Назад
Company hidden
5 часов назад

Staff Security Engineer, Cloud & AI Platform

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Security Engineer, Cloud & AI Platform (AWS/Terraform/AI Security): Building secure-by-design cloud, software delivery, application, and AI platforms with an accent on AWS security architecture, reusable infrastructure controls, CI/CD protection, and agentic-system hardening. Focus on threat modeling, least-privilege access, automated security checks, adversarial AI testing, and technical incident remediation.

Location: US TN — Remote

Company

hirify.global Real Estate Group invests in and operates a global portfolio of office, retail, multifamily, logistics, hospitality, and alternative real estate assets.

What you will do

  • Define secure-by-default architecture, engineering standards, reusable controls, and paved roads for cloud and AI platforms.
  • Own security architecture for multi-account AWS environments, including IAM, KMS, VPC controls, WAF, logging, detection, and governance services.
  • Build Terraform or OpenTofu security modules and protect GitHub Actions workflows, runners, artifacts, secrets, and deployment permissions.
  • Integrate secrets detection, dependency and container scanning, SBOMs, infrastructure-as-code analysis, code scanning, and risk-based release gates.
  • Lead threat modeling and security design reviews for applications, APIs, data flows, authentication, authorization, and agentic systems.
  • Develop AI security patterns and evaluations, translate telemetry into detections and runbooks, and lead technical incident response and remediation.

Requirements

  • 8+ years of experience with senior or Staff-level ownership of production security or platform systems.
  • Deep AWS security experience with IAM, AWS Organizations or multi-account environments, logging, detection, KMS, networking, and service-to-service authorization.
  • Strong Terraform or OpenTofu skills, including modular design, remote execution, policy controls, and safe state-aware changes.
  • Experience securing CI/CD systems such as GitHub Actions, including OIDC federation, runner trust boundaries, secrets, artifacts, and deployment permissions.
  • Knowledge of application security fundamentals, including threat modeling, secure API design, secrets handling, dependency risk, and vulnerability remediation.
  • Ability to write production-quality automation or application code in Python, Go, Ruby, or a comparable language, and influence teams without direct authority.

Nice to have

  • Experience with Amazon Bedrock, AgentCore, MCP, LLM gateways, AI guardrails, or production agentic systems.
  • Container and orchestration security across ECS/Fargate or EKS, including image supply chains, runtime isolation, and egress control.
  • Experience with identity platforms, remote infrastructure-as-code platforms, security observability tools, or sensitive-data controls.
  • AI threat modeling, red teaming, or security evaluation experience.

Culture & Benefits

  • Remote work in the United States with a collaborative, entrepreneurial, and disciplined culture.
  • Opportunities for career progression, challenging assignments, training, and professional development.
  • Benefits include 401(k) matching, tuition reimbursement, summer Fridays, and paid maternity leave.
  • Compensation includes a geography-adjusted base salary and short-term cash incentive program.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →