Security Engineer
The Security Engineer will secure cloud infrastructure, engineering systems, APIs, model-training environments, and GPU clusters while supporting rapid delivery. The role requires hands-on cloud security, IAM, secrets and certificate management, compliance ownership, vulnerability monitoring, and incident response experience.
About the job
Responsibilities
- Build and maintain secure infrastructure for web-scale data processing, search indexing, foundational model training, GPU clusters, APIs, and enterprise services.
- Design and implement cloud security controls, including multi-account AWS permissions and architectures, IAM, and secure CI/CD pipelines.
- Manage secrets, encryption keys, and certificate lifecycles, including rotation, revocation, and automation.
- Own compliance efforts such as HIPAA and SOC 2.
- Harden engineering systems, including VPNs and development servers.
- Monitor vulnerabilities, potential attacks, anomalous behavior, and abuse across APIs, internal services, and customer usage.
- Develop security practices for emerging technologies, including operating-system changes and AI coding agents.
- Build secrets-management and rotation systems for distributed services, training jobs, and GPU clusters.
- Create monitoring and alerting for anomalous behavior.
- Develop incident-response playbooks, lead incident handling, and conduct postmortems.
Requirements
- Hands-on experience building and maintaining secure infrastructure.
- Knowledge of cloud security fundamentals, multi-account AWS architectures and permissions, IAM design, and secure CI/CD.
- Experience with secrets management, key management, and certificate lifecycle automation.
- Experience owning compliance efforts such as HIPAA and SOC 2.
- Ability to perform security hardening and operate engineering systems securely.
- Strong vigilance regarding vulnerabilities, attacks, and abuse.
Compensation and Benefits
- Salary: $180,000–$350,000 annually.
- Medical, dental, and vision coverage.
- Fertility benefits.
- Monthly wellness stipend.
- International visa sponsorship may be available.
Skills
AWS, Cloud Security, IAM, CI/CD, Secrets Management, Key Management, Certificate Management, HIPAA, SOC 2, Vpn, Incident Response, Vulnerability Management
Similar jobs
Security Engineering jobsOwn and strengthen Onebrief’s corporate security stack across endpoints, identity, SaaS, Zero Trust, and monitoring. The role emphasizes security automation, configuration-baseline enforcement, telemetry integration, and continuously validated compliance controls.
Leads a global Security Operations team, setting detection, response, and security strategy while driving incident response and risk remediation. The role requires strong SaaS and cloud security experience, leadership ability, familiarity with major security standards, and responsible use of AI.
Build and lead a Security Quality Management System for agentic and human-led SOC investigations, establishing quality standards, sampling, validation, reporting, and corrective actions. The role requires 5+ years in quality, governance, operational excellence, or controls, plus security operations and people-management experience.
Develop and maintain secure platform software spanning authentication, authorization, communications, data access, and automated security testing. The role requires 5+ years of security-focused software development experience, strong coding skills, and expertise in cloud and container security.
Leads vulnerability management and application-security initiatives across the technology stack, securing operating-system images, open-source dependencies, CI/CD pipelines, containers, and cloud-native systems. Requires 5+ years of application-security experience, coding ability, and expertise in vulnerability-scanning practices.