Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+14 more
Job description
The Security Engineer in the Security Operations and Compliance team is responsible for safeguarding internal company data and client information, including consumer credit data and PII. This position involves managing information security policies, processes, and tools; overseeing vendor risk management; and ensuring compliance with internal policies, government regulations, and customer requirements. As part of the MeridianLink Security team, the Security Engineer will engage in problem-solving, automating processes, and enhancing the trustworthiness of our services. Responsibilities include maintaining the security of a serverless AWS platform using services such as WAF, IAM, KMS, GuardDuty, and CloudWatch, and focusing on developing, deploying, and executing controls and defenses to ensure the security, compliance, and risk mitigation of the firm’s technology infrastructure and data assets., * Collaborate with the MeridianLink Security team to improve automation and detection initiatives for resilient solutions.
- Build and enhance security tooling, automated checks, and CI/CD pipeline controls for internal tools and services.
- Analyze internal metrics and alerting workflows to reduce false positives and accurately focus engineering efforts.
- Develop repeatable processes and build playbooks to efficiently resolve incidents.
- Participate in a weekly on-call rotation as the primary incident responder/incident manager.
- Implement validated security strategies for AWS-based serverless infrastructure and authentication surfaces, including SAML single sign-on with online-banking identity providers.
Requirements
- Bachelor’s degree in computer science or related field and 2-4 years of related experience or equivalent work experience.
- Experience in Security Operations, security monitoring, Incident Response, and Threat Intelligence.
- 3+ years of work experience as a Security Engineer or related position.
- 2+ years of experience in cybersecurity technologies, focusing on areas such as vulnerability management, security monitoring, data logging, and IAM.
- 1+ years’ experience with AWS security services, such as WAF, GuardDuty, IAM, KMS, and CloudWatch.
- 2+ years of experience in tool integrations and REST APIs, as well as TypeScript or Python experience.
- Proficiency in networking technologies, network security, and network monitoring solutions.
- Knowledge of security systems, including authentication and single sign-on (SAML, OIDC/OAuth), web application firewalls, and intrusion detection and notification systems.
- Familiarity with infrastructure as code, such as Pulumi, SST, or Terraform, and public cloud platforms, such as AWS.
Benefits & conditions
3.53.5 out of 5 stars Remote $104,148 - $140,000 a year - Full-time, Pulled from the full job description
- Health insurance
- 401(k) matching
- Paid time off
- Vision insurance
- Dental insurance
- Life insurance
- Disability insurance, * $104,148 - $140,000
MeridianLink runs a comprehensive background check, credit check, and drug test as part of our offer process.
It is not typical for offers to be made at or near the top of the salary range. The actual salary will be determined based on experience and other job-related factors permitted by law including geographical location.
Meridianlink offers:
- Insurance coverage (medical, dental, vision, life, and disability)
- Flexible paid time off
- Paid holidays
- 401(k) plan with company match
- Remote work
All compensation and benefits are subject to the terms and conditions of the underlying plans or programs, as applicable and as may be amended, terminated, or superseded from time to time.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
Why Upskilling And Reskilling is Important For Developers
Best Countries for Software Engineers
Walking Into The Era of Supply Chain Risks