Designs and operates firewall, segmentation, zero-trust, and network detection controls across data center, corporate, and AWS environments. The role requires deep network security expertise, infrastructure-as-code automation with Terraform or Ansible, scripting proficiency, and strong TCP/IP troubleshooting skills.
Salary not listed
On-siteSecurity Engineering
About the role
Responsibilities
Design and operate firewall, segmentation, and zero-trust controls across data center, corporate, and cloud (AWS) networks.
Build and maintain network security infrastructure as code, including firewall rules, policy automation, and CI/CD-driven deployment.
Lead network lifecycle management, including design reviews, configuration baselines, change automation, and ongoing rule hygiene.
Build detection capabilities for network-based attacker behaviors and partner with the Detection & Response team on response playbooks.
Implement and operate network access controls, including ZTNA, VPN, and remote access patterns.
Drive periodic firewall rule reviews, segmentation audits, and remediation campaigns to reduce risk and complexity.
Document network security architecture, controls, and operating procedures in clear runbooks.
Requirements
Master's degree or higher in computer science.
Deep expertise with industry-leading firewalls, including policy design, automation, and operations.
Strong proficiency with infrastructure as code, including Terraform and Ansible, and at least one scripting language; Python preferred.
Hands-on experience operating network controls in a major cloud environment, preferably AWS, including VPCs, transit gateways, security groups, and cloud-native firewalls.
Practical understanding of ZTNA, segmentation, and modern network access patterns.
Solid fundamentals in TCP/IP, routing, switching, DNS, and TLS, with the ability to troubleshoot across the stack.
Excellent written communication skills and the ability to create clear documentation for engineers and operators.
Benefits
Work on a breakthrough AI platform beyond the constraints of GPUs.
Opportunities to publish and open-source cutting-edge AI research.
Work on one of the fastest AI supercomputers in the world.
Job stability with startup vitality.
A non-corporate work culture that respects individual beliefs.
The engineer conducts web, network, Active Directory, cloud, and container penetration tests, develops offensive security automation, and drives remediation with engineering and external testing partners. The role requires at least four years of offensive security experience plus scripting or programming proficiency.
Salary not listedHybrid4+ YOESecurity Engineering
Security Engineer
AlertMediaUnited States
Hands-on Security Engineer responsible for securing cloud applications and AWS infrastructure, strengthening detection and incident response, embedding controls into CI/CD, and supporting audits and enterprise customer security reviews. Requires 3+ years of security experience and practical AWS security expertise.
Conducts end-to-end security risk assessments for vendors, customers, and partners while maintaining risk tiering, remediation, reassessments, and reporting. The role also matures third-party risk processes and uses AI-assisted workflows to scale assessment operations.
119k – 176k/yrHybrid4+ YOESecurity Engineering
Manager, Security Operations
VantaUnited States
Leads a global Security Operations team, setting detection, response, and security strategy while driving incident response and risk remediation. The role requires strong SaaS and cloud security experience, leadership ability, familiarity with major security standards, and responsible use of AI.
178k – 209k/yrRemote5+ YOESecurity Engineering
Governance, Risk, and Compliance Manager
DecagonSan Francisco, CA
Manages Decagon’s governance, risk, and compliance program, including enterprise certifications, audit evidence, vendor risk, customer security assessments, and RFP responses. Requires 3–5 years of GRC experience, strong communication and project management skills, and familiarity with technical security controls and privacy regulations.