Lead Security Engineer
Role details
Job location
Tech stack
Job description
As a Lead Security Engineer, you will be a critical technical leader in OutSystems' Security Operations Center (SOC), responsible for designing, implementing, and managing security across our multi-cloud infrastructure and leading security engineering efforts. This is a lead, hands-on engineering position requiring deep expertise in cloud security architecture, detection engineering, security tooling, and the secure software development lifecycle (SDLC) to proactively defend our digital assets and global operations., * Lead and manage security engineering across on-premise, multi-cloud (AWS, Azure, GCP or similar), and SaaS environments. You will design, architect, deploy, and implement the security infrastructure (SIEM, EDR, logging, monitoring, alerting, threat-intelligence integrations) to support a hybrid SOC model, including overall tool management and tuning.
- Design and enforce security architecture and strategy. Define and implement security standards, policies, and best practices for cloud infrastructure, SaaS applications, and internal tooling.
- Engineer, implement, and continuously tune security systems (SIEM, EDR, etc.) for continuous threat detection and automated response. Lead technical remediation efforts, working with engineering teams to implement fixes for vulnerabilities and misconfigurations found during incident response or audits (Detection Engineering, Response Automation, & Remediation Implementation).
- Work closely with product engineering, DevOps, QA to embed security best practices. Perform threat modeling, review design/architecture, and implement secure coding and deployment practices, including detection engineering for applications (Secure Software Development Lifecycle (SDLC) Integration).
- Continuously evaluate, select, and implement new security tools and frameworks, ensuring that our defenses scale with our business and technology growth (Stay ahead of evolving threats and technologies).
Requirements
- Extensive hands-on experience (5-7 years) in security engineering/implementation for cloud-based and SaaS environments, ideally multi-cloud (AWS, Azure, GCP).
- Deep knowledge of cloud security, including IAM, network segmentation, encryption, key management, secrets management, firewalls, and security tooling architecture (SIEM, EDR, logging/monitoring).
- Hands-on scripting or automation skills (e.g. Python, PowerShell, Terraform scripts, Yara) to implement security automations, detection rules, and guardrails.
- Solid experience with designing, implementing, and tuning systems for incident response, detection engineering, and vulnerability management.
- Strong understanding of secure software development lifecycle (SDLC), and ability to work closely with dev/ops teams to engineer and embed security controls.
- Knowledge of Windows, Linux, and orchestration platforms (Docker, Kubernetes, OpenShift, etc.).
- Excellent problem-solving, analytical thinking, able to anticipate threats, model attacks, and propose robust technical mitigations.
- Strong communication skills to explain security issues, risks, and technical mitigations to both technical and non-technical stakeholders, and lead a team.
- Bachelor's degree in Computer Science, Information Security, Computer Engineering, or related field.
- Relevant security certifications are a plus (e.g. CISSP, CISM, or other cloud-security credentials).