Synthesia logo
Synthesia

SecOps Security Engineer (Staff-level, L6)

USARemotePosted 1 month ago

Apply opens Synthesia's site. When you're back, we'll ask whether you applied.

Job type
Full-time
Work mode
Remote
Level
Staff
Department
Information Technology
Experience
5+ years experience
Posted
Aug 25, 2026

About the role

Key Responsibilities:

  • Build and own deeply technical security improvements across our Cloud Infrastructure(s) and associated territory (AWS/GCP, Kubernetes, CI/CD), including shipping production changes yourself when needed.
  • Design, implement, and iterate on detection and response capabilities (SIEM, EDR/MDR, cloud-native detections, CNAPP) with an engineer’s bias for automation, reliability, and measurable outcomes.
  • Hunt, investigate, and respond to security alerts and suspicious activity end-to-end (triage → containment → eradication → recovery → learnings), including writing tooling and detection logic to prevent recurrence.
  • Build internal security tooling and automations (IaC, scripts, integrations) that reduce toil and raise the security bar by default.

Experience & Qualifications:

  • You’re a deeply technical security engineer with a builder/hacker mindset, able to go from idea → prototype → production and comfortable making changes directly in Cloud Infra / DevOps systems.
  • You have 5+ years of hands-on security engineering experience, ideally in a cloud-first SaaS environment.
  • Have worked in a fast-growing startup, scale-up and/or SaaS company

We would expect you to have experience in:

  • Cloud security engineering in AWS and/or GCP, with the ability to implement improvements hands-on (IAM, networking, compute, storage, logging).
  • Kubernetes security (cluster hardening, workload isolation, runtime security, policy controls) and container ecosystems.
  • DevOps fundamentals: CI/CD security, secrets management, artifact integrity, and secure-by-default platform patterns.
  • Incident response and investigation, including creating repeatable playbooks and automating response where appropriate.
  • Strong programming/scripting ability (Python or similar) plus comfort with infrastructure-as-code (e.g., Terraform) and automation.
  • Serious agent coding - ideally you’re on the bleeding edge in the space.
  • Endpoint security tooling, such as CrowdStrike

Bonus points for:

  • Hands on experience with any/all of: Hunters, Wiz, Falcon, Tracebit, Torii, Okta, Google Workspace, StrongDM, Github, StepSecurity, Dope Security
  • Any relevant Information Security certification, e.g AWS Certified Security, GIAC GWEB, OSCP, or CSSLP.

The good stuff..

In addition to being a part of a great team, working in a fun and innovative environment, we offer:

  • A competitive salary + stock options in our fast-growing Series E startup
  • Remote-friendly environment
  • 100% Medical, Dental & Vision
  • 401k Plan
  • Paid parental leave
  • 25 days of annual leave + Public holidays + paid sick leave
  • Fun culture with regular socials
  • A generous referral scheme
  • A brand new computer + monitor
  • Budget and support for conference travel, community events, and content production