FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in AWS security, including IAM, encryption, and logging, while automating compliance and evidence collection. Possesses strong communication skills for explaining security controls and risk management to stakeholders, with a focus on financial services regulations.
Highest-signal resume keywords
AWS SecurityPythonTerraformSOC 2 ExperienceRegulatory Compliance
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Security EngineeringVulnerability ManagementIncident ResponseThreat ModelingAutomation of Evidence CollectionRisk AssessmentSecurity Policy WritingSecurity Awareness TrainingData Handling ControlsContainer Scanning
Soft Skills
Clear WritingJudgmentInterpersonal SkillsAmbition
Tools & Technologies
Infrastructure-as-CodeLogging ToolsDetection ToolsSecurity Tools
Industry Keywords
GDPRCCPADORAEBA Outsourcing GuidelinesGLBASECFINRAFinancial ServicesB2B EnvironmentSSO/SCIM
Tech Stack
Tools & technologiesAWSPythonTerraform
About the role
Key responsibilities & impact- Own security in the AWS environment, including IAM, least privilege, network segmentation, encryption, logging, and detection
- Build security into the development pipeline through secrets management, dependency and container scanning, risky-change code reviews, and threat modeling
- Automate detection rules, alerting, compliance evidence, and infrastructure-as-code guardrails
- Run vulnerability management and incident response; write runbooks and conduct drills
- Define security rules for AI and LLM use, including vendor data handling, approved models, and prompt/output logging
- Assess prompt-injection and data-leakage risks and design practical controls
- Own SOC 2 control design, automated evidence collection, and auditor relationships
- Handle regulatory requirements for financial-institution customers, including GDPR, CCPA, DORA, EBA outsourcing guidelines, GLBA, and SEC/FINRA expectations
- Lead customer security reviews, due-diligence questionnaires, RFPs, contract security terms, and calls with bank security teams
- Run vendor reviews and third-party risk management
- Build security awareness training, phishing resilience, and device and identity hygiene
- Set security strategy, report risk to leadership, choose tooling, build a budget, and hire as the role grows
- Grow into a CISO role and report to the CTO
Requirements
What you’ll need- 5+ years in security engineering or security-heavy infrastructure work
- Depth in AWS security, including IAM, SCPs, logging, detection, and encryption
- Python and Terraform, or close equivalents
- Experience automating evidence collection
- SOC 2 experience, ideally owning a Type II audit
- Working knowledge of privacy legislation
- Exposure to financial-services customer scrutiny, or appetite to make it a specialty
- Working view on LLM security risks, or strong fundamentals and curiosity to build one
- Judgment about which risks matter
- Ability to explain controls to auditors and engineers
- Clear writing for async work, policies, and risk memos
- Ambition to grow into an executive role and people skills to support it
- Nice to have: fintech or another regulated B2B environment with large financial-institution customers
- Nice to have: DORA, EBA/ESMA outsourcing guidelines, or NYDFS 500
- Nice to have: experience securing SSO/SCIM, SFTP feeds, and APIs
- Nice to have: experience as the first security hire
- CET timezone or close
Benefits
Comp & perks- Fully remote, flexible hours
- Competitive pay
- Equity
- Learning budget
- Direct access to leadership and customer security teams at major financial institutions
- A blank slate with real ownership
- A committed path to CISO
