remote
Security Engineer II Canada - NerdWallet
Security Engineer
Security Engineer II focused on protecting enterprise assets through threat modeling, vulnerability management, and cloud security. Leverages AWS, incident response, and advanced security tooling to design and enforce robust defenses.
About the role
Key Responsibilities
- Design, implement, and maintain security controls across on‑prem and cloud environments, prioritizing AWS infrastructure.
- Conduct threat modeling, risk assessments, and vulnerability scans to identify and remediate security gaps.
- Lead incident response efforts, coordinating with cross‑functional teams to contain, investigate, and recover from security events.
- Develop and enforce security policies, standards, and best practices for software development and operations.
- Collaborate with engineering, product, and compliance teams to integrate security into the CI/CD pipeline.
Requirements
- 3+ years of experience in information security or security engineering roles.
- Strong knowledge of AWS security services (IAM, KMS, GuardDuty, Security Hub).
- Hands‑on experience with vulnerability management tools (e.g., Nessus, Qualys) and threat modeling frameworks.
- Proficiency in scripting (Python, Bash) and automation of security tasks.
- Excellent communication skills and ability to work collaboratively in a fast‑paced environment.
Skills
siemiampenetration testing