Назад
Company hidden
3 дня назад

Lead Security Engineer (AWS)

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
UK/Germany/Estonia
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Lead Security Engineer (AWS/Cloud): Driving security initiatives to embed secure-by-design principles across all platforms and products with an accent on automated detection and response tooling. Focus on designing proactive protections for cloud and CI/CD pipelines, threat modeling for high-impact features, and mentoring engineering teams.

Location: Hybrid (Tallinn, Estonia)

Company

hirify.global is a leading CRM platform helping small and medium-sized businesses grow and succeed.

What you will do

  • Create tooling and guardrails to deliver proactive, secure-by-default protections across cloud, CI/CD pipelines, and applications.
  • Lead design reviews and threat modeling for high-impact features to identify and mitigate risks early.
  • Enhance detection and Incident Response capabilities by tuning signals and implementing automated responders.
  • Manage security incidents and tabletop exercises, ensuring the improvement of runbooks and stakeholder communications.
  • Mentor engineers to uplevel secure coding practices and foster a security-positive culture.
  • Monitor emerging security trends and AI-based risks to keep the organization's security posture current.

Requirements

  • 5+ years of broad, hands-on experience across multiple security domains.
  • Strong software engineering fundamentals and proficiency in at least one programming language.
  • Proficiency in AWS and Infrastructure as Code (IaC).
  • Proven track record of partnering across functions to drive company-wide security outcomes.
  • Ability to think like both an attacker and a defender to improve prevention and detection.
  • Strong written and verbal communication skills for explaining complex security issues to non-technical audiences.

Nice to have

  • Experience with Agentic Coding (e.g., Claude, Codex) or orchestration tools (e.g., N8N).
  • Familiarity with Central Logging and Monitoring (e.g., Wazuh or other SIEM technologies).
  • Experience with Kubernetes and Container Orchestration.
  • Knowledge of EDR tools like CrowdStrike or SentinelOne.

Culture & Benefits

  • People-first culture that values authenticity, collaboration, and inclusivity.
  • Opportunity to experiment with latest technologies within an AI-First Vision.
  • Flexible working hours and performance-based bonuses.
  • Comprehensive leave policy: 28 paid leave days, well-being days, compassionate leave, and pawternal leave.
  • Investment in professional growth through mentorship, coaching, and internal mobility.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →