Lead Security Engineer – AppSec / CloudSec & PenTest / SecOps
Core
Lead Security Engineer setting technical direction for both defensive platform building (AppSec/CloudSec) and active operational defense (PenTest/SecOps) across cloud infrastructure and software pipelines.
Role type
Senior IC Lead Security Engineer (AppSec/CloudSec/PenTest)
Builds
Automated security controls, cloud architecture, IAM, Zero Trust designs, penetration testing frameworks, and incident detection systems.
Domain
Cybersecurity, Cloud Infrastructure, DevSecOps, AI Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security, Cloud architecture defense, Penetration testing, Security operations, CI/CD pipeline security, Forensic analysis, OWASP Top 10 for LLMs, Applied cryptography, Federated authentication, Regulatory compliance (PCI-DSS/SOC 2/DORA), Team mentorship
Preferred skills
AWS Certified Security Specialty, CKS, CISSP, OSCP, OSCE, SANS GXPN, GCIH, GCFA, OffSec OSAI
Technologies
AWS, Azure, GCP, Kubernetes, GitLab CI, Forensic analysis tools
Responsibilities
Define technical strategy for secure software design and cloud defense; Represent security function in executive forums; Direct integration of automated security controls; Own escalation for complex cloud architecture and IAM decisions; Set cadence for penetration testing and red team simulations; Act as senior technical escalation during critical incidents; Mentor senior and junior engineers.
Seniority
Senior, hands-on IC with leadership responsibilities
