Skip to content
Worth AIWorth AIOrlando, FL

Security Engineer

Security Engineer owning vulnerability management, AWS cloud hardening, and application security scanning at Worth AI. Requires 2-4 years experience, hands-on AWS security, vuln remediation, and cross-functional collaboration in a hybrid Orlando setup.

Salary not listed
Hybrid2+ YOESecurity Engineering

About the role

Responsibilities

Vulnerability Management (Primary Focus)

  • Own the vulnerability scanning program across endpoints, servers, and cloud infrastructure
  • Triage, prioritize, and track findings through remediation, partnering with engineering and IT owners
  • Monitor and report on remediation SLAs; escalate aging or high-severity findings
  • Maintain vulnerability management documentation, metrics, and recurring reporting

Identity Management

  • Improve our identity management program through improvements in configurations and automations to simultaneously improve security and user experience

Cloud Security (AWS)

  • Monitor and harden AWS environments: IAM, security groups, S3, CloudTrail, GuardDuty, Security Hub, Config
  • Implement and maintain security guardrails and baseline configurations across AWS accounts
  • Investigate and respond to cloud security alerts and incidents
  • Support least-privilege access reviews and cloud configuration audits

Application Security

  • Support SAST, DAST, and dependency/SCA scanning integrated into the CI/CD pipeline
  • Review and triage AppSec findings with engineering teams and track remediation to closure
  • Participate in secure code reviews and threat modeling for new features and services
  • Help maintain secure development guidelines and AppSec tooling

Security Operations & Ticketing

  • Triage and resolve security tickets and requests within defined SLAs
  • Take ownership of incidents and requests through to resolution, escalating when needed
  • Maintain clear, accurate documentation of decisions, incidents, and remediation status

Project & Cross-Functional Work

  • Lead or contribute to security initiatives — tooling rollouts, control implementations, audit and compliance prep
  • Collaborate with engineering, IT, and compliance to embed security into everyday workflows
  • Communicate risk, status, and trade-offs clearly to both technical and non-technical stakeholders

Requirements

  • 2–4 years of experience in a security engineering, security analyst, or related role
  • Hands-on experience with AWS security services and concepts (IAM, VPC, GuardDuty, Security Hub, CloudTrail)
  • Practical experience with vulnerability management tools and remediation workflows
  • Working knowledge of application security concepts (OWASP Top 10, SAST/DAST, dependency scanning)
  • Experience managing a ticket queue against SLAs, with strong ownership and follow-through
  • Strong written and verbal communication skills; comfortable working cross-functionally
  • Solid analytical and troubleshooting skills, with the ability to prioritize under competing deadlines

Preferred

  • AWS certification (Security Specialty or equivalent)
  • Experience with tools such as Wiz, Tenable, Qualys, or Snyk
  • Scripting experience (Python or bash) for automation and tooling
  • Exposure to compliance frameworks such as SOC 2
  • Experience with Jira, Linear, or similar ticketing/project tools

Additional Requirements

  • Comfortable working in-office 3 days per week
  • Able to work independently as a self-starter while collaborating across teams
  • Willing to participate in on-call or escalation coverage as needed

Benefits

  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k, IRA)
  • Life Insurance
  • Flexible Paid Time Off
  • 9 paid Holidays
  • Family Leave
  • RemoteHybrid work (for Orlando Associates)
  • Free Food & Snacks (Orlando)
  • Wellness Resources

Skills

AWSIAMvpcguarddutysecurity hubcloudtrailSASTDASTowaspPythonBashJiraSOC 2wiztenable
Agency

Junior Cybersecurity Analyst

AgencyRichmond, VA

Entry-level cybersecurity analyst supporting clients, compliance, IT, and business operations while learning frameworks, tools, and industry certifications. The role requires strong communication, follow-through, curiosity, resilience, and willingness to work a demanding on-site schedule.

31k – 42k/yrOn-siteEntry levelSecurity Engineering
Cloudflare

GRC Team Intern

CloudflareAustin, TX

Supports Cloudflare’s security compliance and risk programs through control evaluations, audits, risk assessments, and automation. The internship requires familiarity with security frameworks, risk management, Python, application development, and AI-enabled workflows.

Salary not listedOn-siteEntry levelSecurity Engineering
AlertMedia

IT Security Operations Analyst

AlertMediaAustin, TX

Hands-on tier-one IT Security Operations Analyst monitoring Microsoft Defender and Sentinel for threats, triaging alerts, investigating phishing and account compromises, performing access audits, and supporting SOC 2/ISO audits. Requires 1-2 years security or sysadmin experience and familiarity with Microsoft security tools.

Salary not listedOn-site2+ YOESecurity Engineering
Labelbox

Cyber Security Intern

LabelboxSan Francisco, CA

Security Engineering Intern at Labelbox supporting vulnerability management, IAM workflows, cloud access controls, SIEM optimization, and CI/CD security. Requires current pursuit of a CS/Cybersecurity degree, interest in cloud/data security, and basic cloud platform knowledge.

40 – 55/hrHybridEntry levelSecurity Engineering
Instacart

Detection Engineer II

InstacartUnited States

Detection Engineer building and operating high-fidelity detection systems, threat hunting, and automated response across endpoint, cloud, container, and SaaS environments at Instacart. Requires 2+ years in detection/IR/offensive security, cloud experience, deep attacker TTP knowledge, macOS internals, and detection-as-code practices.

142k – 181k/yrRemote2+ YOESecurity Engineering