Назад
Company hidden
16 часов назад

Security Operations Engineer

180 000 - 220 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Operations Engineer (AI/Security GRC): Operating and improving a multi-framework security and compliance program for Voice AI infrastructure and customer data with an accent on audit execution, control monitoring, vulnerability management, and security operations. Focus on automating evidence collection and remediation tracking, investigating alerts, supporting incident response, and securing rapidly evolving AI development systems.

Location: Remote

Salary: $180,000–$220,000 USD annually. The package also includes equity grants, employer-paid benefits, and a 401(k) match of up to 4% for US-based full-time team members.

Company

hirify.global develops Voice AI models and APIs that process large-scale audio workloads for voice applications.

What you will do

  • Drive SOC 2, ISO 27001, PCI 4.0, and other compliance audits from evidence collection through auditor fieldwork and remediation.
  • Own Vanta compliance automation, monitor controls, maintain integrations, and update the risk register.
  • Run vendor and third-party risk reviews, security assessments, and vendor and subprocessor inventories.
  • Partner with sales and legal on customer security questionnaires, RFP security sections, and trust-and-safety inquiries.
  • Lead vulnerability triage, remediation tracking, security alert investigation, escalation, and metrics reporting.
  • Support incident response and build scripts, integrations, reports, runbooks, and other tooling that reduces manual work.

Requirements

  • 3+ years of experience in security operations, GRC, IT security, or a related field.
  • 2+ years of experience running compliance audit cycles, including evidence collection, control documentation, and auditor coordination.
  • At least one relevant security certification, such as CISA, Security+, or AWS Security Specialty.
  • Experience with recurring security reviews, vulnerability tracking, alert triage, or control monitoring.
  • Strong organization and written communication skills for audit documentation, questionnaires, policies, and runbooks.
  • Proficiency in Python, ability to read existing code, and practical fluency with AI-assisted development tools.

Nice to have

  • Application security fundamentals, including threat modeling, secure code review, OWASP Top 10, or CWE.
  • Experience with SAST, SCA, DAST, secret scanning, IaC scanning, Terraform, or CI/CD security.
  • Knowledge of AWS, IAM, identity and SaaS administration, endpoint security, cloud security posture management, or SIEM detection engineering.
  • Experience securing AI/ML systems or inference infrastructure.
  • Experience working in a high-growth startup security role.

Culture & Benefits

  • Fully remote work with a high-ownership role on a small team.
  • Direct collaboration with engineering, sales, and legal teams.
  • 100% employer-paid benefits and competitive equity grants.
  • 401(k) matching of up to 4% for US-based full-time employees.
  • Equal opportunity workplace focused on ownership, lean execution, and practical automation.

Hiring process

  • Selected candidates receive guidance on hirify.global's use of AI during interviews.
  • EU candidates should review the job applicant privacy notice before applying.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →