> Markdown version of [/jobs/ext/3556204-security-engineer-platform-shared-services](https://www.wearedevelopers.com/jobs/ext/3556204-security-engineer-platform-shared-services). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - Platform & Shared Services - **Company:** Anaconda, Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $135,000.0 - $205,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Bash Shell, Static Program Analysis, Code Review, Communications Protocols, Cyber Security, Continuous Integration, DevOps, Dynamic Program Analysis, Identity and Access Management, Python (Programming Language), Key Management, Open Source Technology, Public Key Infrastructure, Zero Trust Network Access, Reverse Engineering, Software Engineering, EndPointSecurity, Scripting, Multi-Cloud, Firewalls (Computer Science), Containerization, Kubernetes, Terraform, Docker - **Published:** October 2, 2026 - **Apply:** https://startup.jobs/sr-security-engineer-platform-shared-services-current-10-10264407 ## About the Role * 6+ years hands-on experience in systems administration, DevOps, network engineering, or software development prior to or alongside security work * Proficiency with cloud platforms such as AWS, Azure, or GCP * Experience managing infrastructure as code using Terraform * Experience writing scripts and automation in Python, Go, or Bash * Working knowledge of IAM, PKI, cryptography basics, network protocol analysis, and threat modeling frameworks * Experience working in containerized environments with Docker or Kubernetes * Ability to communicate technical security risks to non-security audiences and design workflows that respect developer experience What Will Make You Stand Out: * Offensive security experience through penetration testing, red teaming, bug bounty programs, or reverse engineering * Experience with advanced container security tools such as Falco or eBPF-based monitoring * Implemented zero trust architecture and network isolation in production environments * Production engineering, SRE, or software engineering background with experience writing custom static or dynamic analysis rules, or managing SBOM and supply chain security * Specialized expertise in HSMs, hardware tokens (YubiKeys, FIDO2), applied cryptography, or identity provider integrations * Contributed to security culture through training programs, threat modeling workshops, CTF events, conference talks, or open-source security projects * Thrived in fast-paced startup environments balancing speed with pragmatic risk managementExperience working in a fast-paced startup environment * Experience working in an open-source, AI, or data science-oriented company ## Description Anaconda's Security team protects and enables our platform, serving 50 million users and supporting our transition into an AI-native development platform. As a Security Engineer, you'll build secure-by-default systems through hands-on engineering-designing controls that reduce systemic risk while helping engineering teams ship faster. Your work spans firewalls, IAM, endpoint detection, secrets management, and CI/CD pipeline security across hybrid and multi-cloud environments. What You'll Do: * Design and implement security controls across firewalls, IAM, endpoint detection and response, and secrets management in hybrid and multi-cloud environments * Build security automation and tooling using Python, Go, or Bash, managing infrastructure as code with Terraform to scale security operations * Conduct vulnerability and threat management by triaging scanner output, investigating root causes, and driving risk reduction across the platform * Perform code reviews and architecture assessments to identify security risks early in the development lifecycle * Embed security into CI/CD pipelines through static analysis, dynamic testing, and dependency scanning * Respond to security incidents as an escalation point, perform forensic analysis, and maintain tested runbooks for critical risks and zero-day events * Partner with Legal, IT, Platform Engineering, and Developer Experience teams to balance security rigor with developer velocity * Develop secure-by-default templates, libraries, and tooling that add velocity rather than friction Your Impact Will Be Measured By: * Design and implement security controls across firewalls, IAM, endpoint detection and response, and secrets management in hybrid and multi-cloud environments * Risk reduction velocity measured by mean time to remediate high-severity vulnerabilities and percentage of defects caught in development versus production * Operational automation measured by reduction in false positive rates and percentage of security baselines managed through infrastructure as code * Cross-functional partnership measured by adoption of secure-by-default templates and feedback from engineering teams * Incident preparedness measured by runbook coverage and response effectiveness during critical risks or zero-day events ## Related Videos - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Shifting Stress to Progress— Understanding DevOps to do DevOps Better](https://www.wearedevelopers.com/videos/268-shifting-stress-to-progress-understanding-devops-to-do-devops-better) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)