Skip to main content
Back to jobs

Security Engineer

External
Full-timeRemote3mo ago
AWSBashCI/CDCloud SecurityComplianceGCP
Cover LetterConnect

Prepare for this interview

Elite

AI-generated questions, company research, and talking points tailored to this role


Responsibilities

  • Multi-Cloud Governance (AWS & GCP): Deploy and manage Cloud Security Posture Management (CSPM) tools to automatically detect and remediate misconfigurations across both providers.
  • Container Security Lifecycle: Implement Cloud Native Application Protection Platform (CNAPP) strategies by shifting left and integrating container image scanning directly into Jenkins and GitLab pipelines.
  • Workload Protection: Deploy and tune Cloud Workload Protection Platform (CWPP) tools to monitor runtime behavior and detect anomalies in both VMs and Kubernetes pods.
  • Advanced Automation & SOAR: Build Automated Response Playbooks to automatically enrich alerts, isolate compromised resources, and dismiss low-fidelity noise without human intervention.
  • Infrastructure Review & Identity: Manage effective permissions across complex multi-cloud IAM structures and standardize secret management workflows.
  • Release Readiness & Customer Trust: Collaborate closely with Technical Program Managers (TPMs) during software releases to enforce compliance standards and oversee vulnerability scanning. Additionally, respond to customer inquiries regarding the impact of Common Vulnerabilities and Exposures (CVEs) on our product.
  • Required Skills & Qualifications
  • Multi-Cloud Fluency: Deep architectural understanding of GCP and AWS, with the ability to manage complex IAM policies, standardizing identity, and securing networking layers across both providers.
  • Security Automation: Proficiency in Python, Go, or Bash to write custom scripts that eliminate toil, build auto-remediation playbooks, and streamline security operations.
  • Infrastructure as Code (IaC) : Experience developing secure Terraform modules and primitives for the organization to stem from, ensuring security defaults are baked into the architecture and catching misconfigurations before deployment.
  • Developer Enablement: Design and maintain shared CI/CD security components (SAST/SBOM/Container Scanning) that are easily adoptable by engineering teams with minimal friction.
  • Container Security: Proven experience securing managed (EKS, GKE) and unmanaged container workloads, with a strong emphasis on automating runtime defenses and admission controllers.
  • Pragmatic Mindset: The ability to operate pragmatically within a lean team, knowing how to prioritize risk based on runtime context and business impact rather than just chasing scanner outputs.
  • Privileged Access Management: Proven ability to implement and manage Just-In-Time access policies to replace manual ticket and eliminating standing privileges.
  • Federal Compliance & Citizenship : Due to the role's involvement in federal compliance activities, the candidate is required to be a US citizen.
  • Bonus Points
  • Orchestration & Event-Driven Automation Expert: Proven experience designing and deploying fully automated security systems using AWS Step Functions

Benefits

Equity / stock optionsPerformance bonus

Additional Information

Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense. The world has fundamentally changed. We are growing from 400 employees into the next phase of our journey, and we need passionate talent filled with empathy and agility. The right candidate for the job is ethical, hyper-organized, fanatical about seeing things through to completion, service-oriented, and humble enough to take feedback and coaching yet confident enough to provide feedback and coaching. Menlo is well-funded for growth and our investors are second to none. They include Vista Equity Partners (" Vista "), General Catalyst, JPMC, American Express, HSBC, and Ericsson Ventures. Role Overview We are seeking a forward-thinking Security Engineer to join our team, focusing on SecOps for the cloud architecture supporting the product. In this role, you will operate across a complex, multi-cloud environment (AWS & GCP) comprising both traditional VMs and modern managed and unmanaged container-based architectures. As part of a lean team, your primary focus will be on the aggressive automation of security processes. You will be responsible for deploying, integrating, and monitoring Jenkins and GitLab pipelines to ensure that "Security as Code" scales seamlessly alongside our infrastructure. This includes the strategic deployment and management of CSPM, CNAPP, and CWPP tools to act as a force multiplier for the team. Your operational cadence must be built on speed and automation over manual triage. Success requires you to continuously tune alerting to ensure high-fidelity signals, reduce alert fatigue, and build automated response workflows. Ultimately, you will conduct rigorous infrastructure reviews to ensure that cloud configurations, IAM policies, and orchestration layers meet our security baselines while maintaining rapid release velocity.


Your Match

How well this role fits your profile.

Company Intel

What employees say

Worked at menlosecurity? Share your experience

Interested in this role?

Apply on the company's website.

Cover LetterConnect