Source Job

$120,000–$150,000/yr
US

  • Fix vulnerabilities across the stack by writing pull requests in application repositories and Terraform.
  • Build and tune SIEM detections, mapping coverage to MITRE ATT&CK and reducing false positives.
  • Lead incident response, harden AWS estate, and automate security workflows with code.

AWS SIEM Incident Response Terraform Python

20 jobs similar to Security Engineer

Jobs ranked by similarity.

$135,000–$155,000/yr
US

  • Design and enforce cloud security controls and IAM policies across multi-account AWS environments.
  • Embed automated security tools into CI/CD pipelines to catch vulnerabilities pre-deployment.
  • Develop automated detection and remediation workflows using Python, Bash, or Go and IaC tools.

The Tripadvisor Group connects people to experiences worth sharing, aiming to be the world's most trusted source for travel and experiences. It is a publicly traded company with a global portfolio of travel brands, fostering a culture of collaboration, agility, and traveler-first mindset.

US

  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
  • Build automation, policy-as-code, and security tooling that enables development teams to 'shift left' and integrate end-to-end security into their workflows.
  • Drive vulnerability management and remediation efforts, prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.

Wiz is redefining security for the AI era, enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. As one of the fastest-growing startups ever, we are trusted by over 65% of the Fortune 100 and scan over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.

United States

  • Design and build security for future infrastructure, partnering with engineering and compliance teams.
  • Lead AI-native security initiatives, designing autonomous agents for threat detection and incident response.
  • Devise defense-in-depth frameworks, research threats, and maintain KPIs for a healthy cloud security program.

WeightWatchers is a global digital health company that blends science and community to help millions build sustainable healthy habits. The engineering team drives transformative change through technology, with a culture that thrives on urgency, collaboration, and passion for impactful work.

US

  • Own security of the software build and release pipeline, cloud environments, and AWS identity and access.
  • Operationalize a 15-domain cloud security framework and CrowdStrike CSPM across all AWS estates.
  • Mentor a junior cloud security engineer and build paved-road patterns for engineering teams.

Vermont Information Processing is a leading beverage industry technology provider trusted by over 1,600 suppliers for 50+ years. Backed by Warburg Pincus, VIP is investing in security with executive sponsorship and a funded roadmap.

US

  • Develop playbooks and address security-related tasks in AWS serverless environments.
  • Drive improvements in security posture, including application, endpoint, and access management.
  • Collaborate with product engineering teams to raise the bar for security in CI/CD, dependency management, and secure design reviews.

Stedi is building a new healthcare clearinghouse and RCM engine, accessible via API. With $142 million in funding and a lean, passionate team, they ship products weekly and prioritize automation and eliminating toil.

US

  • Get hands-on with our Go codebase, AWS and Kubernetes environment, SIEM, and security services, contributing security feedback to design docs and shipping your first fix or detection.
  • Own a security domain end to end, such as cloud hardening or detection engineering, and ship reusable Go security middleware adopted by service teams.
  • Drive multi-quarter initiatives like default-deny networking, expand Kubernetes security, and automate compliance evidence for audits.

Bastion provides regulated infrastructure for businesses to hold, move, and issue stablecoins, combining custodial wallets, payment orchestration, and issuance. As a 40-person startup, we operate through our own regulated entities with built-in compliance and risk controls.

Canada

  • Act as a strategic security leader by defining and driving cloud security principles, standards, and reference architectures across the organization.
  • Partner with DevOps and CI/CD engineers to embed shift-left security practices throughout the software development lifecycle.
  • Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements.

LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and millions of users worldwide, they blend strong security with everyday simplicity in a remote-first, collaborative culture.

Australia

  • Lead security incident response in a 24/7 global rotation, managing incidents from detection through recovery.
  • Create and maintain comprehensive incident response documentation, including runbooks and procedures.
  • Design and implement automated security processes to improve operational efficiency and reduce manual intervention.

GitLab is the intelligent orchestration platform for DevSecOps, helping organizations improve developer productivity, operational efficiency, and security. With over 50 million users and a high-performance culture, GitLab values innovation, continuous knowledge exchange, and inclusion.

$150,000–$155,000/yr
US

  • Conduct application and cloud security assessments to identify risks and vulnerabilities.
  • Collaborate with development teams to integrate security best practices into the SDLC.
  • Support vulnerability management, incident response, and security awareness education.

Business Wire is a leading global news release distribution service. The company is a large organization with a remote-first culture and offers competitive benefits.

$93,800–$120,000/yr
US Unlimited PTO

  • Operate and monitor cybersecurity controls for a FedRAMP- and CJIS-regulated SaaS product in AWS.
  • Triage security events, investigate threats, and support incident response with root-cause analysis.
  • Maintain security platforms, vulnerability management, and data protection operations across the environment.

Granicus provides cloud-based technology for government agencies to improve digital services and connect with communities. Over 25 years, they serve 5,500 agencies and 300 million subscribers, with a remote-first, inclusive culture.

Global Unlimited PTO

  • Lead and grow a small security team while owning Canary's security and compliance program end-to-end.
  • Serve as the primary security voice to customers, partners, and auditors, translating security posture for varied audiences.
  • Set technical direction for security tooling and stay hands-on in architecture and threat-model reviews.

Canary Technologies is a leading agentic AI platform for hotel and guest management, powering digital infrastructure for over 20,000 hotels in 125+ countries. With nearly $200M raised, they are a top-funded hotel tech company, recognized for growth and workplace excellence.

$85,000–$141,000/yr
US

  • Design, implement, and maintain SIEM platform architectures across AWS, Azure, and GCP environments.
  • Build and operate reliable log collection and ingestion pipelines using forwarders, connectors, APIs, syslog, and agents.
  • Support FedRAMP continuous monitoring and compliance requirements while partnering with detection engineering and security operations teams.

Coalfire is a leading cybersecurity solutions provider that advises, assesses, automates, and helps clients navigate the ever-changing cybersecurity landscape. The company has offices across the U.S. and U.K. and fosters a culture of passionate problem-solvers who are hungry to learn and grow.

US Unlimited PTO

  • Support cloud security consulting engagements, including assessments and architecture reviews.
  • Assist with AWS security configurations and documentation under senior guidance.
  • Participate in client meetings and contribute to deliverable preparation.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services to help organizations make better decisions and minimize risk. With over 1,300 employees, it is a rapidly growing, privately-held company known for its collaborative culture and mentorship.

Latin America

  • Design and maintain AWS infrastructure using Terraform and ECS/Fargate, ensuring high availability and security.
  • Implement and manage CI/CD pipelines with automated deployment and rollback processes.
  • Collaborate with teams for monitoring, incident response, and security compliance.

Bluelight is a leading software consultancy that designs and develops innovative technology to enhance users' lives. The company is expanding across the United States and Central/South America, fostering a collaborative and enriching work environment where team members can grow and thrive.

Europe 16w maternity 16w paternity

  • Own identity, SSO, and device management across Google Workspace and macOS, automating joiner and leaver flows from day one.
  • Secure cloud and SaaS environments by managing IAM, cloud guardrails, and vulnerability management end to end.
  • Bring a security perspective to incidents and audits, using AI-assisted workflows to reduce manual work.

Maze is a user research platform that helps product teams build the right products faster by making user insights accessible. With less than 150 team members and a global remote workforce, Maze fosters a culture of transparency and inclusion.

$165,000–$200,000/yr
US Unlimited PTO

  • Lead the long-term technical strategy for offensive security, including red teaming and adversary simulations.
  • Conduct deep-dive vulnerability research and partner with DevOps to build automated security guardrails.
  • Mentor senior and mid-level engineers to foster a security-minded development culture.

Greenlight is a family technology company that helps families raise financially smart kids through its suite of products including the Greenlight app, debit card, and safety features. With over 6.5 million family members, Greenlight fosters a culture of innovation and collaboration to make family life easier.

US Unlimited PTO

  • Lead the technical vision for platform hardening across AWS and GCP, including tier-0 access and secrets services.
  • Own the hardening roadmap for critical cloud infrastructure and drive operational excellence with rigorous on-call practices.
  • Mentor a global team of engineers and partner cross-functionally to build secure-by-default controls.

DoorDash is a technology and logistics company building the most reliable delivery network for consumers, merchants, and dashers. The company is growing rapidly and fosters a culture of learning, customer obsession, and inclusive leadership.

$120,000–$155,000/yr
US Unlimited PTO

  • Deploy and automate CI/CD pipelines and establish IaC using modern DevSecOps techniques including serverless and Zero Trust patterns.
  • Own the POAM process end to end, develop plans of action with target dates, track progress, and close findings proactively.
  • Conduct Security Impact Analyses (SIAs) to achieve and maintain ATO, and maintain a live dashboard for all security findings.

Oddball brings quality software to the federal space, aiming to improve the daily lives of millions. It is a small company that values learning, growth, and making a big impact.

Australia 5w PTO

  • Design, build, and ship product features using product and coding agents.
  • Own and continuously improve AWS infrastructure, CI/CD pipelines, and security controls.
  • Lead incident response and establish cloud, security, and reliability standards.

Budgetly builds an AI-first expense management platform to simplify business spending and improve cash flow visibility. It is a small, fully remote engineering team with a light-touch structure, emphasizing autonomy and ownership.

Europe

  • Architect and oversee advanced security monitoring and threat detection frameworks across diverse systems and log sources.
  • Lead the integration of security into the software development lifecycle, including Security-as-Code and automated SAST, DAST, and SCA capabilities within CI/CD pipelines.
  • Own the end-to-end vulnerability management strategy across infrastructure and applications, prioritizing remediation according to business risk.

The partner company operates a large-scale digital platform and a globally distributed technology ecosystem connected to gaming and esports communities. They maintain a flexible, distributed, and inclusive work environment focused on equal opportunity and technical ownership.