> Markdown version of [/jobs/ext/1182062-security-engineer](https://www.wearedevelopers.com/jobs/ext/1182062-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** VAST, INC. - **Location:** Los Angeles, CA, United States - **Salary:** $145,000.0 - $185,000.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Burp Suite, Cloud Computing, Cloud Computing Security, Code Review, Cyber Security, Computer Programming, Linux, Dynamic Program Analysis, Information Systems Security Architecture Professional, Python (Programming Language), Network Security, Open Web Application Security, Cloud Services, Security Information and Event Management, Software Engineering, Virtualization Technology, Cloud Platform System, Software Security, Gpu Programming, Containerization, Information Technology, CIS Benchmarks, Devsecops - **Published:** July 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=7a09860fabbeebc4 ## About the Role We are seeking a skilled Security Engineer to join our dynamic team. We hire people with broad skill sets who also exhibit deep expertise. The ideal candidate will have experience in both offensive and defensive security, strong software development skills, and deep knowledge of Linux systems and containerization. This role provides the opportunity to work on cutting-edge GPU cloud technologies, tackle complex security challenges at scale, and directly enhance the resilience and trustworthiness of our infrastructure and services., * A problem-solver who thrives in a fast-paced environment * Committed to continuous improvement and staying updated with the latest security practices and cloud technologies * A team player with strong communication skills, able to bridge the gap between development and security * Educational: Bachelor's degree in Computer Science, Cybersecurity, or a related field. * Programming: Strong programming skills in at least one language, ideally Python or C. * Linux and Virtualization: Extensive knowledge of Linux kernel internals, containerization technologies, and virtualization * Isolation Techniques: Deep understanding of workload and network isolation techniques in multi-tenant environments * Cloud Security: Experience in securing and hardening cloud infrastructure, particularly in environments with untrusted workloads * Network and Application Security: Strong background in network security, application security, and cloud-native security practices * Security Testing Tools: Experience with security testing tools and methodologies, such as OWASP, Burp Suite, and static/dynamic analysis tools * Cybersecurity Frameworks: Familiarity with common cybersecurity frameworks, including SOC 2, NIST, and CIS Controls, * Security Certifications: Relevant security certifications such as CISSP, CCSP, or OSCP. * DevSecOps Experience: Experience with DevSecOps practices and tools in cloud environments. * Regulatory Compliance: Familiarity with regulatory compliance requirements for operating cloud services. * GPU Security: Experience with GPU programming and an understanding of GPU-specific security concerns. ## Description * Collaborate with Operations Team: Partner with our operations team to ensure compliance with relevant standards such as SOC 2, ISO 27001, and GDPR * Secure Architecture Design: Develop and implement secure architectures for our GPU cloud platform * Security Assessments: Conduct security assessments, threat modeling, code reviews, and penetration testing * Security Improvements: Develop and implement security fixes and improvements in collaboration with engineering teams * Security Tools Management: Implement and manage security tools and systems, including SIEM, WAF, and EDR * Documentation: Create and maintain security documentation, including policies, procedures, and technical guidelines * Security Training: Provide security guidance and training to engineering teams to foster a security-first culture * Incident Response: Participate in incident response activities and contribute to post-incident analysis and improvements ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: 5 Security and Privacy Tools for Developers](https://www.wearedevelopers.com/magazine/710-the-overflow-5-security-and-privacy-tools-for-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)