Build and maintain detection, logging, and audit pipelines for cloud and infrastructure events.
Collaborate with SRE and Product Engineering to align infrastructure with secure-by-default principles and required standards (eg. FedRAMP, AWS Well Architected), while still focusing on enabling team velocity.
Support compliance activities (SOC 2, FedRAMP, ISO 27001, PCI, HiTrust) through evidence collection and automation.
Participate in incident response for both Corporate IT and SaaS events.
Own vulnerability management across production and development infrastructure assets.
Requirements
Bachelor's degree in Computer Science, Information Security, or equivalent experience.
3–7 years of experience in security engineering or cloud engineering roles with a strong security focus.
Deep understanding of AWS security architecture, and experience managing security in GCP environments.
Proficiency with Terraform, Pulumi, Python, and Bash.
Experience with Kubernetes and container security (Podman/Docker) and Linux hardening.
Familiarity with CI/CD security (artifact signing, supply-chain security, SBOMs).
Experience in FedRAMP and SOC 2 control environments.
Ability to communicate clearly across engineering, compliance, and leadership teams.
U.S. citizenship required; must be based in the United States.
Benefits
Fully remote company
Comprehensive health, vision, and dental coverage
Flexible time off
Company computer hardware of your choice
Work from home setup reimbursement.
Health & wellness perks including Virtual events, happy hours, trivia, and fun
Monthly Internet & Phone Reimbursement
Opportunities to learn and grow
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.