> Markdown version of [/jobs/ext/192026-security-engineer-ii](https://www.wearedevelopers.com/jobs/ext/192026-security-engineer-ii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer II - **Company:** Chewy, Inc. - **Location:** Boston, MA, United States - **Salary:** $100,000.0 - $160,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Amazon Web Services, Computing Platforms, Cloud Computing Security, Configuration Management, Code Review, Cyber Security, Groovy, Identity and Access Management, Python (Programming Language), Performance Tuning, Reliability Engineering, Remote Access Technology, Ruby, Software Vulnerability Management, Web Applications, Scripting, Multi-Cloud, Git, Containerization, Information Technology, Terraform, Jenkins - **Published:** May 23, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=62251882d0e0a32d ## About the Role Do you have experience in Tooling?, Do you have a Bachelor's degree?, * Bachelor's degree or higher in Computer Science, Computer Information Systems, or similar; or equivalent experience. * Ability to write functional Terraform or equivalent infrastructure as code language or scripting language * Experience with Groovy for Jenkins pipeline file development. * Experience managing AWS native security services: Guard Duty, Security Hub, Trust Advisor, Organization Delegated Administrator, IAM, KMS. * Experience managing GCP native security services: Security Command Center, IAM, Google Cloud Storage, Logs and Log Sinks. * Working knowledge of common technical controls across security domains (logical access, configuration management, security operations, etc.) * Excellent analytical and problem-solving skills, with the ability to identify, mitigate and communicate risks effectively to stakeholders. * Experience deploying Cloud Security Posture Management (CSPM) platform technologies on public clouds. * Working knowledge of public cloud container technologies such as ECS, EKS, GKE, etc. * Ability to balance multiple priorities at a given time. * Must be team-oriented and have a customer first mindset. Bonus (if applicable): * Ability to write functional Python, Go or Ruby * Experience managing commercial security tools and platforms. * Knowledge of Open Policy Agent - Rego. * Understanding of Git and GitOps concepts. * Experience working in a fast-paced e-commerce environment. * Experience investigating security incidents in public clouds (AWS, Google.) ## Description * Drive the evaluation and integration of edge technologies (WAF, firewall, bot protection, content monitoring and remote access solutions) and providers, partnering with other security, infrastructure, and application teams to align controls with business and risk objectives. * Drive the integration of edge technologies and providers, partnering with other security, infrastructure, and application teams to align controls with business and risk objectives. * Provide security guidance and risk management through architecture design reviews, code reviews and standard documentation of services running in our multi-cloud environments. * Collaborate with Developers, Site Reliability Engineering, Vulnerability Management, and Security Operations teams to achieve shared security goals. * Ensure applications and infrastructure deployed to public clouds to meet performance, privacy, and security requirements. * Assist the Security Operations Center in the identification and mitigation of web based attacks, and provide when appropriate recommendations for improvements to the defensive posture of web applications at the edge. * Develop automation, observability, and performance tuning workflows for edge services to continuously improve detection fidelity, response speed, and delivery efficiency. * Engage in on-call rotation and provide operational support for security alerts, escalations, and incidents, helping to ensure 24/7 resiliency. * Contribute to a culture of operational excellence and security-first thinking, balancing precision, speed, and simplicity in all aspects of your work. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Give your build some love, it will give it back!](https://www.wearedevelopers.com/videos/514-give-your-build-some-love-it-will-give-it-back) - [Coffee with Developers: David Heinemeier Hansson](https://www.wearedevelopers.com/videos/875-coffee-with-developers-david-heinemeier-hansson) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [AI-Native Enterprise Platforms: Interpreting Logic, Not Compiling Code](https://www.wearedevelopers.com/videos/1975-ai-native-enterprise-platforms-interpreting-logic-not-compiling-code) - [Coroutine explained yet again 60 years later](https://www.wearedevelopers.com/videos/690-coroutine-explained-yet-again-60-years-later) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 162: AI careers, MCP, AWS best practices & floppy sweaters](https://www.wearedevelopers.com/magazine/571-dev-digest-162-ai-careers-mcp-aws-best-practices-floppy-sweaters) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 139 - Soft and hard queries](https://www.wearedevelopers.com/magazine/487-dev-digest-139-soft-and-hard-queries)