2 часа назад
Security Engineer (AWS)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Engineer (AWS/DevSecOps): Building secure cloud foundations, security automation, and developer guardrails for a fintech platform with an accent on AWS security, container hardening, vulnerability management, and compliance automation. Focus on securing ECS and EKS workloads, integrating security into CI/CD, conducting threat modeling, and leading incident response and remediation workflows.
Location: Remote
Company
is a European fintech building modular, API-first B2B payment, embedded finance, and white-label credit card solutions for businesses, financial software platforms, ERP providers, and banks.
What you will do
- Integrate security practices across the software development lifecycle, platform, infrastructure, and developer workflows.
- Build security automation for patching, vulnerability management, compliance evidence collection, and remediation at scale.
- Define secure reusable development standards, Terraform and Docker modules, and platform guardrails.
- Harden AWS containerized workloads across ECS and EKS, including images, admission controls, IAM, isolation, networking, and runtime monitoring.
- Lead threat modeling, architecture reviews, application security guidance, incident response, post-mortems, and vulnerability remediation.
- Deploy cloud security platforms such as Wiz and maintain security documentation, tooling, and feedback loops.
Requirements
- 5+ years of experience in a technical security role, preferably in a cloud-native, fintech, or SaaS environment.
- Strong AWS security experience with IAM, KMS, CloudTrail, S3, GuardDuty, and SCPs.
- DevSecOps and CI/CD security experience, plus proficiency in Terraform and secure reusable IaC modules.
- Proficiency in Python, Bash, or TypeScript for scripting and automation tooling.
- Experience securing Docker, ECS, EKS, or Kubernetes workloads and implementing hardened images.
- Expertise in OWASP Top 10, secure coding, software supply chain risks, SAST, DAST, threat modeling, penetration testing, and web vulnerability analysis.
Nice to have
- Exposure to PCI DSS, ISO 27001, SOC 2, or related compliance frameworks.
- Familiarity with detection engineering or lightweight SIEM tooling.
- Contributions to open-source security tools or internal security automation frameworks.
Culture & Benefits
- Remote work flexibility.
- Knowledge-sharing culture with a focus on technical excellence.
- Flat hierarchy and transparent communication in a professional environment.
- Choice of Windows or Mac operating system.
- Company card with a monthly allowance for lunches, coffee, and coworker activities.
- Opportunities for professional development in a growing team.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
22 минуты назад
Staff Security Engineer (AI)
31 минуту назад
Senior SecOps Engineer (AWS)
6 дней назад
Staff Security Engineer (AppSec)
3 дня назад
Security Architect (Cloud Security)
175 000 - 200 000$
18 часов назад
Senior Security Infrastructure Engineer (AWS/Kubernetes)
5 000 - 9 500$
18 часов назад
Senior Security Infrastructure Engineer (AWS/Kubernetes)
5 000 - 9 500$