Lead Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+10 more
Job description
AirStrip is seeking a Senior Security Engineer to design, implement, and continuously strengthen enterprise security architecture across cloud, application, and network environments. This role serves as a hands-on technical leader, partnering closely with engineering teams to embed security best practices, proactively hunt threats, and respond to incidents. The ideal candidate brings deep expertise in cloud security, threat detection, incident response, and healthcare compliance frameworks, and is passionate about protecting critical systems in a fast-paced, mission-driven environment.Remote work may be allowed with approval. This role may require travel of up to 25%.Responsibilities include, but are not limited to:
Design and implement robust security architecturesAct as a mentor and escalation point to other members of the teamIterate security posture to better protect against attacks and detect new vectorsParticipate in efforts to mitigate and investigate security incidentsEvaluate and test new vendor and in-house network initiatives for security issuesEvangelize security practices through cross-functional work with engineering teams throughout the enterpriseSafeguard the enterprise through active operation and defense of critical infrastructureOther duties as assigned
Requirements
Bachelor’s degree in Computer Science, Management Information Systems, Cyber Security, Engineering, or a related field preferred (commensurate experience will be considered in lieu of a degree)Minimum 8 years of experience in IT (information technology)Minimum 5 years of experience in cyber security / IT securityIT certifications a plus: CISSP, CISA, CompTIA, GIAC
Required Knowledge, Skills, and Abilities:
Knowledge of securing AWS, Azure, or similar cloud environmentsExcellent documentation practicesPerform vulnerability management, coordinating with other teams to resolve findingsKnowledge of compliance frameworks: ISO 27001, NIST, HIPAA, HITRUSTUnderstanding of ITIL, Zero Trust, HITRUST, and ISO 27000 series frameworksExperience researching, building, and implementing defensive security systems that are used against internal and external attack vectorsExperience designing and building out application and network security monitoring to aid in detection or forensic investigationsBackground in intrusion detection, security investigations, and incident responseDeep understanding of the MITRE ATT&CK Framework and associated threat actor techniquesExperience “threat hunting,” i.e. using threat intel to proactively and iteratively investigate potential risks and finding suspicious behavior in the environmentExperience investigating data for anomalies in order to identify suspicious behaviorExperience with Identity and Access Management (IAM), provisioning user accounts and accessSolid understanding of SIEM tools (LogRhythm, Splunk, etc.)
The salary range for applicable US-based applicants to this position is below. The specific rate will depend on the successful candidate’s qualifications, prior experience as well as geographic location., Amazon Web Services (AWS), Applications Security, Best Practices, CISA - Certified Information Systems Auditor, CISSP - Certified Information Systems Security Professional, Cloud Applications, Cloud Computing, CompTIA - Computing Technology Industry Association, Computer Science, Computer Security, Cross-Functional, Documentation, Enterprise Architecture, Enterprise Protection, GIAC - Global Information Assurance Certification, HIPAA (Health Insurance Portability and Accountability Act), Healthcare, Hunting, ISO (International Organization for Standardization), ITIL (IT Infrastructure Library), Identity Data Management, Incident Response, Information Technology & Information Systems, Intel Product Family, Internet Security, Intrusion Detection Systems, Management of Information Systems/Technology (MIS), Mentoring, Microsoft Windows Azure, Network Monitoring, Network Security, Security Architecture, Security Attacks, Security Design, Security Information and Event Management (SIEM), Security Monitoring, Splunk, Team Player, Technical Leadership, Testing, U.S. National Institute of Standards and Technology (NIST), Vendor/Supplier Selection, Willing to Travel, Work From Home
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Best Paying Jobs in Technology
Is Software Engineering Over-Saturated?
What Are The Top Skills Required For Azure Developers?
Understanding and Mitigating Common Web Vulnerabilities