Назад
Company hidden
2 часа назад

Security Engineer (AWS)

Формат работы
remote (Global)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (AWS/DevSecOps): Building secure cloud foundations, security automation, and developer guardrails for a fintech platform with an accent on AWS security, container hardening, vulnerability management, and compliance automation. Focus on securing ECS and EKS workloads, integrating security into CI/CD, conducting threat modeling, and leading incident response and remediation workflows.

Location: Remote

Company

hirify.global is a European fintech building modular, API-first B2B payment, embedded finance, and white-label credit card solutions for businesses, financial software platforms, ERP providers, and banks.

What you will do

  • Integrate security practices across the software development lifecycle, platform, infrastructure, and developer workflows.
  • Build security automation for patching, vulnerability management, compliance evidence collection, and remediation at scale.
  • Define secure reusable development standards, Terraform and Docker modules, and platform guardrails.
  • Harden AWS containerized workloads across ECS and EKS, including images, admission controls, IAM, isolation, networking, and runtime monitoring.
  • Lead threat modeling, architecture reviews, application security guidance, incident response, post-mortems, and vulnerability remediation.
  • Deploy cloud security platforms such as Wiz and maintain security documentation, tooling, and feedback loops.

Requirements

  • 5+ years of experience in a technical security role, preferably in a cloud-native, fintech, or SaaS environment.
  • Strong AWS security experience with IAM, KMS, CloudTrail, S3, GuardDuty, and SCPs.
  • DevSecOps and CI/CD security experience, plus proficiency in Terraform and secure reusable IaC modules.
  • Proficiency in Python, Bash, or TypeScript for scripting and automation tooling.
  • Experience securing Docker, ECS, EKS, or Kubernetes workloads and implementing hardened images.
  • Expertise in OWASP Top 10, secure coding, software supply chain risks, SAST, DAST, threat modeling, penetration testing, and web vulnerability analysis.

Nice to have

  • Exposure to PCI DSS, ISO 27001, SOC 2, or related compliance frameworks.
  • Familiarity with detection engineering or lightweight SIEM tooling.
  • Contributions to open-source security tools or internal security automation frameworks.

Culture & Benefits

  • Remote work flexibility.
  • Knowledge-sharing culture with a focus on technical excellence.
  • Flat hierarchy and transparent communication in a professional environment.
  • Choice of Windows or Mac operating system.
  • Company card with a monthly allowance for lunches, coffee, and coworker activities.
  • Opportunities for professional development in a growing team.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →