Senior Security Engineer
Magnet Forensics
Role Responsibilities:
- Design, implement, and maintain application security processes and tooling such as SAST, SCA, containers, etc;
- Collaborate with software developers and system administrators to review and improve the security architecture of new and existing applications, systems, and code. Familiarity with threat modelling, design reviews are helpful;
- Conduct regular security assessments, vulnerability scans, and web application scanning. Work with engineering teams on notification, remediation, and patching strategies;
- Monitor security events, analyze logs, and generate reports to identify suspicious activities, potential threats, and security breaches;
- Establish and enforce security policies, standards, and guidelines in alignment with industry best practices, legal requirements, and internal security policies;
- Design, implement, and maintain security infrastructure components in AWS and Azure such as Security Hub, Inspector, Config, Defender for Cloud.
Qualifications:
- 5+ years as a Security Engineer or in a similar role, demonstrating hands-on experience in implementing, and improving a security program;
- Strong knowledge of security protocols, cryptography, and common security technologies;
- Ability to automate security tasks and integrate with various CI/CD tooling and processes;
- Experienced with one or more scripting languages and reading basic scripts (Python, C#, PowerShell, Bash, or etc.);
- Comfortable with writing pipelines for automation tasks (Jenkins, AzDO, GitLab, GitHub);
- Strong familiarity writing IaC (CDK, CloudFormation, Terraform) with experience in deploying cloud workloads securely in either AWS or Azure and monitoring them for threats;
- Excellent problem-solving and analytical skills to identify and address security vulnerabilities effectively;
- Strong communication and interpersonal skills to collaborate with cross-functional teams and articulate complex security concepts to non-technical stakeholders;
- Degree or diploma in relevant field or equivalent work experience.
Nice To Haves:
- Experience in designing and building controls around AI usage in an engineering environment (models/technologies such as Claude Code/Bedrock/OpenAI/RAG/Txt&Img Classifiers/Agents/etc.);
- Relevant certifications (e.g., CISSP, CISM, CompTIA Security+);
- Experience with compliance frameworks (SOC2, ISO 27001, NIST 800-53, Fedramp, etc.).
Compensation & Benefits:
- The Compensation Range is for the primary location for which the job is posted. Please note that the actual compensation may vary depending on location and job-related factors such as qualifications, experience, knowledge and skills. If you are applying for this role outside of the primary location and you are selected for an interview, the Talent Acquisition Partner can share more information with you. If the compensation structure for the role includes an incentive component (ie. most Sales roles) the range below represents total target compensation (TTC) (base salary + variable).
Magnet Forensics is proud to offer Benefits such as:
- Generous Time Off Policies
- Competitive Compensation
- Volunteer Opportunities
- Reward and Recognition Programs
- Employee Committees & Resource Groups
- Healthcare and Retirement Benefits
