United States of America - Remote / Home Office Remote (Country) Employment $162,000 - $190,000 USD

iHerb is hiring a Sr. Security Engineer II

Responsibilities

  • Create and maintain automated security frameworks and scripts in Python, Bash, and Terraform to improve operational efficiency.
  • Provision and oversee secure, scalable cloud infrastructure on AWS using Terraform through Scalr and Harness, with operations also spanning GCP and Azure.
  • Develop and manage AWS Step Functions, Lambda, and EventBridge workflows from a central tooling account across multiple AWS organizational accounts.
  • Support and maintain Kubernetes environments using Helm charts, including custom security tooling within pods that interface with CSPM platforms and Jira workflows.
  • Implement and enforce cloud security policies using OPA, Guardrails, Service Control Policies, IaC security checks, and tagging standards.
  • Design and manage integrations with Splunk Enterprise Security, including log ingestion, index management, correlation rule tuning, and automated alert responses.
  • Build and deploy Splunk SOAR playbooks to automate incident response tasks, reduce response times, and enhance SOC scalability.
  • Act as lead expert for Okta Identity Engine, managing SSO configurations, modern authentication protocols like SAML and OIDC, and identity lifecycle automation.
  • Utilize AWS security services such as GuardDuty, Macie, IAM, Control Tower, KMS, CloudTrail, and EventBridge to create event-driven threat detection and response systems.
  • Manage an internal Jira process for tracking CSPM findings and maintain the underlying data pipeline that powers AWS QuickSight reporting dashboards.
  • Work with development, platform, security, and SOC teams to embed security automation into CI/CD pipelines and promote early integration of security practices.
  • Perform risk evaluations, apply security benchmarks, and enhance protective measures through automation and tool improvements.
  • Monitor, diagnose, and tune cloud infrastructure and security systems to ensure reliability, performance, and compliance.
  • Keep updated on AWS security best practices, evolving threats, and new technologies to support ongoing security enhancements.
About company
iHerb
iHerb is on a mission to make health and wellness accessible to all. We offer Earth’s best-curated selection of health and wellness products, at the best possible value, delivered with the most convenient experience. We’re the world’s largest eCommerce platform dedicated to vitamins, minerals, and supplements, and other health and wellness products. For more than 25 years, we’ve been making it simple for people all over the world to purchase the highest quality products. From supplements to skincare to grocery items, we ship over 50,000 products, from over 1,800 brands direct to our customers in 180+ countries. Our vision is to become the #1 destination for health and wellness across the world. With a passion for wellness and a mind for innovative solutions, iHerb team members share a vision for a healthier world that drives them each day. Our 5 Shared Values unite our global team: Focus on the Customer · Empower Our People · Be Entrepreneurial & Pivot Quickly · Embrace Diversity & Inclusion · Strive for Simplicity
All jobs at iHerb Visit website
Job Details
Category security
Posted 17 days ago