Security Engineer
Core
Protect customer data and build a secure platform for litigation technology, managing cloud infrastructure, threat detection, and incident response.
Role type
Security Engineer (IC)
Builds
Secure cloud infrastructure, threat detection systems, and incident response capabilities for the Everlaw platform.
Domain
Legal technology / SaaS / Cloud Security
Deliverable
production ML models | product features | infrastructure
Required skills
Vulnerability management, incident triage and response, AWS security services (IAM, Security Hub, GuardDuty, Config), scripting (Python), Linux environment navigation, security tooling (Nessus/Trivy, Wazuh/Zeek, Splunk/ELK/Datadog), vulnerability lifecycle management, secure coding standards, web application security (OWASP Top 10).
Preferred skills
SaaS environments, distributed systems, compiled languages (Java), Infrastructure as Code (Terraform, Ansible), git.
Technologies
AWS, Linux, Python, Nessus, Trivy, Wazuh, Zeek, Splunk, ELK, Datadog, Terraform, Ansible, git, IAM, Security Hub, GuardDuty, Config.
Responsibilities
Drive improvements in vulnerability management, threat detection, and incident response; triage and respond to security incidents; strengthen threat detection systems for cloud infrastructure and third-party integrations; develop and refine security processes and runbooks; manage and tune AWS security services; collaborate with engineering teams to assess risk and advise on responses; lead threat modeling sessions and conduct security design reviews.
Seniority
Mid-level (1-3 years experience), hands-on IC