Senior Security Engineer (Cloud Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Boston, Massachusetts, United States; Vancouver, British Columbia, Canada; or Vancouver, Washington, United States. Select positions may be fully remote; this position is posted for candidates located in the listed locations.
Salary: $125,000–$205,000 USD annually for candidates located in the United States; $110,000–$160,000 CAD annually for candidates located in Canada.
Company
is an AI-powered influencer marketing platform that combines creator relationships, proprietary data, intelligence, and campaign management for enterprise brands.
What you will do
- Assess and improve security across applications, infrastructure, cloud environments, corporate systems, vendor tooling, and business workflows.
- Build internal security tools, automation, and services for secure development, compliance, vulnerability management, and operational visibility.
- Integrate secure build and deployment patterns, security scanning, dependency and container scanning, and secret management into CI/CD pipelines.
- Lead application security activities including secure design reviews, threat modeling, API security, code review guidance, and remediation planning.
- Improve cloud and corporate security through hardening, monitoring, configuration reviews, Infrastructure-as-Code scanning, access reviews, logging, and alerting.
- Partner with Engineering, Infrastructure, IT, Product, Legal, People, Finance, and business teams to support SOC 2 readiness and drive practical remediation.
Requirements
- 5–7+ years of experience as a Security Engineer or Software Engineer with a strong security focus.
- Production experience building software, automation, and internal security tooling.
- Strong knowledge of application, infrastructure, cloud, CI/CD, and corporate security controls.
- Experience with vulnerability management, secure software development, threat modeling, remediation workflows, and incident response.
- Experience applying OWASP, NIST, CIS Controls, SOC 2, and ISO 27001 in production or business environments.
- Familiarity with cloud security platforms, SIEM/SOAR tools, Infrastructure-as-Code scanning, C#, backend systems, cloud-native architecture, and SaaS tooling.
Nice to have
- Experience with AWS Security Hub, Azure Security Center, or GCP Security Command Center.
- Experience with Terraform or CloudFormation security scanning.
- Experience communicating complex security risks and recommendations to technical and non-technical audiences.
Culture & Benefits
- Inclusive, supportive, and inclusion-first work environment.
- Focus on impact, accountability, continuous learning, collaboration, resilience, and transparent communication.
- Permanent team members are eligible for various benefits plans.
- Compensation is market-based, data-driven, and reviewed twice per year.
- Equal opportunity employer with accessibility support available throughout the recruitment process.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →