Security Engineer
United States - Remote
Full Time Mid-level / Intermediate USD 150K - 250K
Vouched
Discover Vouched's industry-leading digital identity verification solutions. Streamline your customer experience, integrate seamlessly, and unlock access to critical services. Get started for free.Security & Compliance Engineer for Cloud Product and Internal Systems
At Vouched, we are building an identity verification platform for developers. Companies use
Vouched to verify identity while onboarding and authenticating users. We make identity
verification easy with a combination of machine learning and data checks. Our customers
leverage our APIs, integrations, and no-code solution to onboard customers to their systems. At
Vouched, your work provides people with frictionless and fair access to healthcare, financial
services, and work opportunities.
What We Do
● We automate identity verification at scale and are growing fast
● We service early-stage startups, unicorns, and large enterprises, with a focus on the
developer experience. Check out our docs here to learn how our customers use our
platform
● We run on a modern cloud infrastructure powered by automated integration and unit
testing, provisioning, deployments, monitoring, and notifications
● We prioritize our work using light weight methodologies and collaborative
communications
What You'll Do
We need someone who can drive security & compliance engineering across the organization.
This includes ensuring our Google Cloud Platform (GCP) infrastructure, applications and IT
processes are secure and compliant with ISO 27001 and SOC 2 Type II and are following best
security practices.
We already have a great foundation - we’re compliant with ISO 27001 and SOC 2 Type II and
we have Vanta, Rippling in place and integrated with our systems to ensure policies and
controls are implemented. We need someone to manage this and continue to automate and
implement it as we scale our product infrastructure.
● Work closely with our engineering team ensures we’re building and operating the
product in a secure and compliant way.
● Perform and automate security and compliance processes (managed via Vanta).
● Facilitate annual audits with proof that our controls are in place for audits both for
internal process reviews and for auditors.
● Help our customer-support team answer questions related to security and privacy
questionnaires.
● Help our engineering team automate everything from commit to production such that
things are tested, reliable, and secure and moving fast.
● Ensure that our cloud applications from Google Workspaces/GSuite to Salesforce to
Slack to Snowflake are all integrated with our SSO.
● Handle provisioning or deprovisioning employees or contractors through our systems (all
managed via Rippling).
● Assist engineering debugging and troubleshooting issues in our production
infrastructure.
● Participate in infrastructure on-call rotations
Requirements
● Experience automating ISO 27001 and SOC 2 Type 2 (or similar) technical requirements
● Experience managing the lifecycle of compliance processes
● Knowledge of scripting languages (e.g., Python, Bash) and infrastructure as code (IaC)
principles
● Expertise in cloud infrastructure (e.g., AWS, Azure, GCP) and automation tools (e.g.,
Terraform, Ansible)
● Experience with deploying and supporting containerize applications (e.g., Kubernetes,
ECS)
● CI/CD processes on production cloud infrastructure, i.e. AWS or GCP
● Understanding of asynchronous and distributed microservices architectures
Benefits
Benefits
- Flexible paid time off
- Healthcare
- Vision
- Equity compensation
- Flexible remote, work-from-home arrangements
- Parental leave
- $150,000 to $250,000 OTE
This is a remote role - however, you must be based in the US (US work authorization required)
Tags: Ansible APIs Audits Automation AWS Azure Bash CI/CD Cloud Compliance GCP ISO 27001 Kubernetes Machine Learning Microservices Monitoring Privacy Python Scripting Snowflake SOC SOC 2 SSO Terraform
Perks/benefits: Career development Equity Flex vacation Parental leave
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Specialist jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Cyber Security Engineer jobs
- Open Principal Security Engineer jobs
- Open Manager Pentest H/F jobs
- Open Cyber Security Architect jobs
- Open Product Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open Staff Security Engineer jobs
- Open Cybersecurity Analyst jobs
- Open Senior Information Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Chief Information Security Officer jobs
- Open Cybersecurity Consultant jobs
- Open IT Security Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open Senior Penetration Tester jobs
- Open Security Specialist jobs
- Open Security Researcher jobs
- Open Cybersecurity Specialist jobs
- Open Senior Security Architect jobs
- Open IT Security Engineer jobs
- Open Security Operations Analyst jobs
- Open Windows-related jobs
- Open CISM-related jobs
- Open Network security-related jobs
- Open ISO 27001-related jobs
- Open Pentesting-related jobs
- Open Application security-related jobs
- Open Agile-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open SaaS-related jobs
- Open Analytics-related jobs
- Open Threat intelligence-related jobs
- Open Security assessment-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open Malware-related jobs
- Open IDS-related jobs
- Open Security Clearance-related jobs
- Open Forensics-related jobs
- Open DevOps-related jobs
- Open CEH-related jobs
- Open EDR-related jobs
- Open Kubernetes-related jobs