> Markdown version of [/jobs/ext/1310427-security-engineer](https://www.wearedevelopers.com/jobs/ext/1310427-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Beyond Inc. - **Location:** Chicago, IL, United States - **Experience:** Expert - **Salary:** $140,000.0 - $165,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Build Automation, Cloud Computing Security, Continuous Integration, Data Deduplication, DevOps, Github, Identity and Access Management, Python (Programming Language), Key Management, Network Segmentation, Open Web Application Security, Ruby on Rails, Zero Trust Network Access, Runbook, Software Engineering, Software Vulnerability Management, Data Logging, Software Security, Rate Limiting, Kubernetes, Cloudflare, Terraform - **Published:** July 17, 2026 - **Apply:** https://www.dice.com/job-detail/4bca1bb9-20b1-4ed2-a21c-77f965d96036 ## About the Role * 5+ years of hands-on security engineering across cloud security and vulnerability management. * Strong AWS security background: IAM, networking, container orchestration, and logging and audit. * Hands-on experience securing CI/CD pipelines and Infrastructure as Code; Terraform required. * Experience running or substantially contributing to a vulnerability management program. * Working knowledge of OWASP Top 10 and threat modeling. * Operates independently and drives projects without day-to-day oversight. Nice to Have * Experience with our stack: Wiz, Cloudflare (WAF, Gateway, Zero Trust), GitHub Advanced Security, Spacelift, and AWS-native services. * Hands-on WAF experience in production: writing and tuning rules, managing false positives, responding when something gets through. * AI/ML security exposure: prompt injection, data poisoning, model abuse, and the controls that mitigate them. * Secrets management platforms (AWS Secrets Manager, Keeper, Infisical). * Identity security across human and non-human identities. * PCI-regulated or financial services environment. * Familiarity with Ruby on Rails, Python, or Go. ## Description As a Senior Security Engineer, you'll harden the security posture of our AWS environment and our software development pipeline. Cloud Security and vulnerability management in Wiz are the primary focus. You'll partner with DevOps, Engineering, and our Application Security Engineer to build preventative controls across infrastructure, identity, and CI/CD. The work is hands-on: configuring tooling, reviewing architecture, hardening pipelines, and supporting application security work where your range is needed., * Own cloud security posture across our AWS environment using Wiz and AWS-native services, reducing risk across IAM, network segmentation, container security, secrets, and data exposure. * Establish secure defaults in our Infrastructure as Code through reusable modules, guardrails, and policy as code. * Harden CI/CD pipelines in partnership with DevOps. * Run vulnerability management across cloud and application findings: intake, prioritization, SLA tracking, and remediation with engineering. * Build automation that scales the program: ingestion, deduplication, prioritization, and developer-facing workflows. * Instrument telemetry, alerting, and runbooks for the systems you own. * Operate and tune our WAF: managed and custom rules, rate limiting, and bot mitigation. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [3 Key Steps for Optimizing DevOps Workflows](https://www.wearedevelopers.com/videos/962-3-key-steps-for-optimizing-devops-workflows) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)