Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Gorgias

Staff Security Platform Engineer

Gorgias

Platform Security Engineer managing security tools and processes at Gorgias. Focus on cloud security and incident response for their AI commerce platform.

Posted 5/5/2026full-timeBuenos Aires • 🇦🇷 ArgentinaLeadWebsite

Tech Stack

Tools & technologies
CloudGoGoogle Cloud PlatformKubernetesPythonTerraform

About the role

Key responsibilities & impact
  • Own cloud and Kubernetes security — IAM, RBAC, network policies, workload identity, and GKE hardening across 10+ global clusters
  • Design secure-by-default platforms — build guardrails and policy enforcement (OPA, Kyverno, or similar) that guide teams without blocking them
  • Harden CI/CD and IaC pipelines — secure GitHub Actions, ArgoCD, and Terraform workflows end-to-end
  • Lead secrets management — design and implement decoupled secrets architecture so credentials never live in deploys or repos
  • Strengthen networking fundamentals — VPC design, peering, cross-cloud connectivity, and zero-trust segmentation
  • Build security-focused logging and monitoring — design the observability layer that actually catches threats, not just collects noise
  • Implement runtime detection — IDS, file integrity monitoring, and behavioral anomaly detection across GKE workloads
  • Develop incident response playbooks — practical, tested runbooks for common incident types; own the response process end-to-end
  • Manage and evolve the SIEM — drive meaningful signal-to-noise improvements and build automated mitigation where it matters
  • Design and enforce strong auth standards across internal tools, APIs, and customer-facing surfaces
  • Audit and mature privileged access management — ensure least-privilege is real, not theoretical
  • Own the ongoing health of SOC 2 Type II — keep controls tight between audits, not just before them
  • Drive the next compliance milestones — ISO 27001 and data protection (PII, GDPR) as we expand enterprise and global reach

Requirements

What you’ll need
  • 5+ years in infrastructure security, cloud security, or security engineering — ideally in a high-growth SaaS environment
  • Deep GCP and Kubernetes expertise — GKE, workload identity, network policies, RBAC; you know where the bodies are buried
  • Strong networking fundamentals — VPC design, peering, firewall architecture, zero-trust networking
  • Hands-on CI/CD and IaC hardening — GitHub Actions, ArgoCD, Terraform security patterns
  • Auth expertise — OAuth 2.0, OIDC, SAML; you can design and audit identity flows, not just enable SSO
  • Policy-as-code experience — OPA, Kyverno, or equivalent; guardrails at the platform layer
  • Detection and response background — SIEM, IDS, runtime security tools, and experience writing real runbooks
  • Compliance experience — SOC 2 (Type II preferred), ISO 27001, GDPR/PII data protection
  • Scripting fluency — Python Go, Bash for automation, tooling, and incident response scripts

Benefits

Comp & perks
  • Health insurance
  • Flexible work arrangements
  • Professional development opportunities

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
cloud securityKubernetesGKEIAMRBACnetwork policiesCI/CDIaCTerraformPython
Soft Skills
leadershipincident responsepolicy enforcementcommunicationproblem-solving
Certifications
SOC 2 Type IIISO 27001