Abnormal Security

Senior Security Engineer

Abnormal Security

full-time

Posted on:

Location Type: Remote

Location: United States

Visit company website

Explore more

AI Apply
Apply

Salary

💰 $170,000 - $200,000 per year

Job Level

Tech Stack

About the role

  • Maintain and improve CI/CD pipelines to support secure deployments and infrastructure workflows.
  • Manage infrastructure-as-code (IaC) PR and Change Control Board reviews, ensuring changes are tested, approved, and secure before release.
  • Perform security impact analyses (SIAs) for system/application changes and provide recommendations.
  • Run OS and infrastructure patch cycles; manage hardened images and patch workflows for FedRAMP environments.
  • Govern access management, including account provisioning, RBAC module maintenance, and periodic reviews.
  • Manage logging and monitoring pipelines; tune SIEM ingestion and alerting for coverage and accuracy.
  • Triage and respond to security incidents, from alert investigation through containment, recovery, and after-action reporting.
  • Maintain and refine runbooks, SOPs, and documentation to ensure consistent operations and audit readiness.
  • Collaborate with DevInfra, FedOps, Product, and Compliance teams to embed secure practices into operations and development.

Requirements

  • 5+ years in security engineering or infrastructure operations within federal or regulated cloud environments.
  • Strong familiarity with NIST 800-53 controls and continuous monitoring practices.
  • Proven delivery of AWS/SaaS security best practices.
  • Hands-on expertise with CI/CD, infrastructure automation, and IaC security practices.
  • Experience in patch management, hardened baselines, and secure image pipelines.
  • Strong knowledge of identity and access management (IAM) design and enforcement in large-scale environments.
  • Proven ability to manage SIEM pipelines and lead Tier 1/ Tier 2 incident response.
  • Strong technical documentation, collaboration, and incident/project management skills.
Benefits
  • Certain roles are eligible for a bonus
  • Restricted stock units (RSUs)
  • Individual compensation packages based on skills, experience, qualifications, and other job-related reasons.
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
CI/CDinfrastructure-as-code (IaC)security impact analysis (SIA)patch managementhardened imageslogging and monitoringSIEMidentity and access management (IAM)AWSSaaS
Soft Skills
collaborationincident managementproject managementtechnical documentation