$130K - 180K a year
Design and implement secure solutions and security tools across cloud and hybrid environments, lead security program execution, and collaborate with teams to enable secure delivery pipelines and compliance.
Experience in security architecture, threat modeling, security tools/platforms, compliance frameworks, and infrastructure-as-code with strong collaboration skills.
• Design and validate secure solutions across cloud, on premises, and hybrid environments, applying threat modeling, secure-by-design principles, and architecture reviews to reduce attack surface and ensure resilience. • Lead implementation and operationalization of major security tools and platforms such as SIEM/XDR, EDR, IAM/PAM, CASB, DLP, WAF, vulnerability management, and secrets management, ensuring integration, automation, and scalable telemetry. • Drive security program execution including policy and control design, secure configuration baselines, identity and access governance, encryption/key management, and alignment with compliance frameworks (e.g., ISO, NIST, SOC, GDPR). • Partner with engineering, cloud, product, and incident response teams to enable secure delivery pipelines (DevSecOps), threat detection & response playbooks, tabletop exercises, and post-incident lessons learned to continuously improve controls and maturity. • Establish and enforce security, compliance, and governance controls (identity & access, encryption, logging, compliance frameworks), and promote infrastructure-as-code (ARM/Bicep/Terraform) and CI/CD best practices for repeatable, auditable deployments.
This job posting was last updated on 10/21/2025