Security Engineer

Armada LTD
Bellevue, WA, United States
12 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$130,824.0 - $163,530.0
Working hours
Regular working hours
Job source

Tech stack

Training Data Application Programming Interfaces (APIs) Artificial Intelligence Application Layers Business Logic Software System Penetration Testing Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Continuous Integration Intrusion Detection and Prevention
+28 more
Python (Programming Language) Network Security Log Analysis Open Web Application Security Kusto Query Language Secure Coding Security Information and Event Management SQL Databases Software Vulnerability Management Web Applications Policy as Code Large Language Models Mitre Att&ck GWAPT Containerization Kubernetes Information Technology Bicep Nessus Microsoft Sentinel Nexpose Purple Team (Cyber Security) Terraform Qualys Key Vault Static Application Security Testing Vulnerability Analysis Dynamic Application Security Testing

Job description

You will own security engineering across our Azure cloud, hybrid infrastructure, and edge computing platform. The work is hands-on: building detections, testing our own applications, hardening Kubernetes, and putting controls into CI/CD. You will also help define how we secure AI/ML workloads running at the edge., * Design and implement security architecture across Azure, hybrid infrastructure, and edge deployments

  • Manage SIEM (Microsoft Sentinel), EDR/XDR, WAF, email security, and CSPM/CNAPP tooling
  • Write and tune detection rules, correlation logic, and automated response playbooks
  • Lead incident response from triage through containment and remediation

Offensive Security and Assessment

  • Perform security assessments, vulnerability scanning, and penetration testing across cloud, infrastructure, and application layers
  • Test web applications and APIs for authentication and authorization flaws, business logic abuse, and OWASP Top 10 issues
  • Threat model new services and architectures before they ship
  • Own the vulnerability lifecycle: risk-based prioritization, SLA tracking, and remediation follow-through with owning teams
  • Maintain SAST, DAST, SCA, secrets scanning, IaC scanning, and container image scanning into CI/CD as automated gates
  • Harden the software supply chain: build provenance, artifact signing, SBOM generation, dependency governance
  • Enforce guardrails as policy-as-code using Azure Policy, OPA/Gatekeeper, or Kyverno
  • Review designs and code with engineering teams and support secure deployments

AI/ML Security

  • Secure AI/ML development and deployment, including model and data supply chain integrity, inference endpoint exposure, prompt injection and agentic tool abuse, and training data governance

Governance

  • Maintain security policies, standards, and procedures aligned to NIST, ISO 27001, and SOC 2
  • Produce audit evidence and support customer security assessments
  • Track emerging threats and turn them into roadmap work

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience
  • 5+ years in information security, including 3+ years focused on cloud security
  • Strong hands-on experience with Azure security services including Defender for Cloud, Sentinel, Entra ID, Key Vault, Azure Policy, and network security
  • Production experience with several of: SIEM, EDR/XDR, WAF, email security, CSPM/CNAPP, vulnerability management
  • Experience securing Kubernetes and containerized workloads in production
  • Experience embedding security testing into CI/CD pipelines using SAST, DAST, SCA, secrets scanning, and IaC scanning
  • Hands-on application security testing experience covering web and API penetration testing and secure code review
  • Proficiency with vulnerability management platforms such as Nessus, Nexpose, Qualys, or Defender Vulnerability Management
  • Python and SQL/KQL for automation, tooling, and log analysis
  • Working knowledge of NIST, ISO 27001, and SOC 2
  • Incident response experience as a lead or primary responder
  • U.S. Citizenship required, * Experience securing edge, disconnected, or intermittently connected environments
  • Experience securing AI/ML or LLM-based systems, including OWASP Top 10 for LLM Applications and MITRE ATLAS
  • Detection engineering experience: writing and tuning KQL, detection-as-code, purple team exercises
  • Infrastructure-as-code fluency with Terraform or Bicep
  • Familiarity with MITRE ATT&CK for threat modeling and detection coverage mapping
  • Experience supporting SOC 2 Type II or FedRAMP audit cycles, At least one from either group is preferred.
  • Defensive and architecture: CISSP, CCSP, Azure Security Engineer Associate (AZ-500), GCIH, GCIA
  • Offensive: OSCP, OSWE, OSWP, OSEE, GPEN, GWAPT, CEH, * A go-getter with a growth mindset. You’re intellectually curious, have strong business acumen, and actively seek opportunities to build relevant skills and knowledge
  • A detail-oriented problem-solver. You can independently gather information, solve problems efficiently, and deliver results with a ā€œget-it-doneā€ attitude
  • Thrive in a fast-paced environment. You’re energized by an entrepreneurial spirit, capable of working quickly, and excited to contribute to a growing company
  • A collaborative team player. You focus on business success and are motivated by team accomplishment vs personal agenda
  • Highly organized and results-driven. Strong prioritization skills and a dedicated work ethic are essential for you

Benefits & conditions

Pulled from the full job description

  • 401(k)
  • Health insurance
  • Paid time off
  • Vision insurance
  • Health savings account
  • Dental insurance
  • Flexible spending account, For U.S. Based candidates: To ensure fairness and transparency, the starting base salary range for this role for candidates in the U.S. are listed below, varying based on location experience, skills, and qualifications., * Competitive base salary and equity
  • Medical, dental, and vision (subsidized cost)
  • Health savings accounts (HSA), flexible spending accounts (FSA), and dependent care FSAs (DCFSA)
  • Retirement plan options, including 401(k) and Roth 401(k)
  • Unlimited paid time off (PTO)
  • 14 paid company holidays per year

About the company

Armada is the hyperscaler for the edge, delivering modular AI infrastructure from first deployment to AI factory with speed, scale and sovereignty. Named one of Fast Company’s Most Innovative Companies and to the CNBC Disruptor 50, Armada’s solutions are deployed in over 60 countries globally for organizations ranging from energy to defense.

With nearly $500 million in funding to date, Armada is backed by leading investors including Founders Fund, Lux, BlackRock and Microsoft (M12), alongside strategic partnerships with Microsoft, Dell, Palantir, NVIDIA, SpaceX, and Skydio. We are building the infrastructure layer for sovereign and edge AI - rugged, deployable compute for customers that cannot rely on centralized cloud.

Working at Armada means taking ownership, driving autonomy, and delivering impact. You’ll tackle challenges that haven’t been solved before and help build something transformative from the ground up. What you do here will not only define your career but help further Armada’s mission to bridge the digital divide for customers around the world.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 Ā· WWC 2022

4:09 min

Selecting infrastructure tools and determining proper abstraction layers

Alayshia Knighten Alayshia Knighten Ā· WWC 2024

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira Ā· Coffee With Developers

1:45 min

Transitioning from software development to security roles

Stefania Chaplin Ā· WWC 2022

Videos

See all

Related articles

See all