Security Engineer
Role details
Job location
Tech stack
Job description
We are seeking a talented and motivated Senior Security Engineer (x/f/m) to join our small but dedicated Security Team. In this role, you will play a crucial part in strengthening our overall security posture, collaborate across teams and domains, and own security initiatives company-wide., * Lead and improve our vulnerability management program, ensuring timely identification, assessment, and remediation of risks across infrastructure, applications, and services.
- Collaborate with engineering, IT, and product teams to embed security best practices throughout the development lifecycle and operational processes.
- Design, implement, and maintain security controls and measures across Welltech's systems, networks, and cloud environments.
- Assist in compliance initiatives with relevant standards and regulations, ensuring security requirements are met and maintained.
- Contribute to threat modeling, risk assessments, and incident response, supporting a proactive and resilient security posture.
- Develop and refine internal security policies, standards, and tools to support company-wide security goals.
- Support and lead security awareness efforts, helping to foster a strong security culture throughout the organization.
- Continuously evaluate emerging threats, technologies, and practices, driving improvements to Welltech's overall security maturity.
Requirements
Do you have experience in Scripting?, * 2+ years of relevant experience.
- BS in Computer Science, Cybersecurity, Software Engineering, or a related technical field.
- Solid understanding of security principles, vulnerabilities, and common attack techniques.
- Proficiency in scripting and automation (e.g., Python, Go) to streamline security processes.
- Experience with security vulnerabilities described in OWASP 10 and SANS 25
- Experience with securing mobile applications
- Knowledge of cloud platforms such as AWS or Google Cloud.
- Understanding of security frameworks, compliance standards, and best practices (e.g., NIST, ISO 27001, CIS).
- Big plus: Experience with PCI.
Soft skills:
- Excellent written and verbal communication skills
- A collaborative, proactive mindset and passion for continuous improvement.
- Ability to clearly communicate complex security concepts to technical and non-technical stakeholders.
Candidate journey: Recruiter call -> Live Coding -> Skills assessment -> Cultural fit call