FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in security engineering with a focus on AI Security, Detection & Response, and Product Security. Proficient in implementing security practices across the software development lifecycle and managing AWS security posture.
Highest-signal resume keywords
Security EngineeringAWS Security ExpertiseIncident Response LeadershipAI Security Tooling DevelopmentVulnerability Management
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
PythonGoTypescriptThreat ModelingSASTDASTEDRDLPVulnerability ManagementContainer Security
Soft Skills
MentoringCollaborationTechnical Leadership
Tools & Technologies
DataDogELKKubernetesTerraformHashiCorp VaultGitHub Advanced SecurityCloudflareBuildkiteWizSemgrep
Certifications & Qualifications
CISSPGIACOSCP
Industry Keywords
Security as CodeRegulated SaaSHealthcareFintechHIPAAHITRUSTMITRE ATT&CK
Tech Stack
Tools & technologiesAWSCloudKubernetesLinuxPythonSDLCTerraformTypeScriptVaultGo
About the role
Key responsibilities & impact- Own strategy and hands-on engineering for Detection and Response platforms; identify, onboard, and normalize log sources across cloud, containers, endpoints, and SaaS
- Build and maintain SOAR tooling, including AI agents for alert triage and investigation enrichment
- Lead incident response for complex threats, develop runbooks, drive post-incident improvements, and design/run BCP/DR tabletop exercises
- Embed security into the SDLC through threat modeling, secure design reviews, SAST/DAST tooling, AI code review, and automated security gates in CI/CD pipelines and AI processes
- Own host- and application-level vulnerability management and drive remediation
- Champion security-as-code practices across engineering teams
- Build AI-powered security tooling for threat detection, anomaly identification, automated triage/remediation, and post-mortem summarization
- Define and implement security models for LLM-based systems and internal AI tooling
- Architect harness patterns to constrain LLM behavior and protect against prompt injection, indirect RAG injection, and data exfiltration
- Evaluate and govern AI tool adoption from a security and data-risk perspective
- Own AWS security posture and enforce baselines across Linux/Windows, network devices, and enterprise SaaS
- Partner with IT to protect corporate identity, endpoints, and enterprise SaaS, including automated access reviews, offboarding checks, and vendor onboarding
- Engineer, configure, and operate EDR, DLP, and endpoint security programs
- Provide IAM architecture expertise across identity and access systems
- Mentor junior and mid-level security engineers through design reviews, pairing, and direct feedback
- Define and drive security engineering standards across the organization
- Collaborate with IT operations, platform, and software teams to translate threat intelligence into detection and hardening priorities
- Report directly to the VP of InfoSec and IT and partner with software, platform, infrastructure, data, and compliance teams
Requirements
What you’ll need- Software engineering or strong scripting background (Python, Go, Typescript, or shell): you write production-quality code, keep it in version control, and would rather ship a tool than file a ticket
- Depth in one or more specializations: AI Security, Product Security, Detection & Response
- 8+ years in security engineering with demonstrated growth into technical leadership
- Breadth and hands-on SIEM experience (DataDog, ELK, or equivalent)
- Breadth and hands-on AWS security and IAM expertise
- Breadth and hands-on Product security fundamentals: threat modeling, SAST/DAST, secure SDLC
- Experience building with AI/LLM APIs and practical knowledge of LLM security risks
- Breadth and hands-on experience with EDR, DLP, and vulnerability management
- Breadth and hands-on experience with containerized workloads and Kubernetes security
- Proven track record of mentoring engineers and raising team capability
- Startup or scale-up experience in regulated SaaS (healthcare, fintech, or similar) (nice to have)
- CISSP, GIAC, or OSCP certification (nice to have)
- MITRE ATT&CK knowledge applied to detection engineering (nice to have)
- "Security as code" experience (OPA, Checkov, tfsec, or similar) (nice to have)
- Data science or anomaly detection skills applied to security telemetry (nice to have)
- Healthcare industry background (HIPAA, HITRUST) (nice to have)
- Experience with Kubernetes/EKS, Terraform/Terragrunt, Atlantis, Cloudflare, Buildkite, Wiz, Semgrep, EscapeTech, GitHub Advanced Security, Datadog, HashiCorp Vault, N8N, Snowflake, and Linear (nice to have)
Benefits
Comp & perks- Curative Health Plan (100% employer-covered medical premiums for you and 50% coverage for dependents on the base plan.)
- $0 copays and $0 deductibles (with completion of our Baseline Visit)
- Preventive and primary care built in
- Mental health support
- One-on-one care navigation
- Chronic condition programs (diabetes, weight, hypertension)
- Maternity and family planning support
- 24/7/365 Curative Telehealth
- Pharmacy benefits
- Comprehensive dental and vision coverage
- Employer-provided life and disability coverage with additional supplemental options
- Flexible spending accounts
- Generous PTO policy plus 11 paid annual company holidays
- 401K for full-time employees
- Generous Up to 8–12 weeks paid parental leave, based on role eligibility.
