Назад
Company hidden
7 дней назад

Security Engineer

140 000 - 160 000$
Формат работы
remote (Global)
Тип работы
fulltime
Английский
b2
Страна
US/Europe
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (Cloud/SaaS Security): Building security foundations for a high-scale developer email platform with an accent on API keys, access controls, secrets management, tenant isolation, and secure deployment pipelines. Focus on detecting suspicious access, improving incident response, and designing practical security systems that preserve developer experience.

Location: Fully remote from the Americas or European timezones, with occasional travel for team offsites, conferences, and meetups.

Salary: $140,000–$160,000 USD per year, commensurate with experience.

Company

hirify.global is building a modern email sending platform for developers, used by more than 4 million developers.

What you will do

  • Build and improve platform security foundations, including API keys, service permissions, secrets management, tenant isolation, audit logs, and internal access controls.
  • Design secure defaults for services, workers, queues, databases, internal tools, and deployment pipelines.
  • Improve detection and response for suspicious access, leaked credentials, abnormal sending behavior, privilege changes, and sensitive system events.
  • Review processes and pipelines to embed security into engineering workflows.
  • Independently prioritize and drive security work as the first dedicated security hire.

Requirements

  • Experience securing production infrastructure, cloud environments, APIs, developer platforms, or multi-tenant SaaS products.
  • Ability to write code and read application, infrastructure, and deployment code.
  • Understanding of authentication, authorization, secrets, IAM, logging, audit trails, incident response, and secure deployment pipelines.
  • Practical, independent approach with a focus on developer experience and easy-to-adopt security.
  • Availability to work from the Americas or European timezones and travel occasionally for team events.

Nice to have

  • Experience with email infrastructure, transactional email, sender reputation, domain verification, SPF, DKIM, DMARC, webhooks, or abuse prevention.
  • Cloud security experience with AWS, Terraform, Kubernetes, Cloudflare, or similar systems.
  • Experience with open source security, GitHub organization hardening, package publishing, dependency review, or supply-chain security.
  • Experience preparing for SOC 2, ISO 27001, GDPR, enterprise security reviews, or customer trust processes.
  • Experience with security observability, alerting, detection pipelines, incident response, Trust & Safety, anti-abuse, fraud, or platform integrity.

Culture & Benefits

  • 100% remote team with flexible working schedules.
  • Autonomy and ownership of problems and solutions.
  • Practical, low-ego environment focused on shipping improvements.
  • Modern technology stack including Next.js, Raycast, and Notion.
  • Team of about 50 people across 15 countries.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →