Назад
Company hidden
2 дня назад

Senior Product Security Engineer (GCP/AWS)

192 000 - 230 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Product Security Engineer (GCP/AWS): Securing cloud infrastructure across GCP and AWS by turning threat models into Terraform, Kubernetes, CI/CD, and GitOps fixes with an accent on AI-assisted infrastructure remediation, IAM hardening, and container security. Focus on scaling agent-driven fixes, preventing unsafe AI-generated changes, and helping platform teams implement secure configurations across their environments.

Location: United States - Boston Office

Salary: $192,000–$230,000 annual base salary in Boston; CAD 122,000–145,000 annual base salary in Ottawa

Company

hirify.global provides an AI-native developer security platform that helps identify, fix, and prevent vulnerabilities across code, dependencies, containers, and cloud infrastructure.

What you will do

  • Threat model cloud infrastructure across GCP and AWS and negotiate security improvements with platform teams.
  • Use AI coding agents to draft Terraform, Kubernetes, CI/CD, and pipeline fixes for review and merge by system owners.
  • Scale agent-driven remediation across repositories and maintain the prompts, skills, instructions, and security baselines guiding the agents.
  • Connect agents to cloud, CSPM, ticketing, and provider data through MCP servers, command-line tools, and APIs.
  • Harden GCP and AWS IAM, Kubernetes clusters, container images, network policies, admission controls, and workload identity.
  • Implement automated security testing and CSPM controls, benchmark infrastructure against CIS, ISO 27001, and NIST 800-53, and measure remediation effectiveness.

Requirements

  • 5–8 years of experience running or securing cloud infrastructure, preferably with production GCP or AWS platforms.
  • Deep hands-on GCP security knowledge and strong understanding of IAM hierarchies, roles, conditions, service accounts, workload identity federation, and organization policies.
  • Practical Kubernetes and container security experience, primarily with GKE, including cluster hardening, RBAC, admission control, network policy, and secure image pipelines.
  • Experience with Terraform, CI/CD pipelines, GitOps, DevSecOps, threat modeling, shift-left testing, and continuous monitoring.
  • Confidence using AI coding agents and writing reliable guidance and prompts, with the ability to identify unsafe defaults, invented resources, and excessive permissions.
  • Ability to influence and negotiate security changes with infrastructure teams that own and operate the systems.

Nice to have

  • Equivalent depth in AWS IAM or experience with EKS.
  • Application security experience, including code review or OWASP Top 10.
  • Experience with hirify.global or similar security testing tools.

Culture & Benefits

  • Inclusive environment focused on teamwork, care, customer centricity, and forward thinking.
  • Flexible working hours, work-from-home allowances, in-office perks, and learning and development time off.
  • Vacation and wellness time off, country-specific holidays, and fully paid parental leave for all caregivers.
  • Health benefits, employee assistance plans, wellness allowances, and location-specific insurance and retirement programs.
  • Financial, mobile phone, and education allowances tailored to location and role.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →