- Job type
- Full-time
- Work mode
- Remote
- Level
- Staff
- Department
- Information Technology
- Experience
- 5+ years experience
- Posted
- Aug 25, 2026
About the role
Key Responsibilities:
- Build and own deeply technical security improvements across our Cloud Infrastructure(s) and associated territory (AWS/GCP, Kubernetes, CI/CD), including shipping production changes yourself when needed.
- Design, implement, and iterate on detection and response capabilities (SIEM, EDR/MDR, cloud-native detections, CNAPP) with an engineer’s bias for automation, reliability, and measurable outcomes.
- Hunt, investigate, and respond to security alerts and suspicious activity end-to-end (triage → containment → eradication → recovery → learnings), including writing tooling and detection logic to prevent recurrence.
- Build internal security tooling and automations (IaC, scripts, integrations) that reduce toil and raise the security bar by default.
Experience & Qualifications:
- You’re a deeply technical security engineer with a builder/hacker mindset, able to go from idea → prototype → production and comfortable making changes directly in Cloud Infra / DevOps systems.
- You have 5+ years of hands-on security engineering experience, ideally in a cloud-first SaaS environment.
- Have worked in a fast-growing startup, scale-up and/or SaaS company
We would expect you to have experience in:
- Cloud security engineering in AWS and/or GCP, with the ability to implement improvements hands-on (IAM, networking, compute, storage, logging).
- Kubernetes security (cluster hardening, workload isolation, runtime security, policy controls) and container ecosystems.
- DevOps fundamentals: CI/CD security, secrets management, artifact integrity, and secure-by-default platform patterns.
- Incident response and investigation, including creating repeatable playbooks and automating response where appropriate.
- Strong programming/scripting ability (Python or similar) plus comfort with infrastructure-as-code (e.g., Terraform) and automation.
- Serious agent coding - ideally you’re on the bleeding edge in the space.
- Endpoint security tooling, such as CrowdStrike
Bonus points for:
- Hands on experience with any/all of: Hunters, Wiz, Falcon, Tracebit, Torii, Okta, Google Workspace, StrongDM, Github, StepSecurity, Dope Security
- Any relevant Information Security certification, e.g AWS Certified Security, GIAC GWEB, OSCP, or CSSLP.
The good stuff..
In addition to being a part of a great team, working in a fun and innovative environment, we offer:
- A competitive salary + stock options in our fast-growing Series E startup
- Remote-friendly environment
- 100% Medical, Dental & Vision
- 401k Plan
- Paid parental leave
- 25 days of annual leave + Public holidays + paid sick leave
- Fun culture with regular socials
- A generous referral scheme
- A brand new computer + monitor
- Budget and support for conference travel, community events, and content production