Security Engineer
Posted 14ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Senior Security Engineer at Sonatafy Technology, focusing on security across cloud environments. Embedding security into product development and shaping long-term security architecture.
Responsibilities:
- Conduct security reviews and threat modeling for new product features
- Partner with engineering teams to embed secure development practices
- Improve vulnerability management and security scanning processes
- Help integrate security tools such as SAST and dependency scanning
- Manage and tune our Web Application Firewall (WAF)
- Monitor logs and alerts to identify suspicious activity
- Investigate and respond to security incidents
- Improve detection, logging, and alerting across our platform
- Drive implementation of SSO and centralized identity management
- Design and enforce least-privilege access controls
- Establish RBAC policies and support access review processes
- Help define the company’s security roadmap
- Establish measurable security KPIs and reporting
- Evaluate and recommend security tools and controls
- Collaborate with leadership on security and privacy considerations
- Support security best practices across engineering and infrastructure
- Lead MDM implementation (Jamf, Kandji, Intune, or similar)
- Support day-to-day security tooling maintenance
Requirements:
- 5+ years of experience in Security Engineering, SecOps, AppSec, or DevSecOps
- Strong experience securing AWS cloud environments
- Experience implementing and managing AWS-native security services (IAM, GuardDuty, Security Hub, CloudTrail, CloudWatch, Detective, Inspector, KMS, Secrets Manager, Certificate Manager)
- Strong knowledge of web application security (OWASP Top 10)
- Experience managing Web Application Firewalls (WAF)
- Experience with security monitoring, incident response, and threat detection
- Experience conducting application security reviews and threat modeling
- Familiarity with identity and access management (SSO, RBAC, MFA)
- Ability to integrate security tooling into engineering and CI/CD workflows
Benefits:
- Competitive compensation
- Remote-first lifestyle
- Career growth opportunities


















