The Security Apps & Operations Engineer will secure applications and cloud infrastructure while managing SIEM/SOC tooling and DevSecOps practices. They will collaborate cross-functionally to identify risks, respond to security threats, and maintain compliance standards.
Role Summary
We are looking for a motivated Security Apps & Operations Engineer to join our security team. In this role you will be responsible for securing our applications and cloud infrastructure, operating and tuning our SIEM/SOC tooling, and embedding security practices into the software development lifecycle (DevSecOps). You will work cross-functionally with engineering, IT, and compliance teams to identify risks, respond to threats, and continuously improve our security posture.Thisis arotationalshiftrolewithoverlapwithUShours.
Key Responsibilities
Application Security & DevSecOps
Integrate security tooling (SAST, DAST, SCA) into CI/CD pipelines and enforce security gates.
Conduct vulnerability assessments and coordinate remediation with development teams.
Perform threat modeling and security code reviews for new features and major changes.
Maintain and improve application security standards, policies, and secure coding guidelines.
Track and report on vulnerability metrics, SLA adherence, and risk exposure.
Cloud Security (AWS / Azure / GCP)
Monitor and enforce cloud security configurations using tools such as AWS Security Hub, Azure Defender, or GCP Security Command Center.
Manage Identity and Access Management (IAM) policies, least-privilege principles, and privilege access controls across cloud environments.
Perform cloud infrastructure security reviews and ensure compliance with CIS Benchmarks and organizational standards.
Respond to cloud security incidents and misconfigurations, driving root-cause analysis and remediation.
SIEM & SOC Operations
Operate, tune, and maintain SIEM platforms (e.g., Splunk, Microsoft Sentinel, or equivalent).
Develop and maintain detection rules, correlation queries, and alerting logic to reduce noise and improve fidelity.
Triage and investigate security alerts; escalate confirmed incidents following the IR playbook.
Create dashboards and reports to surface key security metrics for stakeholders.
Participate in on-call rotation for security incident response.
General Operations
Support audit activities (SOC 2, ISO 27001, or similar) by providing evidence and remediating findings.
Document runbooks, playbooks, and standard operating procedures.
Stay current with the threat landscape, emerging CVEs, and security tooling developments.
“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”