FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in security engineering with a focus on identity and access management, cloud security, and vulnerability management. Proficient in incident response, automation, and securing cloud-native environments, particularly in GCP.
Highest-signal resume keywords
Identity And Access ManagementCloud SecurityVulnerability ManagementIncident ResponseScripting And Automation
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Identity OperationsSSO/SAML/OIDCMFA And Conditional AccessDevice TrustLifecycle AutomationGCPAWSAzurePythonGo
Soft Skills
Strong Written CommunicationAbility To Operate With AmbiguityPrioritization
Tools & Technologies
CensysSlackChatOpsLLMsAgent Frameworks
Certifications & Qualifications
ISO 27XXXCMMCFedRAMP
Industry Keywords
Cloud-Native EnvironmentSecurity PostureVulnerability ManagementPost-Incident AnalysisRisk-Based Prioritization
Tech Stack
Tools & technologiesAWSAzureCloudGoogle Cloud PlatformPythonGo
About the role
Key responsibilities & impact- Own the identity program, cloud security posture, and vulnerability management end to end
- Drive down standing access and manual provisioning for joiner-mover-leaver changes and non-human identity management
- Harden and improve the GCP-first cloud-native environment, including organization policy, IAM least privilege, workload identity, network segmentation, secrets management, and posture monitoring
- Partner with SRE on infrastructure-as-code security guardrails
- Own vulnerability management, including asset coverage, risk-based prioritization, remediation partnership, SLAs, and actionable reporting
- Use Censys to monitor the company’s external attack surface
- Build detection coverage for identity, cloud, and SaaS
- Participate in security escalation rotations and lead or co-lead high-severity incidents
- Run blameless post-incident reviews, maintain runbooks, and conduct tabletop exercises
- Secure the company’s AI footprint, including agent identity, MCP servers, tool permissions, secrets, data flows, prompt-injection boundaries, and AI tooling
- Design and ship agentic security workflows for alert triage, evidence collection, access reviews, phishing response, and posture drift detection
- Build Slack-native ChatOps requests, approvals, self-service paths, and security automation
- Partner with SRE on cloud and infrastructure guardrails and contribute security expertise to their work
Requirements
What you’ll need- 5+ years in security engineering, with real depth in at least two of: identity and access management, cloud security, vulnerability management, detection and response
- Hands-on identity operations experience, including SSO/SAML/OIDC, MFA and conditional access, device trust, and lifecycle automation
- Experience securing cloud-first or cloud-native environments; GCP preferred, or strong AWS/Azure background with genuine interest in GCP
- Scripting and automation ability using Python, Go, or similar, sufficient to build tooling and API integrations
- Incident response experience as a primary responder or lead on high-severity incidents, including post-incident analysis
- Hands-on experience building with LLMs or agent frameworks
- Working familiarity with a prescriptive control framework such as ISO 27XXX, CMMC, or FedRAMP
- Ability to operate with ambiguity on a lean team and prioritize independently
- Strong written communication for an async, Slack-heavy environment
Benefits
Comp & perks- Identity verification through CLEAR for candidates who receive an offer of employment
