обновлено 15 часов назад
Senior Security Infrastructure Engineer
5 000 - 9 500$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Security Infrastructure Engineer (Security Infrastructure): Strengthening Sezzle’s security posture across cloud infrastructure, applications, and developer workflows with an accent on vulnerability management, detection engineering (SIEM/XDR), and incident response at scale. Focus on designing secure AWS/Kubernetes infrastructure, reducing supply chain risk in CI/CD, and building security automation (including AI where appropriate) to improve efficiency, visibility, and resilience.
Location: Mexico, Remote
Salary: $5,000 - $9,500 per month (Gross in USD)
Company
builds interest-free installment plans to make shopping more accessible and drive merchant conversions.
What you will do
- Lead and operate vulnerability management across infrastructure, platforms, and applications, including scanning, dependency analysis, validation of true positives, and remediation coordination.
- Build, operate, and mature SIEM/XDR capabilities: log ingestion, detection rule development, alert tuning, and investigation workflows.
- Investigate and respond to security incidents across cloud infrastructure and applications, performing root cause analysis and driving long-term fixes.
- Design detection strategies for suspicious activity (including data exfiltration patterns) using application and database telemetry.
- Harden cloud infrastructure and CI/CD pipelines, focusing on software and container supply chain risk controls and dependency/container risk detection.
- Support security controls aligned with PCI DSS, SOC 2, and other compliance requirements; develop security automation (including AI where appropriate).
Requirements
- 6+ years of experience in security, software, or infrastructure engineering, with hands-on experience securing cloud-based production systems.
- Experience contributing to threat modeling and security design reviews for modern systems.
- Strong hands-on vulnerability management experience: scanning, triage, validation, remediation coordination, and verification.
- Experience with SIEM platforms (e.g., Wazuh, Splunk, ELK) for detection engineering, monitoring, and incident response.
- Strong knowledge of AWS, Linux, and Kubernetes, including security architecture, hardening, and operational best practices.
- Working knowledge of compliance frameworks such as PCI DSS and SOC 2.
Culture & Benefits
- Remote work from Mexico.
- Hands-on role with high ownership and autonomy to drive security improvements end-to-end.
- Opportunity to shape and scale security capabilities, including detection systems, supply chain risk controls, and security automation.
- Use modern tooling, including AI where appropriate, to improve efficiency and resilience.
Hiring process
- Interviews focused on security infrastructure ownership, detection/incident work, and practical problem-solving.
- Evaluation of hands-on experience with AWS/Kubernetes security, vulnerability management, and SIEM/XDR workflows.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →