
Security Engineer
Sonatafy Technology - Mexico
full-time
Posted on:
Location Type: Remote
Location: Mexico
Visit company websiteExplore more
About the role
- Conduct security reviews and threat modeling for new product features
- Partner with engineering teams to embed secure development practices
- Improve vulnerability management and security scanning processes
- Help integrate security tools such as SAST and dependency scanning
- Manage and tune our Web Application Firewall (WAF)
- Monitor logs and alerts to identify suspicious activity
- Investigate and respond to security incidents
- Improve detection, logging, and alerting across our platform
- Drive implementation of SSO and centralized identity management
- Design and enforce least-privilege access controls
- Establish RBAC policies and support access review processes
- Help define the company’s security roadmap
- Establish measurable security KPIs and reporting
- Evaluate and recommend security tools and controls
- Collaborate with leadership on security and privacy considerations
- Support security best practices across engineering and infrastructure
- Lead MDM implementation (Jamf, Kandji, Intune, or similar)
- Support day-to-day security tooling maintenance
Requirements
- 5+ years of experience in Security Engineering, SecOps, AppSec, or DevSecOps
- Strong experience securing AWS cloud environments
- Experience implementing and managing AWS-native security services (IAM, GuardDuty, Security Hub, CloudTrail, CloudWatch, Detective, Inspector, KMS, Secrets Manager, Certificate Manager)
- Strong knowledge of web application security (OWASP Top 10)
- Experience managing Web Application Firewalls (WAF)
- Experience with security monitoring, incident response, and threat detection
- Experience conducting application security reviews and threat modeling
- Familiarity with identity and access management (SSO, RBAC, MFA)
- Ability to integrate security tooling into engineering and CI/CD workflows
Benefits
- Competitive compensation
- Remote-first lifestyle
- Career growth opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
security reviewsthreat modelingvulnerability managementsecurity scanningWeb Application Firewall (WAF)SSORBACsecurity KPIsincident responseAWS-native security services
Soft Skills
collaborationleadershipcommunication