About the Role
The role involves safeguarding core infrastructure by designing and implementing security controls, conducting audits, responding to incidents, and ensuring compliance with security best practices across distributed environments.
Responsibilities
- Design and deploy secure network architectures
- Implement and manage firewalls, intrusion detection systems, and endpoint protection
- Conduct regular security assessments and vulnerability scans
- Respond to security incidents with clear escalation and resolution procedures
- Maintain and improve security monitoring tools and alerting systems
- Enforce secure configuration standards across servers and cloud platforms
- Collaborate with engineering teams to integrate security into infrastructure lifecycle
- Develop and maintain incident response playbooks
- Perform root cause analysis after security events
- Support compliance audits and evidence collection
- Monitor threat intelligence sources for emerging risks
- Lead efforts to harden systems against known attack vectors
- Manage identity and access controls for infrastructure components
- Ensure secure deployment of TLS, certificates, and encryption protocols
- Automate security validation and configuration checks
- Conduct post-mortems for security-related outages or breaches
- Evaluate third-party security posture for vendors and partners
- Maintain up-to-date knowledge of zero-day vulnerabilities
- Support secure onboarding and offboarding of infrastructure services
- Drive improvements in logging, detection, and forensic capabilities
Compensation
Competitive salary and benefits package
Work Arrangement
Remote with flexible hours
Team
Part of the global security team focused on protecting critical systems
What We Value
- Initiative in identifying and resolving security gaps before exploitation
- Clear communication during high-pressure incidents
- Commitment to continuous learning and sharing knowledge
- Practical approach to balancing security and operational needs
Technology Stack
- AWS and GCP for cloud infrastructure
- Terraform and Ansible for infrastructure as code
- Prometheus, Grafana, and ELK stack for monitoring and logging
- Docker and Kubernetes for container orchestration
- CrowdStrike and Wiz for endpoint and cloud security
- GitLab CI/CD for automated pipelines
Available for qualified candidates