Security Engineer, Cloud Security

Remote - US

Applications have closed

ASAPP

Elevate human performance using the power of AI. Achieve breakthrough results in customer experience by empowering your agents with integrated automation.

View company page

At ASAPP, we are on a mission to build transformative machine learning-powered products that push the boundaries of artificial intelligence and customer experience. We focus on solving complex, data-rich problems — the kind where there are huge systemic inefficiencies and where a real solution will have a significant economic impact. Our CX interaction platform uses machine learning across both voice and digital engagement channels to augment and automate human work, radically increasing productivity and improving the efficiency and effectiveness of customer experience teams.
ASAPP is seeking a full-time Security Engineer to help build and strengthen our infrastructure and incident detection and response capabilities. You will work with fellow security engineers, and partner with the rest of the engineering organization to ensure we’re securing our application and cloud infrastructure, using cloud native solutions. As a member of this team, you will be part of our growing security team, and have oversight and responsibility for different domains such as application security, infrastructure security, corporate security, and protection of sensitive data. You will actively participate in the buildout of our cloud security infrastructure and a variety of detection & response tools, leveraging ASAPP’s people and technology for maximum benefit, you will also have an active voice and participation in the design review of ASAPP systems in order to contribute to the health of our security culture.
As our operations keep growing we encourage applicants from all locations in US.

What you’ll do

  • Contribute on the definition and implementation of ASAPP’s Cloud Security toolset.
  • Contribute securely configuring our cloud environments .
  • Propose/Implement/Design and code automation processes where needed.
  • Co-own end-to-end our detection-as-a-code infrastructure.
  • Build and maintain infrastructure security CI/CD pipelines
  • Evolve our large scale log ingestion infrastructure.
  • Participate in the security incident detection and response process.
  • Interact and collaborate with different engineering teams.
  • Participate in on-call responsibilities along with your teammates

What you'll need

  • 3+ years of experience in cloud infrastructure on production environments.
  • Deep understanding of cloud-based ( AWS ) infrastructure and security technologies
  • Strong knowledge of UNIX based operating systems.
  • Familiar with container ecosystems ( docker, k8s, helm ), and security best practices.
  • Proficient in at least one high-level programming language ( Python preferred )
  • Experience writing Terraform code.
  • Experience designing and documenting cloud security solutions architecture
  • Strong interpersonal and verbal communication skills

What we’d like to see

  • Experience with CI/CD tools such as GitlabCI, CircleCI among others.
  • Deep understanding of Identity Access Management ( IAM ) concepts and good practices.
  • Familiar with encryption and secrets management technologies (Hashicorp Vault, AWS KMS, symmetric and asymmetric encryption).
  • Experience with EDR technologies like CarbonBlack, Crowdstrike Falcon, or Wazuh.
  • Experience implementing and running vulnerability management in cloud infrastructure.
  • Expertise in log aggregation and indexing at scale (Elasticsearch, Splunk).
  • Industry experience in owning and driving the resolution of complex security incidents.
  • Familiar with analyzing and researching IOCs, correlating events, identifying malicious activity, and taking appropriate containment steps.

Benefits

  • Competitive compensation with stock options
  • Comprehensive medical, vision, and dental insurance
  • 401k matching
  • Fitness and wellness stipend
  • Mobile phone reimbursement
  • Mental well-being benefits
  • Professional learning and development stipend
  • Parental leave, including adoptive and foster parents
  • 3 weeks paid time off (increases with tenure) and unlimited sick leave
ASAPP is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, disability, age, or veteran status. If you have a disability and need assistance with our employment application process, please email us at careers@asapp.com to obtain assistance.
Please note this role is open to candidates outside of New York as well. The information below is provided for those hired in New York only.If you are a Colorado applicant:- The estimated pay range for this role, based in NY, is $139,000 - 154,000.- For Sales positions: this role is eligible to earn commissions and eligible to participate in ASAPP's equity plan.- For Non-Sales positions: this role is eligible to participate in ASAPP's equity plan.The actual salary may be different depending upon non-discriminatory factors such as qualifications, experience, and other factors permitted by law. The range listed is just one component of ASAPP’s total compensation package; other rewards may include short- and long-term incentives, including the benefits listed above. #LI-FA1 #LI-Remote

Tags: Application security Artificial Intelligence Automation AWS CI/CD CircleCI Cloud Docker EDR Elasticsearch Encryption Helm IAM Machine Learning Python Splunk Terraform UNIX Vulnerability management

Perks/benefits: 401(k) matching Career development Competitive pay Equity Fitness / gym Health care Insurance Medical leave Parental leave Team events Unlimited paid time off Wellness

Regions: Remote/Anywhere North America
Country: United States
Job stats:  18  3  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.