- Company Name
- Aledade, Inc.
- Job Title
- Senior Security Engineer II (Engineering & Tooling), Remote
- Job Description
-
**Job Title:**
Senior Security Engineer II (Engineering & Tooling)
**Role Summary:**
Design, implement, and maintain security tooling and infrastructure across cloud and on‑prem environments. Lead threat modeling, architecture reviews, and automation to scale security controls, while providing technical guidance to junior engineers.
**Expectations:**
- Minimum 7 years in security engineering with hands‑on tool deployment.
- Deep knowledge of threat modeling, incident response, and risk management.
- Experience securing AWS, Azure, or GCP environments (IAM, VPC, security groups, EKS/ECR).
- Proficiency with SIEM, EDR, vulnerability management, and IaC/CI‑CD automation.
- Strong scripting skills (Python, PowerShell, Bash).
- Proven record of mentoring and leading security initiatives.
- Up‑to‑date on emerging security technologies and compliance frameworks (PCI‑DSS, GDPR, HIPAA, SOX).
- Preferred certifications: CISSP, CEH, CCNP, or equivalent.
**Key Responsibilities:**
- Conduct architecture reviews and threat modeling for new and existing services.
- Design, deploy, and manage SIEM, EDR, DLP, vulnerability management, and firewall solutions.
- Integrate security tooling across multi‑cloud and containerized environments.
- Automate security processes with Terraform, Ansible, Helm, and CI‑CD pipelines.
- Lead evaluation, implementation, and configuration of emerging security technologies.
- Perform vulnerability assessments, patch management, and remediation.
- Drive incident response, threat hunting, and forensic investigations.
- Mentor junior engineers and influence security best practices across teams.
**Required Skills:**
- Security Engineering
- Threat Modeling & Risk Management
- SIEM (Splunk, Sumo Logic)
- EDR (CrowdStrike, SentinelOne)
- Vulnerability Management (Tenable, Qualys, Wiz, Snyk)
- Cloud Security (AWS Security Hub, Azure Sentinel, IAM, VPC, security groups)
- Container & Kubernetes Security (EKS, Docker, Helm)
- IaC & CI‑CD Tools (Terraform, Ansible, Chef, Jenkins, Buildkite, ArgoCD)
- Scripting (Python, PowerShell, Bash)
- DevSecOps Practices
- Incident Response & Threat Hunting
- Regulatory Compliance (PCI‑DSS, GDPR, HIPAA, SOX)
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Certifications: CISSP, AWS Certified Security Specialty, GSEC, or comparable; additional CEH, CCNP, or equivalent strongly preferred.