JobHabor

Staff Security Engineer

Rightway

Location
US
Workplace
Remote
Employment
Full Time
Salary
USD 169,000–210,000/yr
Apply on the employer’s site

Posted 2mo ago

The employer’s full description could not be read from their board. This is a summary of the posting — follow the apply link for the original.

Responsibilities

  • Direct the daily execution of Application Security and Cloud Security functions
  • Establish technical priorities, decision frameworks, and operating expectations
  • Architect and deploy defensive controls for LLM- and AI-enabled capabilities
  • Assess software, services, dependencies, infrastructure, and deployment patterns
  • Raise the resilience of Rightway's AWS footprint
  • Expand automation for cloud and platform assurance
  • Set the approach for risk-based prioritization
  • Define durable secure engineering expectations
  • Shape secure implementation patterns for new platform capabilities
  • Run deep technical reviews for major initiatives
  • Guide authentication, authorization, and trust-boundary decisions
  • Unify application and cloud control strategy
  • Coordinate with Corporate Security on shared capabilities
  • Improve the signal quality of detection, validation, and testing approaches
  • Evaluate, pilot, and operationalize advanced security capabilities

Requirements

  • 8 to 12 years of experience in security engineering
  • Substantial hands-on depth across application security and cloud security
  • Track record of leading difficult technical work across multiple security domains
  • Experience applying knowledge of emerging AI security guidance
  • Strong AWS security expertise across IAM, networking, encryption, secrets protection, logging, and multi-account design
  • Experience securing infrastructure-as-code and modern delivery pipelines
  • Ability to operate as a senior technical partner to engineering and infrastructure teams
  • Ability to read and reason about application code and system architecture
  • Fluency in one or more backend environments such as Ruby, Node.js, or Java
  • Ability to communicate clearly with technical and non-technical stakeholders
  • Experience in regulated environments such as healthcare, finance, or education

Preferred

  • Experience helping other engineers improve through direction, coaching, and example
  • Knowledge of the OWASP Top 10 for LLM Applications
  • Knowledge of the OWASP GenAI Security Project
  • Experience with Terraform
  • Experience with CI/CD workflows

Skills

  • AWS
  • IAM
  • Terraform
  • CI/CD
  • Ruby
  • Node.js
  • Java
  • SAML 2.0
  • OAuth
  • OIDC

Similar roles