> Markdown version of [/jobs/ext/2456763-senior-security-engineer](https://www.wearedevelopers.com/jobs/ext/2456763-senior-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - **Company:** SMARTER DX. INC. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $190,000.0 - $220,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Github, Intrusion Detection and Prevention, Python (Programming Language), Network Security, PostgreSQL, Security Information and Event Management, TypeScript, Software Vulnerability Management, Data Logging, Cloud Platform System, Amazon Virtual Private Cloud (VPC), Kubernetes, Opsworks, Terraform, Golang - **Published:** August 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c01279b782b84681 ## About the Role * 4+ years in security engineering, with solid hands-on experience in AWS and cloud-native infrastructure. * Direct experience writing and tuning detections in a modern SIEM (Panther or similar) and reasoning about detection coverage. * Experience investigating security alerts from raw log to a defensible conclusion. * The ability to design and deliver medium-complexity security work independently. * Code fluency in Python or TypeScript to automate your work. * Familiarity with cloud logging and observability (CloudTrail, VPC Flow Logs) and AWS security services (GuardDuty, AWS Config). * Solid AWS network security fundamentals (VPC, security groups, egress controls) and Terraform, enough to partner on and back up our network and infrastructure security work. * Clear writing; you leave behind runbooks and tickets others can follow. * Design detections and operational tooling for maintainability, so the work stays reliable and easy for the team to extend. * An ownership mindset: you close loops rather than drop them. Nice To Haves * Startup experience, especially in health tech or another regulated, data-sensitive environment. * Incident-response experience, or a strong interest in growing into it. * Network security depth beyond fundamentals (VPC design, segmentation, Transit Gateway, firewall/egress architecture). * Kubernetes (EKS) and container security exposure. * Interest in AI and agentic security and in building security automation. Our Tech Stack * Cloud and infrastructure: AWS, Kubernetes (EKS), Terraform, Postgres * Detection and security tooling: Panther (SIEM), GuardDuty, AWS Config, Wiz, Snyk, GitHub Advanced Security, CrowdStrike, Nightfall, Drata * Languages: Python, TypeScript, Go * AI and automation: Claude, MCP, and agentic tooling used across engineering ## Description SmarterDx Security Engineering has a broad scope: AI, cloud, and enterprise security, plus reviews of new designs and code across the company. This role is our hands-on owner of detection engineering and security operations. You will turn our detection platform into real coverage: writing and tuning detections in Panther, keeping alerts high-signal, running the SIEM as it grows, and being on point when an alert turns into an investigation. You will also handle the day-to-day work of cloud security operations and help run incident response. You will work closely with our Staff Security Engineer, who sets detection and AI-security strategy. Your job is to make that strategy real in production and keep it sharp. There is room to grow into deeper detection engineering, cloud security, and security automation, on a team that invests in leveling people up. **This role is fully remote within the US** What You'll Do * Write, tune, and maintain detections in our SIEM (Panther) across cloud, container, and SaaS log sources, keeping coverage broad and alerts high-signal. * Run the SIEM day to day: onboard log sources, manage detection quality, and reduce false positives so real signals stand out. * Triage and investigate security alerts from raw log to conclusion, and help execute our incident-response playbooks. * Run cloud security operations in AWS: investigate GuardDuty and Wiz findings, tighten configurations, and close cloud misconfigurations. * Own and improve GitHub organization security controls as code. * Partner on network and infrastructure security: help onboard network telemetry, support egress monitoring, and provide backup depth alongside our infrastructure security engineer. * Help build and extend the team's security-automation tooling. * Write runbooks so detection and response are repeatable rather than tribal knowledge. * Contribute to security design reviews and RFCs, and give substantive security feedback on pull requests. * Support the Vulnerability Management program with triage and exploitability assessment as volume requires. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [Bringing AI Model Testing and Prompt Management to Your Codebase with GitHub Models](https://www.wearedevelopers.com/videos/1536-bringing-ai-model-testing-and-prompt-management-to-your-codebase-with-github-models) - [Scoring 2000 Products per Request: Performance Pitfalls in Golang](https://www.wearedevelopers.com/videos/2073-scoring-2000-products-per-request-performance-pitfalls-in-golang) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)