- Company Name
- Cline
- Job Title
- Security Engineer
- Job Description
-
Job Title: Security Engineer
Role Summary:
Lead the design, implementation, and maintenance of security controls across cloud infrastructure, APIs, and developer tools. Drive enterprise security strategy, compliance, and incident response readiness, mentoring cross‑functional teams to embed security into CI/CD and development workflows.
Expectations:
- 5+ years of experience in application, cloud, or infrastructure security.
- Proven expertise in AWS, GCP, or Azure with containerized workloads (Kubernetes, Docker).
- Strong background in secure software development, threat modeling, and vulnerability management.
- Hands‑on skill with SAST/DAST, IDS/IPS, SIEMs, secret management tools.
- Deep understanding of OAuth, SAML, OIDC authentication/authorization protocols.
- Experience building automated security monitoring and incident response processes.
Key Responsibilities:
- Design and enforce security controls for cloud services, APIs, and developer tooling.
- Conduct threat modeling, risk assessments, and security reviews of code and infrastructure.
- Integrate security into CI/CD pipelines and development workflows ("shift‑left security").
- Develop, deploy, and maintain automated threat detection, monitoring, and alerting systems.
- Lead vulnerability management, internal penetration testing, and third‑party security assessments.
- Drive and manage compliance initiatives (SOC 2, ISO 27001, GDPR, other regulatory standards).
- Mentor engineering staff and formulate organization‑wide security best practices.
Required Skills:
- Cloud security architecture for AWS, GCP, Azure.
- Container security: Kubernetes, Docker.
- Secure software development lifecycle (SDLC) practices.
- Threat modeling, risk assessment, vulnerability management.
- SAST/DAST, IDS/IPS, SIEM, secret‑management tools.
- Authentication/authorization protocols: OAuth, SAML, OIDC.
- Incident response planning and execution.
- Strong communication and cross‑functional collaboration.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Relevant certifications preferred: CISSP, CISM, AWS Security Specialty, GCP Professional Cloud Security Engineer, or equivalent.
San francisco, United states
On site
10-09-2025