FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in Application Security and DevSecOps, with a strong focus on embedding security into product design and CI/CD pipelines. Proficient in securing cloud infrastructure across AWS, GCP, and Azure, while implementing security tools and controls.
Highest-signal resume keywords
Application SecurityDevSecOpsCloud Security (AWS, GCP, Azure)WAF and Site ProtectionScripting and Automation (Python, Go, Bash)
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Threat ModelingSecurity TestingAccess ControlData ExposureInjection RisksRate LimitingIncident HandlingPenetration TestingSecurity AutomationAI/LLM Security
Soft Skills
CollaborationOwnershipIndependent Work
Tools & Technologies
CI/CD PipelinesSASTCloud Security PlatformsEDRSecurity Tools
Certifications & Qualifications
CISSPGCP Security CertificationAWS Security Certification
Industry Keywords
SOC 2ISO 27001Generative AIML Product SecurityAI Gateways
Tech Stack
Tools & technologiesAWSAzureCloudGoogle Cloud PlatformPythonGo
About the role
Key responsibilities & impact- Lead threat modeling and secure design reviews from the design stage with Product and R&D
- Embed security into CI/CD pipelines, products, and technology environments through security testing, tooling, and automated controls
- Define and implement guardrails for access control, data exposure, injection risks, and rate limiting
- Build scripts and automation to improve security workflows and reduce manual work
- Secure cloud infrastructure across AWS, GCP, and Azure
- Own WAF and site protection, including custom rules, rate limiting, bot mitigation, and DDoS protection
- Lead detection, response, and incident handling across endpoint, cloud, and application layers
- Integrate and maintain security tools and controls, including SAST, cloud security platforms, WAF, and EDR
- Coordinate penetration testing and remediation
- Support SOC 2 and ISO 27001 requirements
Requirements
What you’ll need- 4+ years of experience in Application Security, DevSecOps, or Security Engineering, with ownership of production systems and hands-on Application Security experience
- Track record of embedding security into product design and working directly with developers on secure development and remediation
- Hands-on GCP or AWS security experience
- Practical AI/LLM security knowledge, including model access, data leakage, and prompt injection
- Hands-on WAF and site protection experience
- Scripting and automation skills in Python, Go, or Bash
- Ability to work independently, take ownership, and collaborate across Product, R&D, and infrastructure teams
- Fluent English
- Relevant certifications such as CISSP or GCP/AWS security certifications are nice to have, not required
- Experience securing generative AI or ML product features in production is nice to have
- Familiarity with AI gateways and platforms such as LiteLLM, OpenRouter, and Amazon Bedrock, and with LLM observability tools is nice to have
Benefits
Comp & perks- Remote TLV hybrid work arrangement
