Назад
Company hidden
обновлено 3 дня назад

Cloud Security Engineer

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
France/UK/Singapore +9 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cloud Security Engineer (AWS/GCP): Operating cloud security tooling and responding to incidents across cloud-native infrastructure with an accent on IAM, EDR/SIEM operations, and vulnerability remediation. Focus on distinguishing real threats from false positives, investigating cloud and endpoint telemetry, automating security work with Python, and driving fixes to closure.

Location: São Paulo, Brazil; hybrid work

Company

hirify.global is a cloud-first SaaS customer engagement platform that helps brands deliver personalized experiences through messaging, journey orchestration, and AI-powered decisioning.

What you will do

  • Respond to security alerts and incidents, triage events, support investigations, and improve incident-response playbooks.
  • Review cloud changes, designs, configurations, and access requests for security risks.
  • Operate and tune CrowdStrike EDR/CSPM, SIEM, cloud-native security services, and vulnerability scanners such as Tenable.
  • Manage IAM across AWS and GCP, conduct least-privilege reviews, and improve access hygiene.
  • Scan cloud assets, prioritize vulnerabilities by risk, and drive remediation with Infrastructure, SRE, and Product Engineering.
  • Write small Python scripts to automate repetitive security operations.

Requirements

  • Hands-on experience in security operations, cloud, or infrastructure with security tooling such as EDR, SIEM, or vulnerability scanners.
  • Working knowledge of AWS, especially IAM; exposure to GCP and container or cloud workloads is beneficial.
  • Ability to script in Python for automation beyond operating tools through their user interfaces.
  • Ability to explain why a detection, permission, or misconfiguration matters and distinguish meaningful findings from false positives.
  • Experience with incident response, vulnerability remediation, security reviews, and practical security operations reasoning.

Nice to have

  • Background in SRE, infrastructure, DevOps, SOC, or security analysis.
  • Home lab, CTF, technical write-up, or side project demonstrating security curiosity.
  • AWS or security certifications.

Culture & Benefits

  • Hybrid ways of working with a curated in-office experience.
  • Competitive compensation that may include equity.
  • Retirement and employee stock purchase plans, flexible paid time off, and comprehensive medical, dental, vision, life, and disability benefits.
  • Family services, fertility benefits, and equal paid parental leave.
  • Professional development with career pathing, learning platforms, and a yearly learning stipend.
  • Collaborative culture with employee resource groups, community volunteering, and donation matching.

Hiring process

  • Screening focuses on real-world incident response, EDR, IAM, vulnerability remediation, security reviews, and automation experience.
  • AI-assisted tools may be used during application review and interview administration, with recruiting teams remaining responsible for hiring decisions.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →