Skip to content
ExaExa

Security Engineer

The Security Engineer will secure cloud infrastructure, engineering systems, APIs, model-training environments, and GPU clusters while supporting rapid delivery. The role requires hands-on cloud security, IAM, secrets and certificate management, compliance ownership, vulnerability monitoring, and incident response experience.

About the job

Responsibilities

  • Build and maintain secure infrastructure for web-scale data processing, search indexing, foundational model training, GPU clusters, APIs, and enterprise services.
  • Design and implement cloud security controls, including multi-account AWS permissions and architectures, IAM, and secure CI/CD pipelines.
  • Manage secrets, encryption keys, and certificate lifecycles, including rotation, revocation, and automation.
  • Own compliance efforts such as HIPAA and SOC 2.
  • Harden engineering systems, including VPNs and development servers.
  • Monitor vulnerabilities, potential attacks, anomalous behavior, and abuse across APIs, internal services, and customer usage.
  • Develop security practices for emerging technologies, including operating-system changes and AI coding agents.
  • Build secrets-management and rotation systems for distributed services, training jobs, and GPU clusters.
  • Create monitoring and alerting for anomalous behavior.
  • Develop incident-response playbooks, lead incident handling, and conduct postmortems.

Requirements

  • Hands-on experience building and maintaining secure infrastructure.
  • Knowledge of cloud security fundamentals, multi-account AWS architectures and permissions, IAM design, and secure CI/CD.
  • Experience with secrets management, key management, and certificate lifecycle automation.
  • Experience owning compliance efforts such as HIPAA and SOC 2.
  • Ability to perform security hardening and operate engineering systems securely.
  • Strong vigilance regarding vulnerabilities, attacks, and abuse.

Compensation and Benefits

  • Salary: $180,000–$350,000 annually.
  • Medical, dental, and vision coverage.
  • Fertility benefits.
  • Monthly wellness stipend.
  • International visa sponsorship may be available.

Skills

AWS, Cloud Security, IAM, CI/CD, Secrets Management, Key Management, Certificate Management, HIPAA, SOC 2, Vpn, Incident Response, Vulnerability Management

Onebrief

Onebrief

United States

Corporate Security Systems Engineer
$180k+/yrRemote4+ YOESecurity Engineering

Own and strengthen Onebrief’s corporate security stack across endpoints, identity, SaaS, Zero Trust, and monitoring. The role emphasizes security automation, configuration-baseline enforcement, telemetry integration, and continuously validated compliance controls.

Vanta

Vanta

Remote

Manager, Security Operations
$178k+/yrRemote5+ YOESecurity Engineering

Leads a global Security Operations team, setting detection, response, and security strategy while driving incident response and risk remediation. The role requires strong SaaS and cloud security experience, leadership ability, familiarity with major security standards, and responsible use of AI.

Huntress

Huntress

United States

QMS Manager
$185k+/yrRemote5+ YOESecurity Engineering

Build and lead a Security Quality Management System for agentic and human-led SOC investigations, establishing quality standards, sampling, validation, reporting, and corrective actions. The role requires 5+ years in quality, governance, operational excellence, or controls, plus security operations and people-management experience.

Glean

Glean

United States

Platform Security Engineer
$185k+/yrRemote5+ YOESecurity Engineering

Develop and maintain secure platform software spanning authentication, authorization, communications, data access, and automated security testing. The role requires 5+ years of security-focused software development experience, strong coding skills, and expertise in cloud and container security.

Glean

Glean

United States

Application Security Engineer
$185k+/yrRemote5+ YOESecurity Engineering

Leads vulnerability management and application-security initiatives across the technology stack, securing operating-system images, open-source dependencies, CI/CD pipelines, containers, and cloud-native systems. Requires 5+ years of application-security experience, coding ability, and expertise in vulnerability-scanning practices.