> Markdown version of [/jobs/ext/2295544-secops-security-engineer](https://www.wearedevelopers.com/jobs/ext/2295544-secops-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SecOps Security Engineer - **Company:** SYNTHESIA, INC. - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Computer Programming, Computer Networks, Continuous Delivery, Continuous Integration, Data Security, DevOps, Github, Identity and Access Management, Python (Programming Language), Key Management, Security Information and Event Management, Software Engineering, Data Logging, Scripting, Google Cloud, Okta, Kubernetes, Gsuite, Terraform - **Published:** August 29, 2026 - **Apply:** https://www.careerbuilder.com/job-details/secops-security-engineer-staff-level-l6--d1ab902d-221e-4b59-bc7c-909d340123fb ## About the Role * You're a deeply technical security engineer with a builder/hacker mindset, able to go from idea prototype production and comfortable making changes directly in Cloud Infra / DevOps systems. * You have 5+ years of hands-on security engineering experience, ideally in a cloud-first SaaS environment. * Have worked in a fast-growing startup, scale-up and/or SaaS company We would expect you to have experience in: * Cloud security engineering in AWS and/or GCP, with the ability to implement improvements hands-on (IAM, networking, compute, storage, logging). * Kubernetes security (cluster hardening, workload isolation, runtime security, policy controls) and container ecosystems. * DevOps fundamentals: CI/CD security, secrets management, artifact integrity, and secure-by-default platform patterns. * Incident response and investigation, including creating repeatable playbooks and automating response where appropriate. * Strong programming/scripting ability (Python or similar) plus comfort with infrastructure-as-code (e.g., Terraform) and automation. * Serious agent coding - ideally you're on the bleeding edge in the space. * Endpoint security tooling, such as CrowdStrike Bonus points for: * Hands on experience with any/all of: Hunters, Wiz, Falcon, Tracebit, Torii, Okta, Google Workspace, StrongDM, Github, StepSecurity, Dope Security * Any relevant Information Security certification, e.g AWS Certified Security, GIAC GWEB, OSCP, or CSSLP., Amazon Web Services (AWS), Artificial Intelligence (AI), Automation, Budgeting, Cloud Computing, Computer Hacking, Computer Networks, Computer Programming, Continuous Deployment/Delivery, Continuous Integration, DevOps, Endpoint Security, Funding, GCP (Good Clinical Practices), GIAC - Global Information Assurance Certification, Incident Response, Information/Data Security (InfoSec), Machine Tool, Onboarding, Product Development, Prototyping, Python Programming/Scripting Language, Scripting (Scripting Languages), Security Information and Event Management (SIEM), Software Engineering, Software as a Service (SaaS), Startup, Visual Communication ## Description As our team and customer base grow, we need to make sure our security efforts scale accordingly. For that, we are looking to expand the Synthesia Infosec team by onboarding an additional Security Engineer (L6)! You will report to the Head of Security and work within the Security Operations team., * Build and own deeply technical security improvements across our Cloud Infrastructure(s) and associated territory (AWS/GCP, Kubernetes, CI/CD), including shipping production changes yourself when needed. * Design, implement, and iterate on detection and response capabilities (SIEM, EDR/MDR, cloud-native detections, CNAPP) with an engineer's bias for automation, reliability, and measurable outcomes. * Hunt, investigate, and respond to security alerts and suspicious activity end-to-end (triage containment eradication recovery learnings), including writing tooling and detection logic to prevent recurrence. * Build internal security tooling and automations (IaC, scripts, integrations) that reduce toil and raise the security bar by default. ## Related Videos - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Bringing AI Model Testing and Prompt Management to Your Codebase with GitHub Models](https://www.wearedevelopers.com/videos/1536-bringing-ai-model-testing-and-prompt-management-to-your-codebase-with-github-models) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [CI/CD with Github Actions](https://www.wearedevelopers.com/videos/856-ci-cd-with-github-actions) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers)