for a high scale, growing customer base, and expanding technology footprint
  • Work with Security and Engineering resources to help respond to critical incidents and escalations regarding your responsible domain
  • Guide and perform security activities including vulnerability testing and analysis, design and implementation of new solutions/features and investigation into security events
  • Ensure teams are implementing applications/environments in compliance of defined security policies based on risk avoidance and security best practices
  • Make recommendations on toolset and process modifications and improvements and production IT security support
  • Perform the Evaluation and Recommendation of current and future technology solutions to mitigate risk to the business
  • Participate in documentation and adherence to Security Policies and Operating Procedures
Posted 14 days ago
Apply

Related Articles

Posted about 1 month ago

Why remote work is such a nice opportunity?

Why is remote work so nice? Let's try to see!

Posted 8 months ago

Insights into the evolving landscape of remote work in 2024 reveal the importance of certifications and continuous learning. This article breaks down emerging trends, sought-after certifications, and provides practical solutions for enhancing your employability and expertise. What skills will be essential for remote job seekers, and how can you navigate this dynamic market to secure your dream role?

Posted 8 months ago

Explore the challenges and strategies of maintaining work-life balance while working remotely. Learn about unique aspects of remote work, associated challenges, historical context, and effective strategies to separate work and personal life.

Posted 8 months ago

Google is gearing up to expand its remote job listings, promising more opportunities across various departments and regions. Find out how this move can benefit job seekers and impact the market.

Posted 8 months ago

Learn about the importance of pre-onboarding preparation for remote employees, including checklist creation, documentation, tools and equipment setup, communication plans, and feedback strategies. Discover how proactive pre-onboarding can enhance job performance, increase retention rates, and foster a sense of belonging from day one.