Назад
Company hidden
2 мСсяца Π½Π°Π·Π°Π΄

Senior Security Engineer (Cybersecurity)

Π€ΠΎΡ€ΠΌΠ°Ρ‚ Ρ€Π°Π±ΠΎΡ‚Ρ‹
remote (Ρ‚ΠΎΠ»ΡŒΠΊΠΎ Europe)
Π’ΠΈΠΏ Ρ€Π°Π±ΠΎΡ‚Ρ‹
fulltime
Π“Ρ€Π΅ΠΉΠ΄
senior
Английский
b2
Π‘Ρ‚Ρ€Π°Π½Π°
France/UK/US +8 Π΅Ρ‰Π΅
Вакансия ΠΈΠ· списка Hirify.GlobalВакансия ΠΈΠ· Hirify Global, списка ΠΌΠ΅ΠΆΠ΄ΡƒΠ½Π°Ρ€ΠΎΠ΄Π½Ρ‹Ρ… tech-ΠΊΠΎΠΌΠΏΠ°Π½ΠΈΠΉ
Для мэтча ΠΈ ΠΎΡ‚ΠΊΠ»ΠΈΠΊΠ° Π½ΡƒΠΆΠ΅Π½ Plus

ΠœΡΡ‚Ρ‡ & Π‘ΠΎΠΏΡ€ΠΎΠ²ΠΎΠ΄

Для мэтча с этой вакансиСй Π½ΡƒΠΆΠ΅Π½ Plus

ОписаниС вакансии

ВСкст:
/
TL;DR
Senior Security Engineer (Cybersecurity): Building and continuously improving Overstory’s security and compliance program for systems, data, infrastructure, and applications with an accent on vulnerability management, cloud security, identity and access management, and SOC 2 and ISO 27001 alignment. Focus on designing secure-by-default controls, leading audit readiness, managing third-party risk, and translating security risks into actionable guidance across technical and business teams.

Location: Remote for candidates living and working in the United States, the Netherlands, the United Kingdom, Ireland, Estonia, Portugal, France, Sweden, Switzerland, Denmark, or Canada. Working hours must align with Eastern North America time zones: NST, AST, or EST.

Company

hirify.global uses AI and satellite imagery to identify vegetation risks around power lines, helping utility companies prevent outages, reduce wildfire risks, and build a more resilient electrical grid.

What you will do

  • Own and continuously improve the security and compliance program across infrastructure, applications, and internal systems.
  • Manage vulnerability detection, prioritization, remediation workflows, and collaboration with engineering teams.
  • Lead compliance activities for SOC 2 and ISO 27001, including control design, evidence collection, audit readiness, and auditor coordination.
  • Improve identity and access management, endpoint security, IT security operations, and secure-by-design architecture practices.
  • Own vendor security and third-party risk management, including assessments, risk evaluation, and mitigation.
  • Partner with customer-facing teams on security questionnaires, awareness, documentation, and scalable response processes.

Requirements

  • 5+ years of experience in security engineering, security operations, or a related field.
  • Direct experience with SOC 2 and/or ISO 27001 frameworks and audit processes.
  • Deep experience with vulnerability management, including tooling, prioritization, and remediation.
  • Experience across AWS, GCP, or Azure and modern SaaS environments.
  • Experience with identity and access management, endpoint security, and IT/security operations.
  • Strong written communication, documentation, stakeholder communication, and cross-functional influencing skills.

Nice to have

  • Experience designing or improving SIEM, logging, and alerting pipelines.
  • Familiarity with Drata, Vanta, Tugboat, or similar compliance automation platforms.
  • Application or cloud security engineering experience.
  • Experience mentoring or guiding junior team members.
  • Experience using AI tooling to accelerate business impact.

Culture & Benefits

  • Flexible, autonomous, collaborative, remote-first working environment.
  • Home office stipend, coworking budget, and ongoing education budget.
  • Competitive, location-specific compensation and benefits.
  • Annual in-person team gathering and occasional in-person collaboration opportunities.
  • Mission-driven work focused on reducing wildfires, protecting natural resources, and addressing climate change.

Π‘ΡƒΠ΄ΡŒΡ‚Π΅ остороТны: Ссли Ρ€Π°Π±ΠΎΡ‚ΠΎΠ΄Π°Ρ‚Π΅Π»ΡŒ просит Π²ΠΎΠΉΡ‚ΠΈ Π² ΠΈΡ… систСму, ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΡ iCloud/Google, ΠΏΡ€ΠΈΡΠ»Π°Ρ‚ΡŒ ΠΊΠΎΠ΄/ΠΏΠ°Ρ€ΠΎΠ»ΡŒ, Π·Π°ΠΏΡƒΡΡ‚ΠΈΡ‚ΡŒ ΠΊΠΎΠ΄/ПО, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡ‚Π΅ этого - это мошСнники. ΠžΠ±ΡΠ·Π°Ρ‚Π΅Π»ΡŒΠ½ΠΎ ΠΆΠΌΠΈΡ‚Π΅ "ΠŸΠΎΠΆΠ°Π»ΠΎΠ²Π°Ρ‚ΡŒΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡˆΠΈΡ‚Π΅ Π² ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΡƒ. ΠŸΠΎΠ΄Ρ€ΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β†’