Senior Information Security Engineer in United States at Jobgether
Explore Related Opportunities
Job Description
This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Senior Information Security Engineer in United States.
This role sits at the center of a fast-scaling, remote-first technology environment where security is deeply embedded into product and platform development. You will help design, evaluate, and strengthen the security posture across cloud, application, and infrastructure layers in a highly collaborative engineering culture. Acting as both a technical authority and hands-on contributor, you will reduce organizational risk while enabling developers to ship secure and reliable systems at speed. The environment values automation, transparency, and continuous improvement, with a strong emphasis on embedding security early in the development lifecycle. You will participate in architecture reviews, threat modeling, and security engineering initiatives that span cloud platforms, enterprise systems, and developer tooling. This is a high-impact role where your expertise directly shapes security standards, incident prevention, and overall system resilience across a global engineering organization.
In this role, you will lead and contribute to enterprise-wide security engineering initiatives, ensuring systems are designed, built, and maintained with strong security principles across cloud, application, and infrastructure environments. You will work closely with engineering teams to embed security into development workflows and reduce risk across the organization.
- Lead security architecture reviews across applications, cloud platforms, and distributed systems
- Design and implement platform-level security solutions that improve resilience and reduce risk
- Conduct secure code reviews and identify vulnerabilities across the application stack
- Define and deliver risk assessments, remediation guidance, and secure development standards
- Support automation of security processes and integration of security tooling into engineering workflows
- Contribute to compliance efforts including SOC2, ISO 27001/27701, and related audit frameworks
- Collaborate with developers to improve secure coding practices and security awareness
- Promote a strong security culture through documentation, guidance, and education initiatives
This role requires deep expertise in application and infrastructure security, combined with strong communication skills and the ability to partner effectively with engineering teams. You should be proactive, detail-oriented, and passionate about building secure-by-design systems.
- Extensive experience in information security engineering, application security, or cloud security roles
- Strong knowledge of secure architecture design, threat modeling, and secure coding practices
- Deep understanding of the OWASP Top 10 and common web application vulnerabilities
- Experience with SIEM tools such as Splunk or similar platforms
- Familiarity with vulnerability management tools such as Nexpose or equivalent solutions
- Experience securing cloud environments (Azure, GCP) and hybrid infrastructure systems
- Knowledge of containers, networking, DNS, and modern SaaS/PaaS architectures
- Strong communication skills with the ability to guide developers and influence security decisions
- Experience supporting compliance and audit frameworks (SOC2, ISO 27001/27701)
This position offers a competitive compensation package along with comprehensive benefits designed to support health, well-being, and professional growth.
- Competitive base salary
- Generous paid vacation and unlimited sick days
- Fully paid parental leave (up to 16 weeks) and family care support
- Comprehensive health, dental, and vision insurance (country-dependent)
- Life insurance coverage provided by the employer
- Home internet stipend for remote employees
- Professional development and learning budget
- Home office setup allowance and productivity tools access
- Access to premium learning and wellness platforms (e.g., LinkedIn Learning, Calm, and others)