Hybrid Security Engineer – Contract

Posted 11 hours ago

Apply now

About the role

  • Security Engineer supporting cybersecurity initiatives at ButcherBox. Collaborating with engineering leadership and cross-functional teams to enhance security operations in cloud infrastructure.

Responsibilities

  • Remediation of Security Vulnerabilities - Investigate and resolve issues such as missing access controls, outdated libraries, weak session management, and exposed configuration files—based on findings from internal audits and external penetration tests
  • Security Alert Management - Monitor and resolve Critical and High alerts from Azure Security Advisor and Microsoft Cloud Defender, ensuring timely threat mitigation.
  • Penetration Test Remediation - Drive resolution of findings from Cobalt penetration tests, coordinating with stakeholders to close security gaps.
  • Policy Development & Implementation - Collaborate on updating and enforcing security policies, such as VPN usage, password standards, and session timeout configurations.
  • Secure Architecture Consultation - Investigate and recommend secure solutions for data access, including support for POCs, test automation, and other ad hoc requests.
  • Security Awareness & Advocacy - Promote security best practices across the organization through documentation, training, and internal communications.
  • AI Security - Understand and help improve AI-related security within our Azure subscription, including data protection and model integrity.

Requirements

  • Strong understanding of security frameworks and compliance standards.
  • Excellent communication and collaboration skills.
  • Azure security expert
  • Self-starter with minimal supervision: able to prioritize tasks, manage time effectively, and drive initiatives to completion without constant oversight.
  • Proven cross-team collaboration: willingness and ability to work across multiple teams (development, operations, risk, compliance, and product) to achieve security goals.
  • Prior experience with security testing: familiarity with interpreting Pentest findings, working with remediation owners, and validating remediation effectiveness.
  • Prior experience using the Cobalt security platform and website
  • Prior experience securing Azure Kubernetes
  • Prior experience securing API Endpoints
  • Prior experience securing Azure storage accounts and key vaults
  • Expert level knowledge of Microsoft Cloud Defender
  • Experience in Jira Service Management

Benefits

  • Equal opportunity employer
  • Variety of products offered
  • Reasonable accommodations during hiring process

Job title

Security Engineer – Contract

Job type

Experience level

Mid levelSenior

Salary

$65 - $100 per year

Degree requirement

No Education Requirement

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job