Security Engineer - Vuln Management (Infra)
Core
Mid-level Infrastructure Vulnerability Management Engineer responsible for scanning, triaging, and remediating security flaws across multi-cloud environments, containers, and IaC to ensure compliance and protect production ecosystems.
Role type
Mid-level Infrastructure Vulnerability Management Engineer
Builds
Hardened cloud infrastructure, secure container registries, and automated compliance baselines for Replit's agentic software creation platform.
Domain
Cloud Security / DevSecOps / Infrastructure Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Multi-cloud security (GCP, AWS, Azure), Infrastructure as Code (Terraform, Pulumi), Container security (Docker, Kubernetes), Vulnerability management lifecycle, Compliance frameworks (SOC 2, ISO 27001, PCI-DSS), CSPM/KSPM/DSPM tooling, Incident response support
Preferred skills
Deep GCP expertise, Experience with Wiz/Orca/Prisma Cloud/Lacework, GitOps workflows, CI/CD pipeline security integration
Technologies
GCP, AWS, Azure, Terraform, Pulumi, Docker, Kubernetes (GKE, EKS), Wiz, Orca, Prisma Cloud, Lacework, GCP Security Command Center, Checkov, Tfsec, KICS
Responsibilities
Perform continuous security scanning and triage of cloud workloads and misconfigurations; Manage CSPM, KSPM, and DSPM tools to maintain compliance baselines; Embed IaC security scanning into CI/CD pipelines; Manage vulnerability scanning and patching for containers and VMs; Track and document vulnerabilities against compliance SLAs; Escalate critical exposures to leadership and maintain risk dashboards; Collaborate with SRE/DevOps to remediate security flaws; Support incident response with immediate cloud/network countermeasures
Seniority
Mid-level, hands-on IC
