Responsibilities
- Develop robust security software and services in production environments using Python
- Construct internal security platforms and tools independently from initial concept
- Develop secure APIs and integrate them with current infrastructure and systems
- Automate detection of configuration errors, enforce security baselines, and streamline security assessments and notifications
- Design and deploy artificial intelligence-driven security integrations
- Architect and implement secure cloud infrastructure on AWS
- Enforce policies for identity and access management with least-privilege principles, manage secrets using tools like Vault and SSM, and control network access via security groups and private networks
- Harden CI/CD workflows using GitHub Actions to prevent exposure of credentials and ensure artifact integrity through signing and immutability
- Manage comprehensive code and artifact analysis including static and dynamic application testing, dependency checks, software bill of materials scanning, and container inspection
- Establish security checkpoints that align with development speed while managing risk exposure
- Enhance runtime protection mechanisms to identify anomalous behavior and block abuse attempts
- Apply and monitor security policies in live environments
- Collaborate with engineering teams on threat modeling and secure architecture evaluations
- Assist in incident response activities and contribute to post-incident reviews from a security standpoint
- Lead efforts to refine security practices based on lessons learned from incidents and close calls
- Take charge of technical investigations during security events
Work Arrangement
Remote
Other
- Remote work option available, subject to team-specific operational needs
- Contract term of six months