> Markdown version of [/jobs/ext/3556203-security-engineer-platform-shared-services](https://www.wearedevelopers.com/jobs/ext/3556203-security-engineer-platform-shared-services). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - Platform & Shared Services - **Company:** Anaconda, Inc. - **Location:** United States (Remote available) - **Experience:** Experienced - **Salary:** $120,000.0 - $185,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Bash Shell, Code Review, Communications Protocols, DevOps, Identity and Access Management, Python (Programming Language), Key Management, Open Source Technology, Public Key Infrastructure, Azure Active Directory, Zero Trust Network Access, Reverse Engineering, Software Engineering, Scripting, Okta, Multi-Cloud, Firewalls (Computer Science), Containerization, Kubernetes, Terraform, Docker, Static Application Security Testing, Golang, Dynamic Application Security Testing - **Published:** October 2, 2026 - **Apply:** https://startup.jobs/security-engineer-platform-shared-services-current-10-10264406 ## About the Role * 3+ years of hands-on experience in systems administration, DevOps, network engineering, or software development prior to or alongside security work * Proficiency with cloud platforms including AWS, Azure, or GCP, and experience managing infrastructure as code using Terraform * Experience writing scripts and automation in Python, Go, or Bash to integrate tools and reduce manual security tasks * Working knowledge of core security disciplines including IAM, PKI, cryptography basics, network protocol analysis, and threat modeling frameworks * Demonstrated ability to communicate technical security risks to non-security audiences and design workflows that respect developer experience * Experience working in containerized environments with Docker or Kubernetes * You embody our values of Clarity, Care and Candor * You care deeply about fostering an environment where people of all backgrounds and experiences can flourish What Will Make You Stand Out: * You have offensive security experience through penetration testing, red teaming, bug bounty programs, or reverse engineering, and can think like an attacker to build better defenses * You've worked with advanced container security tools such as Falco or eBPF, or implemented zero trust architecture and network isolation in production environments * You bring a production engineering, SRE, or software engineering background with experience writing custom SAST or DAST rules, or managing SBOM and supply chain security * You have specialized expertise in HSMs, hardware tokens like YubiKeys or FIDO2, applied cryptography, or identity provider integrations with platforms like Okta or Azure AD * You've contributed to security culture through training programs, threat modeling workshops, CTF events, conference talks, or open-source security projects * You've thrived in fast-paced startup environments where you balanced speed with thoughtful risk management * Experience working in a fast-paced startup environment * Experience working in an open-source, AI, or data science-oriented company ## Description We're growing our Security team to protect and enable Anaconda's platform as we scale from 50 million users toward the next phase of growth. You'll design and implement security controls, automation, and guardrails that reduce systemic risk while helping engineering teams ship faster. This role is about building secure-by-default systems through hands-on engineering, not enforcing checklists from the sidelines. What You'll Do: * Design and implement security controls across firewalls, IAM, endpoint detection and response, and secrets management in hybrid and multi-cloud environments * Build security automation and tooling using Python, Go, and Bash, managing infrastructure as code with Terraform to scale security baselines and reduce manual toil * Conduct vulnerability and threat management by triaging scanner output, investigating root causes, and driving risk reduction with clear operational guidance * Perform code reviews and architecture assessments to identify security risks early and collaborate with engineering teams to design secure solutions * Embed security into CI/CD pipelines through SAST, DAST, and dependency scanning, creating developer-friendly workflows that catch issues before production * Respond to security incidents as an escalation point, performing forensic analysis and maintaining tested runbooks for calm, effective containment during critical events * Partner with Legal, IT, Platform Engineering, and Developer Experience teams to translate security risks into business impacts and deliver controls that add velocity * Develop secure-by-default templates, libraries, and tooling that make it easier for developers to do the right thing without friction Your Impact Will Be Measured Through: * Risk reduction velocity measured by mean time to remediate high-severity vulnerabilities and percentage of defects caught in development versus production * Operational automation measured by reduction in false positive rates and percentage of security baselines managed through infrastructure as code * Cross-functional partnership measured by adoption of secure-by-default templates and feedback from engineering teams on whether security adds or removes velocity * Incident preparedness measured by runbook coverage and response effectiveness during critical risks or zero-day events ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [Shifting Stress to Progress— Understanding DevOps to do DevOps Better](https://www.wearedevelopers.com/videos/268-shifting-stress-to-progress-understanding-devops-to-do-devops-better) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Scoring 2000 Products per Request: Performance Pitfalls in Golang](https://www.wearedevelopers.com/videos/2073-scoring-2000-products-per-request-performance-pitfalls-in-golang) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)