Skip to content
← Back to job listings

Senior Security Engineer

Compass · Boston, United States

External listingfull-time17 days ago

About The Role

Join our team as a Senior Security Engineer, where you'll blend strategic partnership, hands-on engineering, infrastructure security, and automation. You'll empower engineers with safe-by-default tooling, design and implement scalable systems to secure our cloud infrastructure, and collaborate closely with engineering and security teams. You'll also assist in investigating and responding to security events, conduct security assessments for third-party integrations, and build enduring partnerships across the Engineering organization.

  • Concevoir et mettre en œuvre des systèmes et des contrôles évolutifs pour sécuriser efficacement notre infrastructure cloud.
  • Collaborer étroitement avec les équipes d'ingénierie et de sécurité pour déployer des améliorations critiques de la sécurité et des changements de contrôle.
  • Assister à l'investigation et à la réponse aux événements de sécurité, puis travailler avec les équipes pour guider et améliorer leurs pratiques de sécurité.
  • Strong analytical and problem-solving skills, with the ability to critically and objectively assess complex security risks
  • Automation is your default approach to security. You understand the unique challenges of securing systems at scale and consistently leverage automation to solve them
  • Experience with threat modeling and architectural review processes; you have a track record of identifying potential attack vectors early in the development lifecycle
  • You are comfortable guiding and educating development teams to achieve stronger security outcomes
  • You possess a proactive mindset, adept at identifying and resolving security gaps or inefficiencies through innovative automation and tooling
  • Expertise in securing cloud platforms, particularly AWS and Azure
  • You can clearly communicate complex security vulnerabilities and remediation techniques to diverse audiences
  • Excited to collaborate with cross-functional teams to build secure, reliable, and scalable systems
  • Proven experience with a CNAPP or similar cloud security tool (e.g., Wiz, Orca Security, Lacework, Upwind)
  • Proficiency in at least one programming language (e.g., Python, Go) for automation
  • Knowledge of core security principles such as the principle of least privilege, defense-in-depth, and security monitoring
  • Strong understanding of Azure services and how to secure them
  • Familiarity with containerization technologies (Docker) and orchestration platforms (Kubernetes)
  • Strong understanding of cloud platforms and security features, particularly AWS (IAM, EC2, VPC, container services like ECR, ECS, and EKS), with foundational knowledge of Azure and/or GCP
  • Experience: At least 5+ years of experience in a security-related role, with at least 2+ years specifically focused on cloud security
  • Experience with GCP, OCI and multi-cloud networks and infrastructure, especially when designing cloud-agnostic systems

This is an external listing. JobSpring does not represent or verify the employer. Report this listing