remoteonsite
Senior Security Engineer - ACV Auctions
Security Engineer
Senior Security Engineer responsible for designing and implementing security controls across cloud infrastructure, automating threat detection, and leading incident response initiatives using AWS, Python, and CI/CD pipelines.
About the role
Key Responsibilities
- Design, implement, and maintain security architecture for cloud‑native services, primarily on AWS.
- Develop automated security tooling and scripts in Python to integrate with CI/CD pipelines and improve detection coverage.
- Conduct threat modeling and risk assessments for new features and infrastructure changes.
- Lead incident response activities, perform root‑cause analysis, and drive remediation across cross‑functional teams.
- Collaborate with development and operations teams to embed security best practices into the software development lifecycle.
Requirements
- 5+ years of hands‑on experience securing cloud environments, preferably AWS.
- Proficiency in Python for security automation and scripting.
- Strong knowledge of threat modeling methodologies, vulnerability management, and incident response processes.
- Experience integrating security controls into CI/CD workflows (e.g., Jenkins, GitHub Actions, GitLab CI).
- Excellent problem‑solving skills and ability to communicate complex security concepts to technical and non‑technical stakeholders.