SpyCloud

SpyCloud is a leader in digital identity protection, dedicated to preventing targeted cyberattacks and unmasking threat actors through innovative solutions. Fou

Senior Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteSeniorCompany Site

Location

Texas

Posted

2 days ago

Salary

Not specified

Seniority

Senior

5 yrs expEnglishAWSCloudEC2ETLPythonSplunkTerraform

Job Description

• Design, improve, and maintain secure, durable, and performant infrastructure to power applications, security tooling, log collection, and data mining/ETL workflows. • Evolve log collection, processing, and storage infrastructure enabling security monitoring and investigations. • Support multi-account and multi-region AWS networking architectures with security-first principles. • Develop and maintain Splunk detection content aligned to the relevant frameworks and evolving threat intelligence. • Administer the Splunk Cloud platform, including search health, log health, and app, platform, and content updates. • Design and implement SOAR playbooks to automate investigation and response workflows. • Integrate infrastructure security tooling and automation to enhance detection, prevention, and response capabilities. • Build and maintain detection-as-code and automated deployment pipelines to ensure consistency, repeatability, and auditability. • Continuously refine detection logic to reduce false positives and increase signal quality. • Implement and operate security technologies across the enterprise, such as an endpoint security platform. • Support incident response and investigation escalations. • Proactively meet standards for information security and compliance, such as SOC 2/ISO27001. • Implement and uphold security measures across all infrastructure components. • Work cross-functionally with Product, IT, DevOps, and Engineering teams to drive secure-by-default practices. • Drive architectural and design decisions for SpyCloud’s detection program and platforms. • Mentor junior engineers and establish best practices across infrastructure and detection engineering domains.

Job Requirements

  • At least 5 years of professional experience in a DevOps, Security Engineering, or Detection Engineering role maintaining relevant production infrastructure.
  • Strong working knowledge of AWS services such as EC2, ECS or EKS, Lambda, ELBs, Transit Gateway, VPC, CloudWatch, S3, Code/Build/Pipeline/Deploy, etc.
  • Strong working knowledge of Terraform or similar tools, AWS CLI/SDK, Boto.
  • Extensive experience with SIEM content engineering, data transformation, and log onboarding.
  • Proficiency with scripting languages such as Python, Bash, etc.
  • Proficiency integrating systems via API and their respective authentication mechanisms.
  • Strong understanding of networking fundamentals and troubleshooting techniques for bare metal and containerized workloads.
  • Experience with best practice build pipelines, including Git/GitHub.

Benefits

  • 401(k)
  • Health, Vision, and Dental Insurance
  • Generous PTO Plan
  • In-office meals provided

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 10,001+Since 2020H1B No Sponsor

This role is responsible for regional oversight of safety and security supporting Raytheon international operations, requiring coordination and implementation of security plans, programs, and strategies while providing operational support to business units. The manager will devise cost-effective security initiatives to implement global security standards, policies, and practices, and address specific program-related security requirements.

Security ClearancePhysical SecurityCrisis ManagementRisk AssessmentISO 27001ASIS StandardsEvacuation PlanningThreat AnalysisCounterintelligenceExecutive ProtectionInternational SecurityForce ProtectionContractor ComplianceIncident ResponseTravel Security
United States
$132K - $251K / year
Security Engineer2 days ago
Full TimeRemote

We’re looking for a Founding Security Engineer to build and lead our security program as we scale from Series A toward Series B. This is a hands-on role with leadership trajectory. You will work directly with our engineering and platform teams to design secure systems, lead com...

AWSDevSecOpsCI/CDCloud SecurityISO 27001SOC 2Threat ModelingVulnerability ManagementPenetration TestingKubernetesInfrastructure as Code
United States + 1 moreAll locations: United States, Canada
Security Engineer2 days ago
Full TimeRemoteTeam 10,001+Since 1915H1B Sponsor

The intern will assist with supporting the assigned area, gaining practical application experience, and expanding their knowledge and skills base by performing job-specific tasks to assist with operations. They will also have the opportunity to observe the workplace and gain industry knowledge.

United States
CDW logo

Senior Security Engineer I – Identity Access Management

CDW

CDW Corporation is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. For more information about CDW, please visit www.CDW.com. Our broad array of products and services range from hardware and software to integrated IT solutions such as security, cloud, hybrid infrastructure and digital experience.

Security Engineer2 days ago
Full TimeRemoteTeam 10,001+Since 1984H1B Sponsor

Security Engineer managing IAM solutions for a Fortune 500 technology provider

AzureCloud
United States
$106K - $151.4K / year