Назад
Company hidden
6 дней назад

Security Engineer II (Cloud Security)

94 000 - 1 180 000CAD
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer II (Cloud Security): Building security automation, detection rules, vulnerability management tooling, and supply chain controls for a multitenant cloud hosting platform with an accent on application security, cloud-native environments, and secure software delivery. Focus on authoring SIEM detections, developing Python/Go security pipelines, coordinating remediation, and implementing access, DLP, secrets, and cloud security controls.

Location: Remote in Canada

Salary: CAD $94,000–$1,180,000 annual salary plus bonus and equity

Company

hirify.global operates a multitenant, container-based WebOps cloud platform that supports WordPress and Drupal websites for organizations worldwide.

What you will do

  • Author SIEM detection rules and response playbooks in Chronicle / Google SecOps using YARA-L.
  • Build security automation pipelines in Python or Go, including vulnerability management tooling, GHAS automation, and CI/CD integrations.
  • Own vulnerability identification, triage, and remediation coordination across application and infrastructure layers.
  • Implement supply chain security controls, including Aikido, SLSA, and dependency pinning.
  • Manage RBAC cleanup, access reviews, GitHub organization security policies, and cloud security baseline findings.
  • Define DLP policies and improve credential and secrets hygiene across repositories.

Requirements

  • 4+ years of overall experience, including at least 2+ years in Application Security or Security Engineering.
  • Experience building production security automation, vulnerability management scripts, CI/CD integrations, or detection rules.
  • Hands-on experience with Secure by Design practices, security architecture, and design reviews.
  • Experience securing production cloud systems; GCP is preferred, with AWS or Azure also valuable.
  • Ability to build maintainable components in Python or Go.
  • Experience with CI/CD, Docker or OCI containers, Terraform, Kubernetes, and SAST/DAST/SCA/CSPM tools.

Nice to have

  • Experience with CodeQL, Wiz, reusable CI/CD workflows, or Snowflake security.
  • Bachelor's degree in Computer Science or equivalent practical experience.

Culture & Benefits

  • Industry-competitive compensation with bonus and equity.
  • Flexible time off, sick days, and 13 paid holidays.
  • Medical, dental, and vision insurance.
  • Paid parental leave and family planning benefits.
  • Wellness and reading allowance, LinkedIn Learning access, and team and company events.

Hiring process

  • Reasonable accommodations are available during the interview process.
  • Visa sponsorship is not available.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →