Security Engineer
Core
Safeguard applications, infrastructure, and data from threats by implementing secure coding, vulnerability scanning, and threat modeling.
Role type
Security Engineer
Builds
Secure development lifecycle (SDLC), security monitoring frameworks, and automated security testing in CI/CD pipelines
Domain
Cybersecurity, Cloud Security (AWS/Azure/GCP), DevSecOps
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Threat modeling, vulnerability scanning, penetration testing, secure coding principles, SIEM/IDS management, scripting automation (Python/Bash/PowerShell), cloud security (IAM/workload protection), API security, incident response, compliance standards (ISO 27001/GDPR/SOC 2)
Preferred skills
Experience with Nessus, Qualys, Burp Suite, encryption protocols, network security
Technologies
Nessus, Qualys, Burp Suite, Python, Bash, PowerShell, AWS, Azure, GCP, SIEM, IDS
Responsibilities
Develop threat models, conduct vulnerability scans and penetration tests, enforce secure coding practices, integrate security into CI/CD pipelines, monitor and respond to security incidents, ensure compliance with security standards, design IAM policies and authentication mechanisms, review features/APIs for security, develop incident response plans
Seniority
Mid-Senior, hands-on IC
