Security Engineer
Core
Generalist security engineer building a new security team, focusing on application security reviews, cloud infrastructure hardening, and incident response for a global commerce company.
Role type
Early-stage generalist security engineer
Builds
Secure application code, hardened cloud/container infrastructure, and security guidance for engineering teams
Domain
Cybersecurity, Cloud Infrastructure, Game Industry Commerce
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security review, SAST/DAST scanning, Cloud IAM configuration, Code review (Go/Python/PHP), Threat modeling, Penetration test remediation, Incident response, Security documentation
Preferred skills
Kubernetes security, Linux networking, vSphere/ESX, NIST CSF/PCI/SOC 2 knowledge, Detection engineering, Security automation
Technologies
GCP, vSphere/ESX, Kubernetes, MariaDB, CockroachDB, Go, PHP, Python, SAST, DAST
Responsibilities
Conduct code reviews and run SAST/DAST scans; Participate in threat modeling for new features; Harden GCP and Kubernetes environments; Triage penetration test findings; Review architectures for secure design; Document and track security findings; Support incident response investigations; Write async security guidance and advisories
Seniority
Early-team hire, generalist

