Job Description
We’re looking for a Cybersecurity Engineer who thrives in environments where security isn’t an afterthought, but a priority woven into every layer of the stack. In this role, you’ll drive hands-on defense strategies, assess and harden systems, and collaborate closely with DevOps and product engineering teams to build secure-by-design services. You’ll be tasked with identifying real-world threats, not hypothetical scenarios—an ideal fit for someone who balances red team creativity with blue team pragmatism.
This role is especially suited for someone who has moved beyond vulnerability scanners and wants to shape the security posture of a growing tech company through engineering, automation, and system-level insight.
Key Responsibilities:
- Design and implement security controls across cloud-native infrastructure (AWS preferred)
- Conduct targeted threat modeling sessions with engineering teams for new features and services
- Review architecture, code, and deployments for security vulnerabilities, offering remediation plans that scale
- Build and maintain internal tooling for continuous asset inventory, credential hygiene, and anomaly detection
- Lead incident response exercises and post-mortems, and establish measurable incident preparedness
- Collaborate with DevOps to enforce hardened CI/CD pipelines and secrets management
- Investigate abnormal activity (IAM misuse, privilege escalation, egress anomalies) and communicate findings to relevant stakeholders
- Maintain compliance alignment with SOC 2 and ISO 27001 while avoiding checkbox security practices
Minimum Qualifications:
- 3–6 years of experience in security engineering, systems engineering with a security focus, or similar
- Proficiency in scripting (Python, Bash, or Go) to automate detection, logging, and response
- Deep understanding of authentication, authorization, and identity federation in cloud environments
- Experience implementing SIEM/SOAR workflows or integrating signals across distributed environments
- Familiarity with container security (e.g., Docker, Kubernetes runtime hardening)
- Hands-on experience conducting technical risk assessments and writing detailed threat models
- Demonstrated ability to explain vulnerabilities and mitigation strategies to non-security stakeholders
Preferred Qualifications:
- OSCP, GIAC, or similar certification is a plus, but not required
- Familiarity with static and dynamic code analysis tools and manual secure code review
- Experience with infrastructure-as-code security (Terraform, Pulumi)
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#GraphicDesignJobsOnline#WebDesignRemoteJobs #FreelanceGraphicDesigner #WorkFromHomeDesignJobs #OnlineWebDesignWork #RemoteDesignOpportunities #HireGraphicDesigners #DigitalDesignCareers#Dynamicbrandguru