Cloud and Enterprise Security Engineer
About Us
We are an innovative startup at the forefront of applied artificial intelligence. Our mission is to build "synthetic engineers"—highly specialized AI agents designed to tackle critical challenges within the manufacturing sector. By creating a new generation of digital engineering expertise, we are empowering companies to enhance productivity, solve complex problems, and drive future innovation. We are looking for passionate individuals to join us in building the future of manufacturing.
Role Description
As our Cloud and Enterprise Security Engineer, you will be the guardian of our most critical assets: our platform, our data, and our customers' trust. You will build our security program from the ground up, establishing a robust posture that protects against threats while enabling rapid innovation. You will be responsible for securing our multi-tenant cloud environment and corporate systems, ensuring we meet the rigorous security expectations of our enterprise clients. This is a foundational role for a hands-on security expert passionate about building a secure-by-design culture in a fast-growing startup.
Key Responsibilities
- Architect and Implement Security: Design, build, and maintain a comprehensive security architecture for our cloud infrastructure (AWS, GCP, or Azure) and enterprise systems.
- Secure the Platform: Implement and manage security controls across our multi-tenant SaaS platform, focusing on data isolation, threat modeling, encryption, and secure configuration.
- Threat and Vulnerability Management: Conduct regular vulnerability assessments, penetration testing, and code analysis. Triage, and drive the remediation of identified security risks.
- Lead Incident Response: Develop and lead the company's incident response plan, including detection, containment, eradication, and recovery, as well as post-incident analysis.
- Drive Compliance: Lead efforts to achieve and maintain compliance with industry-standard security frameworks such as SOC 2 and ISO 27001.
- Champion DevSecOps: Work closely with engineering teams to integrate security best practices and tooling into the software development lifecycle (SDLC) and CI/CD pipelines.
- Security Operations: Deploy and manage security tools for monitoring, intrusion detection, and endpoint protection to ensure continuous visibility into our security posture.
Required Qualifications
- Bachelor’s degree in Cybersecurity, Computer Science, or a related field, or equivalent practical experience.
- 5+ years of experience in a hands-on security engineering role.
- Deep technical knowledge of securing cloud environments (AWS, GCP, or Azure).
- Proven experience with security frameworks and achieving compliance (e.g., SOC 2, ISO 27001).
- Hands-on experience with vulnerability scanners, penetration testing tools, and security information and event management (SIEM) systems.
- Strong understanding of network security, identity and access management (IAM), cryptography, and application security (AppSec).
- Experience developing and executing security incident response plans.
Preferred Qualifications
- Professional security certifications such as CISSP, CISM, or cloud-specific security credentials (e.g., AWS Certified Security - Specialty).
- Experience building and securing multi-tenant B2B SaaS applications.
- Hands-on experience implementing security in a DevSecOps environment.
- Familiarity with Infrastructure as Code (e.g., Terraform) and container security (Docker, Kubernetes).
- Ability to communicate complex security topics to both technical and non-technical audiences.
What We Offer
- A competitive salary and equity package.
- A pivotal role in a fast-growing startup with a clear and impactful mission.
- The opportunity to work on cutting-edge AI technology and solve real-world problems in a critical industry.
- A collaborative, innovative, and supportive team environment.
- Flexible work arrangements.
If you are a security leader who thrives on the challenge of protecting innovative technology and building trust with enterprise customers, we would love to hear from you.
