Hybrid Security Engineer

Posted 2 months ago

Apply now

About the role

  • Security Engineer managing Givzey's security posture and IT infrastructure, ensuring compliance and security best practices. Involves managing AWS environments and employee devices in a hybrid role.

Responsibilities

  • Own and evolve our information security program, including policies, controls, and procedures aligned with SOC 2, ISO 27001, and other frameworks.
  • Conduct regular security risk assessments and audits; maintain continuous compliance readiness.
  • Manage vulnerability scanning, penetration testing, and incident response processes.
  • Oversee access control, identity management, and data protection across all systems.
  • Secure and manage AWS infrastructure.
  • Implement security automation for configuration management, secrets management, and incident alerts.
  • Collaborate with engineering teams to embed security into CI/CD pipelines and software lifecycle.
  • Manage company devices using MDM and endpoint protection tools.
  • Set up and maintain SSO, MFA, and access control across tools and services.
  • Build a strong security culture through training, awareness, and best practices.

Requirements

  • 5+ years of experience in IT, DevOps, or security engineering roles.
  • Hands-on experience with AWS, IAM, and cloud security tools.
  • Strong familiarity with SOC 2, ISO 27001, and related compliance frameworks.
  • Understanding of network security, identity & access management, and incident response.
  • Comfortable being both strategic and tactical — from writing policies to hardening infrastructure.
  • Bonus: experience with Pulumi.

Benefits

  • Flexible work arrangements
  • Professional development

Job title

Security Engineer

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job