Назад
Company hidden
5 дней назад

Security Engineer

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US/Argentina/Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (Cloud/Application Security): Securing XBOW’s product, cloud infrastructure, and internal platforms with an accent on preventive controls, vulnerability management, and incident response. Focus on threat modeling, AppSec automation, CNAPP coverage, Kubernetes security, and driving risk-based remediation across cloud-native systems.

Location: Remote in the United States, Canada, or Argentina

Competitive salary, meaningful stock options, comprehensive benefits, and a 401(k) plan.

Company

hirify.global is a security company building with AI at its core.

What you will do

  • Design and implement security controls across cloud, infrastructure, and internal platforms.
  • Harden cloud architecture, IAM, infrastructure, Kubernetes, and container environments with engineering and platform teams.
  • Own product security reviews, threat modeling, and secure design decisions for new features and architecture changes.
  • Operate AppSec workflows including SAST, SCA, secrets scanning, and IaC scanning.
  • Manage vulnerability intake, prioritization, exceptions, validation, reporting, and risk-based remediation SLAs.
  • Monitor and respond to security incidents, improve CNAPP findings, and build automation for security operations and access workflows.

Requirements

  • 5+ years of experience in security engineering, product security, cloud security, platform security, or a related field.
  • Hands-on experience securing AWS, Azure, and GCP environments.
  • Experience with secure design reviews, threat modeling, code-level risk discussions, and AppSec tooling at scale.
  • Strong vulnerability triage and remediation management experience, including risk-based prioritization and SLAs.
  • Experience with CNAPP or equivalent cloud security platforms, Kubernetes and container security, and cloud-native incident response.
  • Ability to write scripts, build automation, and partner with developers and platform teams in remote-first environments.

Nice to have

  • Multi-cloud experience beyond AWS, including Azure, GCP, or OCI.
  • Offensive security or penetration-testing experience.
  • Experience scaling security at an early-stage startup toward audit readiness.
  • Security certifications such as OSCP, OSCE, AWS Security Specialty, or Kubernetes security certifications.

Culture & Benefits

  • Fully remote work with regular opportunities to meet colleagues in person.
  • Regular travel support for in-person collaboration.
  • Opportunity to work with security and AI experts on complex technical challenges.
  • Competitive salary, stock options, comprehensive benefits, and a 401(k) plan.

Hiring process

  • 30-minute introductory conversation with a Talent Partner.
  • Interviews with the Hiring Manager, Deputy CISO, and CISO.
  • One-hour technical deep dive.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →