Senior Security Engineer
About the job
• Expand and improve the use of Infrastructure as Code (Terraform) to manage and enforce AWS security controls.
• Implement and audit IAM policies to ensure secure and compliant access.
• Make the secure path the simplest and most intuitive for engineers.
• Own and enhance the organization’s secrets management lifecycle.
• Automate credential rotation to minimize risk exposure.
• Lead incident response readiness drills to ensure organizational preparedness.
• Partner with developers to integrate security more deeply into the product lifecycle.
• Optimize GitHub Advanced Security to detect and prevent vulnerabilities.
• Automate security feedback and controls within the CI/CD pipeline.
• Define and evolve architectural strategy for security services (Crowdstrike, JAMF, Cloudflare).
• Build API-driven integrations to enable automation and advanced response capabilities.
• Serve as the primary technical liaison with the managed SOC (Deepwatch).
• Ensure integrity of log data into Splunk and translate findings into actionable internal remediation.
Requirements
- 5+ years of experience in a hands-on security engineering role, ideally within both regulated industries (e.g., healthcare, fintech) and startup environments.
- Strong experience with Infrastructure as Code (Terraform) and a passion for managing security through auditable, repeatable code.
- Deep practical knowledge of AWS security principles and IAM, with experience managing them programmatically.
- Proficiency in a scripting language (e.g., Python) to build security automation and API integrations.
- Solid understanding of application security and experience with tools like GitHub Advanced Security.
- Proven experience enhancing secrets management programs and automating credential lifecycles.
- Familiarity with modern security tools such as EDR (Crowdstrike), WAF (Cloudflare), and JAMF.
- Experience with Okta as an identity platform and Gsuite administration, with an eye toward streamlining both.
- Interest in updating and laying the foundation for future AI integrations and scaling security capabilities across AWS and other technical stacks.
- Comfort operating as a thought leader, selecting the right tooling for scale and advising on enterprise-grade infrastructure.
🔍 ATS Optimization Keywords
Below are skills and terms extracted directly from this job posting to improve Applicant Tracking System (ATS) visibility. This unique feature helps candidates tailor their applications more effectively — a feature exclusive to JobTailor job listings.
Hard Skills
- Infrastructure as Code
- Terraform
- AWS security principles
- IAM policies
- scripting language
- Python
- application security
- API integrations
- secrets management
- credential automation
Soft Skills
- leadership
- communication
- collaboration
- problem-solving
- thought leadership
