Назад
Company hidden
11 часов назад

Security Engineer (Cloud Security)

155 000 - 190 000$
Формат работы
remote (только USA)/hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (Cloud Security): Safeguarding digital assets, infrastructure, applications, and connected IoT devices with an accent on vulnerability management, incident response, cloud security, and security remediation. Focus on integrating security controls into CI/CD pipelines, investigating incidents through SIEM and EDR logs, designing tabletop exercises, and securing AWS/GCP environments.

Location: Remote within the United States; hybrid if local to the San Mateo, California headquarters.

Salary: $155,000–$190,000 per year, adjusted based on experience, skills, market benchmarks, internal equity, and candidate location.

Company

hirify.global develops non-invasive prescription therapies and connected medical devices for chronic diseases, including neurological conditions.

What you will do

  • Manage open-source and third-party dependency risks, track CVEs, and integrate security scanning into CI/CD pipelines.
  • Manage external penetration tests and bug bounty programs, validate findings, and coordinate remediation.
  • Implement security controls across infrastructure, networks, and applications, including IAM, network segmentation, and secrets management.
  • Participate in incident response and on-call rotations, investigate SIEM, EDR, and cloud logs, and conduct post-incident reviews.
  • Design and facilitate security tabletop exercises for technical teams and executive leadership.
  • Monitor AWS/GCP security posture, report security metrics, support SOC 2, ISO 27001, and HIPAA controls, and develop security awareness training.

Requirements

  • Must be authorized to work full-time in the United States or be eligible for a sponsorship path hirify.global can support.
  • Bachelor’s degree in Computer Science, Software Engineering, or a related technical field.
  • 3+ years of experience in Security Engineering, Application Security, or Incident Response.
  • Hands-on experience with security tools such as Snyk, Dependabot, Burp Suite, Splunk, or Datadog.
  • Strong knowledge of OWASP Top 10, CWE, cloud security, CI/CD pipelines, and build automation.
  • Proficiency in Python and Bash scripting for security automation and tooling.

Nice to have

  • Experience with Go, JavaScript/TypeScript, Rust, Docker, AWS/GCP security tools, GRC platforms, or IaC security scanning.
  • Security certifications such as CISSP, CEH, OSCP, GCIH, or AWS Certified Security.
  • Experience with bug bounty services and cloud-connected IoT device security, including provisioning, key rotation, and OTA updates.
  • Ability to explain technical security concepts to non-technical stakeholders.

Culture & Benefits

  • Security-first culture supported through mentoring, training, and targeted awareness content.
  • Tools, training, and mentoring are provided to support employee development.
  • Flexible remote work is available within the United States, with a hybrid option for local employees.
  • Inclusive workplace focused on diversity of people, teams, and perspectives.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →