Security Remediation Engineer

 Posted a day ago
     
2-5 years experience
Apply Now

Please mention DailyRemote when applying

?/100
Resume Match Score

Match your resume skills with our AI powered skill match!

Get professional review

AI Summary

The role involves triaging and remediating security findings across infrastructure and applications to reduce risk at scale. You will automate repetitive security tasks and validate fixes within development and production environments.

Type: Contract, per-project.
Location: Remote - within LATAM time zones (GMT-3 to GMT-5) - Remote with meetings across U.S. time zones
Availability: Contractor (40 hours per week)

About the Role

We are looking for a Cloud Security Remediation Engineer to work through a substantial backlog of security findings across our infrastructure and application fleet, covering dependency vulnerabilities, operating system currency, configuration issues, and endpoint coverage.

This role focuses on practical security remediation, vulnerability triage, infrastructure automation, and reducing security risk at scale while maintaining a high standard of care for production environments.

What You'll Do

  • Triage security findings at scale by grouping them by root cause, assessing their actual exploitability in context, and identifying fixes that can address multiple findings efficiently.

  • Perform security remediation activities, including patching, end-of-life operating system migrations, configuration fixes, and closing endpoint coverage gaps.

  • Validate security remediations in development and test environments before deploying changes to production.

  • Automate repetitive remediation and security tasks using infrastructure and scripting tools.

  • Work with AWS security services to investigate and remediate security findings.

  • Document what was remediated, what was accepted as a risk or false positive, and the reasoning behind each decision.

Requirements

  • 2–5 years of experience in Cloud Security, Security Engineering, DevSecOps, Infrastructure, Platform Engineering, or a similar role.

  • Hands-on experience with AWS, particularly IAM and security services such as:

    • Security Hub.

    • GuardDuty.

    • Inspector.

    • Or credible equivalents from another cloud provider.

  • Practical security remediation experience in production environments, including closing security findings rather than only scanning and reporting them.

  • Experience with Terraform, including making changes in an existing codebase through pull requests.

  • Experience with Python for automation and tooling.

  • Linux fundamentals, including patching and operating system upgrade paths.

  • Clear written English.

Preferred Qualifications

  • Experience with CVE triage, including assessing whether vulnerabilities are genuinely exploitable and documenting the evidence supporting that assessment.

  • Experience with dependency vulnerability management at scale, including Dependabot or similar tools.

  • Experience with container image scanning and maintaining secure, up-to-date base images.

  • Experience with compliance and audit initiatives.

  • Experience automating security remediation workflows across large infrastructure environments.

Similar Jobs

See all Remote Software Development jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Software Development

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified