Skip to content

Security Engineer

140k – 150kUnited StatesRemote5+ YOE
Summary

Security Engineer embeds security into development lifecycle, conducts threat modeling, builds automated scanning in AWS CI/CD pipelines, leads incident response, and implements compliance controls like ISO 27001. Requires 5+ years experience, AWS mastery, coding in C#/Python, and automation skills.

About the role

How You’ll Contribute

  • Design Secure Systems: Partner with engineering teams to conduct threat modeling. Ensure security is "baked-in" to new features from the first line of code, not "bolted-on" at the end.
  • Drive Proactive Defense: Build and maintain automated scanning, penetration testing frameworks, and monitoring tools within our AWS CI/CD pipelines to catch vulnerabilities before they reach production.
  • Own Governance & Compliance: Lead the technical implementation of controls for ISO 27001 and TX-RAMP, turning complex regulatory requirements into simple, actionable engineering standards.
  • Lead Incident Response: Act with ownership during security events. Lead investigations and root-cause analysis, providing the Collective Wisdom needed to prevent future occurrences.
  • Mentor the Team: Champion a "security-first" mindset. Host workshops that empower developers to write secure code and understand modern attack vectors.

The Foundation for Success

  • Cloud Security Mastery: Proven track record of securing AWS environments (IAM, Network Security, Infrastructure-as-Code) at scale.
  • Code-Level Proficiency: Read and write code (C#, Python, or similar). Suggest secure code alternatives.
  • Automation Mindset: Experience with SAST/DAST and vulnerability management platforms. Prefer scripts over manual checks.
  • Pragmatic Compliance: Implemented controls in regulated environments without slowing business velocity.
  • Experience: 5+ years in security engineering or software development with a security focus.

What Sets You Apart

  • Experience securing video streaming architectures or high-scale backend services.
  • History of leading incident response in a remote-first environment.
  • Deep expertise in OWASP Top 10 and secure API design.
Skills
AWSIAMNetwork SecurityInfrastructure as CodeC#PythonSASTDASTVulnerability ManagementThreat ModelingPenetration TestingOWASP Top 10Secure API DesignCI/CDISO 27001
Similar roles at this salary range
All Security Engineering jobs →
Navan

Sr. Security Engineer, Incident Response

Technical lead for incident response across multi-cloud infrastructure. Owns triage, containment, automation, and detection tuning using CrowdStrike, Tines, and Cyberhaven DLP. Requires 5+ years in IR/SOC roles.

113k – 252kNew York, NYSecurity EngineeringOn-site5+ YOEIAMEDR
Navan

Sr. Security Engineer, Incident Response

Technical lead for incident response across multi-cloud infrastructure. Owns triage, containment, automation, and detection tuning using CrowdStrike, Tines, and Cyberhaven DLP.

113k – 252kBoston, MASecurity EngineeringOn-site5+ YOEIAMSIEM
Navan

Sr. Security Engineer, Incident Response

Technical lead for incident response across multi-cloud environments. Owns triage, containment, automation, and detection tuning using CrowdStrike, Tines, and Cyberhaven DLP. Requires 5+ years in IR/SOC roles.

113k – 252kPalo Alto, CA +1Security EngineeringOn-site5+ YOEIAMSIEM
Navan

Director, Product Security Engineering

Lead product security initiatives by embedding security into the SDLC, performing threat modeling, building security tooling, and mentoring teams. Requires 8-10+ years of product security experience and deep expertise in cloud, application, and mobile security.

135k – 300kPalo Alto, CA +1Security EngineeringOn-site8+ YOESCAAWS
DAT Freight & Analytics

Security Engineer

Security Engineer responsible for implementing security controls, building automation workflows, and embedding security into SDLC and cloud infrastructure. Requires 2-4 years of cybersecurity or cloud security experience.

114k – 149kDenver, COSecurity EngineeringHybrid2+ YOEIAMSCA