This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Recruitics is a data-centric recruitment marketing agency. We are looking for a highly skilled and experienced Senior Security Engineer to join our growing team. In this role, you will bridge the gap between development, security, and operations to ensure the security of our software through the secure development lifecycle. You will be responsible for integrating security practices throughout the DevOps lifecycle, building and maintaining secure systems, and automating security processes to enhance our cloud infrastructure and applications.
Job Responsibility:
Secure Architecture: Under the guidance of the VP of Information Security, maintain a secure cloud architecture and evangelize security best practices within the enterprise that comply with our SOC II policies and procedures
DevSecOps Integration: Collaborate closely with Development, Operations, and Security teams to integrate security practices into the development lifecycle and DevOps processes
Vulnerability Management: Conduct vulnerability assessments, security testing, and advise teams on remediation
Cloud Security: Oversee and enhance the security posture of cloud-based infrastructure (AWS), ensuring secure deployments and configurations
Compliance & Best Practices: Ensure that security controls are aligned with industry standards and best practices (e.g., OWASP, NIST, GDPR) and work toward achieving and maintaining compliance
Incident Response: Be the technical point of contact on security incidents, providing expertise in root cause analysis and remediation
Monitoring & Auditing: Implement monitoring tools to detect and respond to security incidents and audit the security of systems and applications
Security Training & Awareness: Provide guidance and training to other teams on security best practices, secure coding techniques, and threat mitigation strategies
Tooling & Infrastructure: Select, deploy, and manage security tools and frameworks for automated security testing, vulnerability scanning, and threat detection
Requirements:
Minimum 5-7 years of experience in Security, or related roles, with at least 2-3 years working within a DevOps ecosystem
Hands-on experience with security tools such as SonarQube, Crowdstrike, mimecast, and tenable
Strong knowledge of infrastructure-as-code (IaC) tools such as Terraform, CloudFormation, or Ansible
Expertise in automation scripting (Python, Bash, or similar languages)
Experience with version control systems (Git, GitLab, Bitbucket)
Familiarity with security protocols and standards (OAuth, SSL/TLS, PKI)
Strong knowledge of network security, firewalls, identity and access management (IAM), and encryption technologies
Experience with vulnerability scanning tools and static/dynamic analysis
Strong problem-solving and analytical skills
Excellent communication and collaboration skills, with the ability to work with cross-functional teams
A proactive and continuous improvement mindset
Must be at least 18 years old
Nice to have:
Security certifications such as CISSP, CISM, or other relevant certifications
Experience with threat modeling and risk assessments
Familiarity with security frameworks and methodologies (e.g., NIST, OWASP Top 10, SOC 2)
Knowledge of security in microservices architecture
What we offer:
Competitive compensation and benefits
Casual work environment
Recruitics themed shirts roughly once a quarter
Part of a close-knit group in a fun work environment