Post Job Free
Sign in

Senior Cloud Security Engineer

Company:
Incode Technologies
Location:
Divcibare, Kolubara District, 14204, Serbia
Posted:
April 17, 2024
Apply

Description:

REIMAGINE TRUST

Incode is the leading provider of world-class identity solutions that is reinventing the way humans authenticate and verify their identities online to power a world of digital trust.

Through our revolutionary identity solutions, we are unleashing the business potential of universal industries including finance, government, retail, hospitality, gaming and more, by reducing fraud and transforming human interactions with data, products, and services.

We’re in the process of rapidly scaling our diverse global team and we’re looking for entrepreneurial individuals and leaders who are curious, driven, and excited by ownership to join a Unicorn-status scale-up!

The Opportunity

We seek a trustworthy and proactive Senior Cloud Security Engineer as the technical thought leader and driver of continual cloud security across Incode. As a key security hire at Incode, you will work to ensure a continual and secure cloud security posture while building automation and infrastructure to support our security capabilities and operations across multi-cloud SaaS, hybrid, and private cloud solutions. In close collaboration with our security team members, the compliance team, the SRE team, and product engineering teams, we share the responsibility to identify, protect, detect, respond, and recover from cyber threats.

If you are a hands-on Cloud Security Engineer passionate about taking a risk-based, proactive, and automated approach to securing all cloud assets in our corporate and product at Incode, we would love to chat with you. This is an exciting opportunity to shape and build a forward-leaning cloud security program and directly influence our overall security strategy.

Responsibilities

Discover the top security challenges we face and partner with teams across the company to be hands-on in implementing your security recommendations.

Build security controls that detect, prevent, and correct cloud vulnerabilities in our very complex, multi-cloud, hybrid and private cloud environment.

Architect and design infrastructure to support the security team’s mission and ensure well-architected fundamentals (logging, identity and access controls, etc).

Build, deploy, and manage production security tools and services to monitor networks, endpoints, and cloud workloads

Build, maintain and evolve a reliable and low-touch infrastructure using technologies such as Terraform, Kubernetes, and immutable images

Facilitate the security baked into our cloud infrastructure for our applications and customer data

Contribute changes to production security infrastructure and platforms (e.g., configure GuardDuty or AWS Config, Kubernetes, VPNs, Secrets Manager, etc)

Help your peer engineers grow their own security reasoning and knowledge

Qualifications:

5+ years experience deploying and securing services on public cloud infrastructure

Detailed understanding of cloud and network security

Detailed understanding of Kubernetes components and cloud-native security

Fluency in one or more programming or scripting languages

Experience building, deploying, and customizing security tools to address threats and lower risk: CSPM, vulnerability scanners, static analyzers, web application firewalls, IDS/IPS, endpoint security monitoring, etc.

Knowledge of networking and web protocols (TCP/IP, HTTP, TLS, REST), and the ability to analyze traffic to find anomalies

Depth and experience in modern cloud technology components and deployment patterns: virtual machines, containers, Kubernetes, serverless, infrastructure as code, etc.

Depth and experience with at least one common cloud service provider: AWS, GCP, Azure

Understanding of security weaknesses, exploits, attacks and mitigations

Outstanding written and verbal communication

Experience with most of the following: AWS security tools (GuardDuty, AWS Config, CloudTrail), Terraform, Kubernetes, Containers, Open Policy Agent, Secrets Management, SIEM

Excellent collaborative skills

Outstanding written and verbal communication

Preferred Experience and Certification:

SaaS Startup experience in security focused industries, such as fintech, security software and services, healthtech, identity and access management.

Familiarity in continuous integration and Infrastructure as Code

Experience designing, and optimizing high throughput ETL pipelines

Possess a breadth of knowledge and experience across the information security domain, such as endpoint security, detection engineering, incident response, application security, or automation

Experience as a software engineer, infrastructure engineer, or site reliability engineer

Experience detecting or responding to threats in Kubernetes (K8s), AWS, and Linux environments

Certifications in AWS, GCP or Azure, Cloud Security, Application Security, and/or Offensive Security (eg. AWS Security Specialty, CCSP, CompTIA Cloud+, Security+, OSCP, GWAPT, GPEN, CEH, CISSP, etc).

8 Aspects of our Culture:

Values are what we value

High performance

Freedom & responsibility

Context, not control

Highly aligned, loosely coupled

Continuous Feedback

Pay Top of Market

Promotions & Development

Learn more about Life at Incode!

Benefits & Perks:

Meaningful Equity

Flexible Working Hours & Workplace

Open Vacation Policy

Wellness Program

International Travel Opportunities

Additional benefit package according to location (401k, medical insurance, etc.)

Equal Opportunities:

Incode is an equal opportunity employer, committed to creating a diverse and inclusive work environment. We take great pride in having an inclusive, diverse, and global team and are always on the lookout for talented, passionate people from all backgrounds and walks of life.

Applicant Data Privacy:

We will only use your personal information in connection with Incode’s application, recruitment, and hiring processes.

Apply