onsite
Security Engineer II - Metropolis
Security Engineer
Mid‑level Security Engineer responsible for designing, implementing, and operating cloud security controls, automating vulnerability remediation, and conducting threat modeling to protect AI‑driven services.
About the role
Key Responsibilities
- Design, implement, and maintain security controls for cloud infrastructure, primarily AWS.
- Develop and automate vulnerability scanning, patching, and remediation workflows using Python and CI/CD pipelines.
- Manage Identity and Access Management (IAM) policies, roles, and permissions to enforce least‑privilege access.
- Conduct threat modeling and risk assessments for new AI‑driven products and features.
- Collaborate with development and operations teams to embed security best practices throughout the software development lifecycle.
Requirements
- 2–4 years of hands‑on experience in cloud security, preferably with AWS.
- Proficiency in scripting/automation using Python.
- Strong knowledge of IAM, network security, and vulnerability management tools.
- Experience performing threat modeling and security reviews for complex systems.
- Excellent problem‑solving skills and ability to work cross‑functionally in a fast‑paced environment.