2 дня назад
Senior Product Security Engineer (GCP/AWS)
192 000 - 230 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Product Security Engineer (GCP/AWS): Securing cloud infrastructure across GCP and AWS by turning threat models into Terraform, Kubernetes, CI/CD, and GitOps fixes with an accent on AI-assisted infrastructure remediation, IAM hardening, and container security. Focus on scaling agent-driven fixes, preventing unsafe AI-generated changes, and helping platform teams implement secure configurations across their environments.
Location: United States - Boston Office
Salary: $192,000–$230,000 annual base salary in Boston; CAD 122,000–145,000 annual base salary in Ottawa
Company
provides an AI-native developer security platform that helps identify, fix, and prevent vulnerabilities across code, dependencies, containers, and cloud infrastructure.
What you will do
- Threat model cloud infrastructure across GCP and AWS and negotiate security improvements with platform teams.
- Use AI coding agents to draft Terraform, Kubernetes, CI/CD, and pipeline fixes for review and merge by system owners.
- Scale agent-driven remediation across repositories and maintain the prompts, skills, instructions, and security baselines guiding the agents.
- Connect agents to cloud, CSPM, ticketing, and provider data through MCP servers, command-line tools, and APIs.
- Harden GCP and AWS IAM, Kubernetes clusters, container images, network policies, admission controls, and workload identity.
- Implement automated security testing and CSPM controls, benchmark infrastructure against CIS, ISO 27001, and NIST 800-53, and measure remediation effectiveness.
Requirements
- 5–8 years of experience running or securing cloud infrastructure, preferably with production GCP or AWS platforms.
- Deep hands-on GCP security knowledge and strong understanding of IAM hierarchies, roles, conditions, service accounts, workload identity federation, and organization policies.
- Practical Kubernetes and container security experience, primarily with GKE, including cluster hardening, RBAC, admission control, network policy, and secure image pipelines.
- Experience with Terraform, CI/CD pipelines, GitOps, DevSecOps, threat modeling, shift-left testing, and continuous monitoring.
- Confidence using AI coding agents and writing reliable guidance and prompts, with the ability to identify unsafe defaults, invented resources, and excessive permissions.
- Ability to influence and negotiate security changes with infrastructure teams that own and operate the systems.
Nice to have
- Equivalent depth in AWS IAM or experience with EKS.
- Application security experience, including code review or OWASP Top 10.
- Experience with or similar security testing tools.
Culture & Benefits
- Inclusive environment focused on teamwork, care, customer centricity, and forward thinking.
- Flexible working hours, work-from-home allowances, in-office perks, and learning and development time off.
- Vacation and wellness time off, country-specific holidays, and fully paid parental leave for all caregivers.
- Health benefits, employee assistance plans, wellness allowances, and location-specific insurance and retirement programs.
- Financial, mobile phone, and education allowances tailored to location and role.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Wiz
7 дней назад
Security Engineer, Product & Production Infrastructure (Cloud Security)
207 000 - 283 000$
6 дней назад
Security Engineer (Application Security)
120 000 - 140 000$
6 дней назад
Product Security Engineer (AI)
175 000 - 200 000$
Decagon
2 дня назад
Founding Platform Engineer, Security (AI)
200 000 - 400 000$
6 дней назад
Staff Product Security Architect
168 000 - 238 000$
6 дней назад
Principal Application Security Engineer (Cybersecurity)
163 625 - 211 750$