Security Engineer

  • Remote - United States

Remote

Cybersecurity

Mid-level

Job description

πŸ“ About this Role

Writer is seeking a highly skilled and experienced Security Engineer to join our dynamic and innovative team. The Security Engineer will play a crucial role in enhancing our information security and privacy posture by engaging with engineering and operations teams to perform security reviews, threat modeling, and other critical security activities. This role requires a deep understanding of information security principles, a strong technical background, and the ability to collaborate effectively across various teams.

The Security Engineer will report to the Head of Information Security & Compliance, and will work closely with the Information Security Management Leadership, the Engineering, Product, and Design Team, and other relevant stakeholders.

Location(s): London; New York, Austin, Chicago, San Francisco, Remote

πŸ¦ΈπŸ»β€β™€οΈ Your Responsibilities

  • Design and implement robust security architectures that align with industry standards and best practices; ensure that security controls are integrated into the design and implementation of new systems and applications.

  • Provide technical guidance and recommendations to engineering and operations teams to enhance the security of our infrastructure; help ensure security is integrated into the secure software development lifecycle (SSLDC).

  • Conduct comprehensive security reviews of software applications and systems to identify potential vulnerabilities and security gaps.

  • Build and maintain threat models for new and existing applications, ensuring that all potential attack vectors are identified and mitigated.

  • Develop and maintain security automation scripts and tools, such as SAST/DAST, to detect and respond to threats; automate security monitoring and alerting using Splunk, ELK, or Chronicle; develop security-as-code practices using Terraform, Ansible, or Kubernetes security policies.

  • Harden and secure AWS/Azure/GCP, endpoint, and IAM environments and enforce cloud security best practices.

  • Perform offensive activities and proactively hunt for vulnerabilities.

  • Participate in the incident response process, providing technical expertise to manage and resolve security incidents; contribute to the development and maintenance of incident response plans, ensuring that they are up-to-date and effective.

⭐️ Is This You?

  • CISSP, CISA, or CISM certification is strongly recommended, but not required.

  • ISO 27001/27701/42001, SOC-2, PCI DSS, and GDPR knowledge, experience, and qualifications are highly desirable.

  • At least 5 years of relevant industry experience in information security, with a focus on security architecture and threat modeling.

  • Proven experience in performing security reviews, threat modeling, and risk assessments; strong understanding of information security principles, including confidentiality, integrity, and availability.

  • Experience with security tools and technologies, including vulnerability scanners, intrusion detection systems, and security information and event management (SIEM) systems.

  • Excellent communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams.

  • Strong problem-solving and analytical skills, with the ability to identify and mitigate complex security risks.

  • Ability to work in a fast-paced environment, managing multiple priorities and meeting deadlines.

🍩 Benefits & perks (US Full-time employees)

  • Generous PTO, plus company holidays

  • Medical, dental, and vision coverage for you and your family

  • Paid parental leave for all parents (12 weeks)

  • Fertility and family planning support

  • Early-detection cancer testing through Galleri

  • Flexible spending account and dependent FSA options

  • Health savings account for eligible plans with company contribution

  • Annual work-life stipends for:

    • Home office setup, cell phone, internet

    • Wellness stipend for gym, massage/chiropractor, personal training, etc.

    • Learning and development stipend

  • Company-wide off-sites and team off-sites

  • Competitive compensation, company stock options and 401k

Writer is an equal-opportunity employer and is committed to diversity. We don’t make hiring or employment decisions based on race, color, religion, creed, gender, national origin, age, disability, veteran status, marital status, pregnancy, sex, gender expression or identity, sexual orientation, citizenship, or any other basis protected by applicable local, state or federal law. Under the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

By submitting your application on the application page, you acknowledge and agree to Writer’s Global Candidate Privacy Notice.

Share this job:
Please let Writer know you found this job on Remote First Jobs πŸ™

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service πŸ™

Apply