> Markdown version of [/jobs/ext/2733593-information-security-engineer](https://www.wearedevelopers.com/jobs/ext/2733593-information-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Engineer - **Company:** Red Ventures - **Location:** Charlotte, NC, United States (Remote available) - **Experience:** Experienced - **Salary:** $100,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Continuous Integration, Identity and Access Management, OAuth, PCI Data Security Standards, Security Information and Event Management, Software Vulnerability Management, Delivery Pipeline, Mitre Att&ck, Cyber Threat Analysis, Vulnerability Analysis - **Published:** September 5, 2026 - **Apply:** https://startup.jobs/information-security-engineer-corporate-technology-redventures-9891060 ## About the Role This role requires a hybrid schedule and will be based in our South Charlotte, NC Headquarters (Tuesday through Thursday) and work fully remotely on Mondays and Fridays each week. Willing to consider candidates located outside of Charlotte, NC with the ability to relocate to the area., * 4+ years of hands-on experience in one or more of: security monitoring, incident response, vulnerability management, or cloud security * Experience in Incident response: end-to-end ownership from triage through containment, eradication, and post-incident review * Experience with Cloud security in AWS: applying security controls, monitoring, and response techniques across AWS environments at scale * Experience with Security tooling: hands-on experience with SIEM, endpoint protection, and vulnerability scanning platforms in a cloud environment * Communication: strong written and verbal skills with the ability to translate technical findings for non-technical stakeholders Nice to Have: * Threat intelligence and hunting: disciplined habit of staying current on attacker TTPs and applying that knowledge through structured, hypothesis-driven hunts across cloud, SaaS, and enterprise environments * Identity and access management: policy review, least-privilege enforcement, and anomalous access detection * SaaS security posture management: monitoring and tuning SaaS application security controls including impossible travel, OAuth abuse, and integration risks * Container and CI/CD pipeline security: understanding of Kubernetes security, image scanning, and securing software delivery pipelines * Compliance frameworks: working knowledge of PCI DSS, SOC 2, and ISO 27001 and how they map to technical security controls * Familiarity with security frameworks (NIST CSF, MITRE ATT&CK, CIS 18) * Experience scripting or automating security workflows, including comfort leveraging AI tools to accelerate detection and response * Relevant certifications such as AWS Security Specialty or GIAC equivalents ## Description As a Information Security Engineer, you will identify and reduce risk across our cloud and SaaS environments by surfacing vulnerabilities, tuning detections, and driving remediation with the engineering teams who own the systems. You will own the full incident response lifecycle from alert triage through containment, eradication, and post-incident review. You will hunt for threats before they surface in alerts and partner directly with Infrastructure and Engineering teams across our business units. This is a hands-on, high-ownership role for someone who is energized by complex cloud environments, moves fast under pressure, and takes pride in building repeatable, scalable security operations. If you are a sharp, curious security practitioner who wants real ownership and the chance to shape how security works across a large multi-brand organization, this is that role. What You'll Do: * Identify, assess, and drive reduction of security risk across cloud, SaaS, and enterprise environments * Partner with engineering and development teams to remediate vulnerabilities across code, cloud, and endpoint environments * Lead end-to-end incident response across cloud and SaaS environments * Own proactive threat hunting on a defined cadence * Maintain and tune detection rules in the SIEM * Contribute to security tooling evaluation and roadmap * Produce post-incident reports and present findings to stakeholders * Participate in an on-call rotation shared across the team on a rotating basis ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)