{"version":"0.1","company":{"name":"YubHub","url":"https://yubhub.co","jobsUrl":"https://yubhub.co/jobs/title/security-engineer"},"x-facet":{"type":"title","slug":"security-engineer","display":"Security Engineer","count":10},"x-feed-size-limit":100,"x-feed-sort":"enriched_at desc","x-feed-notice":"This feed contains at most 100 jobs (the most recently enriched). For the full corpus, use the paginated /stats/by-facet endpoint or /search.","x-generator":"yubhub-xml-generator","x-rights":"Free to redistribute with attribution: \"Data by YubHub (https://yubhub.co)\"","x-schema":"Each entry in `jobs` follows https://schema.org/JobPosting. YubHub-native raw fields carry `x-` prefix.","jobs":[{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_8ae5b8d5-5a4"},"title":"Security Engineer","description":"<p>As a Security Engineer at Yuno, you will be responsible for embedding security by default across our development and operations workflows.</p>\n<p>In this role, you will work closely with Engineering and DevOps teams to design, implement, and maintain secure cloud infrastructure, CI/CD pipelines, and containerized environments.</p>\n<p>You will play a key role in strengthening our security posture across AWS and GCP, automating security controls through infrastructure as code, and ensuring compliance with industry standards such as PCI DSS and SOC 2, enabling Yuno to scale securely in the global payments ecosystem.</p>\n<p>Responsibilities:</p>\n<ul>\n<li><p>Design, build, and maintain secure and scalable internal security solutions and tools using Python to support security operations and strengthen technical controls.</p>\n</li>\n<li><p>Improve and manage security configurations in AWS and GCP (including WAF, Security Hub, IAM policies, SIEM integrations and other critical services) to continuously strengthen our overall cloud security posture and ensure best practices are implemented.</p>\n</li>\n<li><p>Implement and maintain security processes and technical controls that support compliance requirements (e.g., PCI DSS, ISO 27001/27701, SOC 2).</p>\n</li>\n<li><p>Collaborate with different teams on cross-functional security initiatives, providing technical expertise and ensuring alignment with best practices.</p>\n</li>\n<li><p>Explore and evaluate emerging technologies and architectures (e.g., AI integrations) to ensure secure adoption.</p>\n</li>\n</ul>\n<p>Skills You Need:</p>\n<ul>\n<li><p>4+ years of hands-on experience in security engineering or similar technical security roles.</p>\n</li>\n<li><p>Strong experience designing and developing security tools or internal products to support security operations using Python.</p>\n</li>\n<li><p>Solid knowledge of AWS and GCP security services and configurations.</p>\n</li>\n<li><p>Practical experience working with compliance frameworks (e.g., PCI DSS, ISO 27001/27701, SOC 2) in cloud environments.</p>\n</li>\n<li><p>Strong problem-solving skills and the ability to communicate and collaborate effectively with cross-functional teams.</p>\n</li>\n<li><p>Verbal and written English fluency.</p>\n</li>\n</ul>\n<p>Preferred Qualifications:</p>\n<ul>\n<li><p>Familiarity with SIEM platforms and security monitoring tools.</p>\n</li>\n<li><p>Experience with Kubernetes and container security.</p>\n</li>\n<li><p>Experience with infrastructure as code (e.g., Terraform, CloudFormation).</p>\n</li>\n<li><p>Familiarity with emerging architectures (e.g., serverless, event-driven, AI integrations).</p>\n</li>\n<li><p>Experience embedding security practices across the software development lifecycle, including CI/CD pipelines.</p>\n</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_8ae5b8d5-5a4","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Yuno","sameAs":"https://www.yuno.com/","logo":"https://logos.yubhub.co/yuno.com.png"},"x-apply-url":"https://jobs.lever.co/yuno/f67be624-8969-4967-baec-1d924213a482","x-work-arrangement":"remote","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Python","AWS","GCP","PCI DSS","SOC 2","ISO 27001/27701","Cloud security","Infrastructure as code","CI/CD pipelines","Container security"],"x-skills-preferred":["SIEM platforms","Kubernetes","Terraform","CloudFormation","Serverless","Event-driven","AI integrations"],"datePosted":"2026-04-17T13:10:45.504Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"London"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Python, AWS, GCP, PCI DSS, SOC 2, ISO 27001/27701, Cloud security, Infrastructure as code, CI/CD pipelines, Container security, SIEM platforms, Kubernetes, Terraform, CloudFormation, Serverless, Event-driven, AI integrations"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_eec951b9-d96"},"title":"Security Engineer","description":"<p>We&#39;re seeking a Security Engineer at the senior-level or above to own the product security and authorization lifecycle for Saronic&#39;s autonomous surface vessels. You will serve as the responsible security engineer for one or more vessel programs, owning the security posture from design through production, authorization, and operational deployment.</p>\n<p>This is a hands-on security engineering role; not a GRC or project management role. You&#39;ll identify the frameworks that apply, architect the vessel&#39;s security to satisfy them, and drive authorization to completion. Where standards don&#39;t yet exist, you&#39;ll define them.</p>\n<p>Key Responsibilities:</p>\n<ul>\n<li>Own the security posture for one or more vessel programs from architecture through fielding, serving as the responsible security engineer for the product</li>\n<li>Drive threat modeling across vessel subsystems including embedded compute, communications, navigation, propulsion controls, sensor fusion, and C2 interfaces and define security architectures, trust boundaries, and segmentation strategies based on findings</li>\n<li>Identify and mitigate security risks unique to autonomous maritime platforms, including GPS/GNSS spoofing, RF interference, sensor manipulation, supply chain compromise, and physical access threats</li>\n<li>Own the end-to-end authorization lifecycle for vessel programs, from initial security planning through ATO or equivalent customer authorization milestones</li>\n<li>Navigate DoD cybersecurity authorization frameworks including RMF, CSRMC, and service-specific requirements across Navy, Coast Guard, Marine Corps, and joint programs</li>\n<li>Prepare and maintain authorization artifacts, security documentation, and evidence packages that satisfy Authorizing Officials and program offices</li>\n<li>Identify and map applicable compliance frameworks for each vessel and customer segment including NIST SP 800-53, NIST SP 800-171, CMMC 2.0, FedRAMP, IEC 62443, IMO MASS Code, and IACS UR E26/E27 and proactively define Saronic&#39;s compliance posture where standards are still emerging</li>\n<li>Engage directly with government program offices, Authorizing Officials, DOT&amp;E evaluators, and classification societies as a credible technical representative of Saronic&#39;s security posture</li>\n<li>Support cybersecurity testing and evaluation efforts, including preparation for operational test events, red team assessments, and cooperative vulnerability assessments</li>\n<li>Partner with supply chain and manufacturing teams to address hardware provenance, firmware integrity, and anti-tamper requirements for production vessels</li>\n<li>Work with Legal and Contracts to ensure security and compliance requirements are accurately reflected in customer agreements, proposals, and contract deliverables</li>\n</ul>\n<p>Required Qualifications:</p>\n<ul>\n<li>6+ years of hands-on experience in product security, systems security engineering, authorization engineering, or a closely related security engineering role for defense or high-assurance platforms</li>\n<li>Strong understanding of DoD cybersecurity authorization processes (RMF, ATO/IATT, CSRMC, continuous ATO) with experience contributing to or driving systems through authorization</li>\n<li>Working knowledge of NIST SP 800-53, NIST SP 800-171, and CMMC 2.0 and their application to weapons systems, autonomous platforms, or similarly complex defense products</li>\n<li>Experience with threat modeling, security architecture, or risk assessment for cyber-physical systems, embedded systems, or operational technology environments</li>\n<li>Strong technical foundation, able to read architecture diagrams, evaluate security controls at a systems level, and hold credible technical conversations with hardware, software, and cloud engineers</li>\n<li>Ability to clearly communicate with both technical and non-technical stakeholders, including production of security documentation and authorization artifacts</li>\n<li>Ownership mindset with the ability to operate in ambiguity, define the path forward, and move work to completion across teams</li>\n<li>Ability to obtain and maintain a security clearance</li>\n</ul>\n<p>Preferred Qualifications:</p>\n<ul>\n<li>Experience as a product security lead, systems security engineer, or authorization lead for a defense platform or program of record</li>\n<li>Direct experience engaging with government Authorizing Officials, program offices, or DOT&amp;E as a technical security representative</li>\n<li>Experience in defense technology startups, DARPA programs, or organizations that move at speed within the defense acquisition system</li>\n<li>Familiarity with maritime-specific frameworks including IMO MASS Code, IACS UR E26/E27, IEC 62443, or classification society autonomous vessel rules</li>\n<li>Understanding of autonomous systems security challenges including communications security, electronic warfare hardening, GPS/GNSS resilience, and AI/ML system security</li>\n<li>Experience with ITAR/EAR compliance, supply chain security, or manufacturing security for defense products</li>\n<li>Familiarity with the defense acquisition lifecycle and how authorization milestones integrate into program schedules</li>\n</ul>\n<p>Additional Information:</p>\n<ul>\n<li>Benefits: Medical Insurance, Dental and Vision Insurance, Time Off, Parental Leave, Competitive Salary, Retirement Plan, Stock Options, Life and Disability Insurance, Pet Insurance</li>\n<li>This role requires access to export-controlled information or items that require “U.S. Person” status.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_eec951b9-d96","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Saronic Technologies","sameAs":"https://www.saronictech.com/","logo":"https://logos.yubhub.co/saronictech.com.png"},"x-apply-url":"https://jobs.lever.co/saronic/6e800df8-6173-4f13-863e-b8803017f317","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["product security","systems security engineering","authorization engineering","threat modeling","security architecture","risk assessment","cyber-physical systems","embedded systems","operational technology environments","NIST SP 800-53","NIST SP 800-171","CMMC 2.0","RMF","CSRMC","ATO/IATT","continuous ATO","FedRAMP","IEC 62443","IMO MASS Code","IACS UR E26/E27"],"x-skills-preferred":["product security lead","systems security engineer","authorization lead","defense platform","program of record","government Authorizing Officials","program offices","DOT&E","technical security representative","defense technology startups","DARPA programs","organizations","defense acquisition system","maritime-specific frameworks","ITAR/EAR compliance","supply chain security","manufacturing security"],"datePosted":"2026-04-17T12:58:42.019Z","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"product security, systems security engineering, authorization engineering, threat modeling, security architecture, risk assessment, cyber-physical systems, embedded systems, operational technology environments, NIST SP 800-53, NIST SP 800-171, CMMC 2.0, RMF, CSRMC, ATO/IATT, continuous ATO, FedRAMP, IEC 62443, IMO MASS Code, IACS UR E26/E27, product security lead, systems security engineer, authorization lead, defense platform, program of record, government Authorizing Officials, program offices, DOT&E, technical security representative, defense technology startups, DARPA programs, organizations, defense acquisition system, maritime-specific frameworks, ITAR/EAR compliance, supply chain security, manufacturing security"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_f2ee807d-528"},"title":"Security Engineer","description":"<p>We&#39;re seeking a Security Engineer at the senior-level or above focused on software and systems security to own the security of Saronic&#39;s software platforms, build systems, and deployment infrastructure from development through production.</p>\n<p>As a Security Engineer, you will be the technical authority on how Saronic builds, ships, and runs secure software. You will lead secure code review, SAST, DAST, and fuzzing efforts, and define secure coding standards for Rust development including memory safety practices, safe FFI boundaries, and secure error handling.</p>\n<p>You will conduct threat modeling for software systems and translate findings into actionable security requirements integrated into design reviews and sprint planning. You will drive vulnerability management for software dependencies, including tracking, prioritization, and remediation of vulnerabilities in third-party crates and libraries.</p>\n<p>You will secure and harden NixOS configurations for vessel platforms and development infrastructure, leveraging Nix&#39;s reproducibility and declarative model for security enforcement. You will design system hardening profiles in NixOS including kernel hardening, service isolation, mandatory access controls, and minimal attack surface configurations.</p>\n<p>You will define and enforce package management and dependency policies within the Nix ecosystem, ensuring build closures are auditable, reproducible, and free from unauthorized or vulnerable packages. You will architect secure system update and rollback mechanisms using NixOS capabilities, ensuring fleet-wide consistency and integrity.</p>\n<p>You will design and implement security controls across the CI/CD pipeline including source integrity, build isolation, artifact signing, and deployment verification with build environments that are ephemeral, isolated, and hardened.</p>\n<p>You will build and maintain software supply chain security practices aligned to SLSA framework principles, including provenance tracking, hermetic builds, signed attestations, and SBOM generation.</p>\n<p>You will integrate security scanning (SAST, SCA, container scanning, secrets detection) into CI/CD pipelines as automated guardrails, and create self-service pipeline templates that enable teams to ship without bottlenecks.</p>\n<p>You will design secure deployment patterns for vessel software updates, including secure delivery, integrity verification, and rollback capabilities.</p>\n<p>You will implement runtime application security controls including logging, monitoring, and anomaly detection for deployed services.</p>\n<p>You will define software and systems security standards, patterns, and reference architectures that engineering teams adopt as the default secure path.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_f2ee807d-528","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Saronic Technologies","sameAs":"https://www.saronictechnologies.com/","logo":"https://logos.yubhub.co/saronictechnologies.com.png"},"x-apply-url":"https://jobs.lever.co/saronic/70738ef6-22be-464f-a451-09882093482d","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Rust","NixOS","CI/CD pipeline security","software supply chain security","SLSA framework principles","provenance tracking","hermetic builds","signed attestations","SBOM generation","security scanning","SAST","SCA","container scanning","secrets detection"],"x-skills-preferred":["NixOS experience","hands-on NixOS experience","experience securing software for embedded or resource-constrained Linux environments"],"datePosted":"2026-04-17T12:58:06.790Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Rust, NixOS, CI/CD pipeline security, software supply chain security, SLSA framework principles, provenance tracking, hermetic builds, signed attestations, SBOM generation, security scanning, SAST, SCA, container scanning, secrets detection, NixOS experience, hands-on NixOS experience, experience securing software for embedded or resource-constrained Linux environments"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_c629a0da-f6c"},"title":"Security Engineer","description":"<p>We&#39;re seeking a Security Engineer at the senior-level or above focused on hardware, embedded systems, and firmware security to own the security posture of Saronic&#39;s vessel hardware platforms from silicon to system.</p>\n<p>You will be the technical authority on hardware root of trust, secure boot, firmware integrity, embedded system hardening, and the security of third-party hardware integrations. Your work ensures that every component on the vessel is resilient against tampering, exploitation, and supply chain compromise, designed in from the start and maintained across the fleet lifecycle.</p>\n<p>Key Responsibilities:</p>\n<ul>\n<li><p>Conduct hardware security assessments including fault injection, side-channel analysis, interface evaluation, and bus protocol analysis across Saronic-built and third-party hardware including sensors, radios, navigation systems, propulsion controllers, and communication modules</p>\n</li>\n<li><p>Evaluate and harden physical interfaces, debug ports, maintenance access points, and removable media interfaces on vessel hardware</p>\n</li>\n<li><p>Evaluate supply chain security risks for hardware components and recommend provenance validation, anti-tamper, and attestation controls</p>\n</li>\n<li><p>Develop and maintain a hardware security testing capability including tooling, methodology, and repeatable test procedures</p>\n</li>\n<li><p>Design and implement secure boot chains establishing hardware root of trust from power-on through application launch, integrating TPM, secure elements, and HSMs for device identity, key storage, measured boot, and remote attestation</p>\n</li>\n<li><p>Design and implement secure firmware update mechanisms including signed updates, rollback protection, and verified delivery across the fleet</p>\n</li>\n<li><p>Own the cryptographic key lifecycle for hardware-bound keys, including provisioning, rotation, revocation, and escrow</p>\n</li>\n<li><p>Harden embedded Linux systems on vessel platforms, including kernel configuration, mandatory access controls, secure IPC, and attack surface reduction</p>\n</li>\n<li><p>Secure operational technology protocols and interfaces used in vessel control systems, propulsion, navigation, and sensor fusion including CAN bus, NMEA, and maritime/industrial communication protocols</p>\n</li>\n<li><p>Define security boundaries, trust zones, and segmentation strategies for vessel-internal compute and communication architectures</p>\n</li>\n<li><p>Drive threat modeling across vessel hardware subsystems and translate findings into actionable engineering requirements</p>\n</li>\n<li><p>Produce secure-by-design reference architectures and define hardware and firmware security standards, testing requirements, and acceptance criteria integrated into engineering workflows</p>\n</li>\n</ul>\n<p>Required Qualifications:</p>\n<ul>\n<li><p>6+ years of hands-on experience in hardware security, embedded systems security, firmware security, or a closely related security engineering role</p>\n</li>\n<li><p>Deep expertise in hardware hacking techniques including fault injection, side-channel attacks, JTAG/SWD exploitation, bus sniffing/injection, and physical security assessments</p>\n</li>\n<li><p>Demonstrated experience designing and implementing secure boot chains, hardware root of trust, and secure firmware update mechanisms in production systems</p>\n</li>\n<li><p>Strong experience assessing third-party hardware integrations and evaluating supply chain security risks</p>\n</li>\n<li><p>Deep knowledge of embedded Linux security hardening, kernel security, and mandatory access control frameworks</p>\n</li>\n<li><p>Experience with operational technology security, industrial protocols, or control system security</p>\n</li>\n<li><p>Proficiency in C, C++, Python, or Rust in the context of firmware, embedded, or systems-level security work, and with hardware security testing tools</p>\n</li>\n<li><p>Ability to obtain and maintain a security clearance</p>\n</li>\n</ul>\n<p>Preferred Qualifications:</p>\n<ul>\n<li><p>Experience in defense, aerospace, robotics, autonomy, maritime, or other high-assurance environments</p>\n</li>\n<li><p>Experience with autonomous systems, unmanned vehicles, or safety-critical embedded platforms</p>\n</li>\n<li><p>Experience with RTOS, microcontroller security, or resource-constrained device environments</p>\n</li>\n<li><p>Knowledge of CAN bus, NMEA protocols, maritime communication systems, RF/GPS/GNSS security, or ICS security standards</p>\n</li>\n<li><p>Familiarity with defense or safety-critical compliance frameworks (NIST SP 800-53, IEC 62443, Common Criteria, or equivalent)</p>\n</li>\n<li><p>Relevant certifications such as OSEE, GXPN, GSE, or hardware-focused credentials</p>\n</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_c629a0da-f6c","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Saronic Technologies","sameAs":"https://www.saronictechnologies.com/","logo":"https://logos.yubhub.co/saronictechnologies.com.png"},"x-apply-url":"https://jobs.lever.co/saronic/4b15b1b4-3c34-47ad-b964-dbcf0f8a3dc4","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Hardware security","Embedded systems security","Firmware security","Fault injection","Side-channel analysis","Interface evaluation","Bus protocol analysis","Physical security assessments","Secure boot chains","Hardware root of trust","Firmware integrity","Embedded system hardening","Third-party hardware integrations","Supply chain security risks","Provenance validation","Anti-tamper","Attestation controls","Hardware security testing","Tooling","Methodology","Repeatable test procedures","Device identity","Key storage","Measured boot","Remote attestation","Signed updates","Rollback protection","Verified delivery","Cryptographic key lifecycle","Provisioning","Rotation","Revocation","Escrow","Embedded Linux systems","Kernel configuration","Mandatory access controls","Secure IPC","Attack surface reduction","Operational technology protocols","Industrial protocols","Control system security","CAN bus","NMEA","Maritime/industrial communication protocols","Security boundaries","Trust zones","Segmentation strategies","Threat modeling","Actionable engineering requirements","Secure-by-design reference architectures","Hardware and firmware security standards","Testing requirements","Acceptance criteria","Engineering workflows","C","C++","Python","Rust","Hardware security testing tools"],"x-skills-preferred":["Defense","Aerospace","Robotics","Autonomy","Maritime","High-assurance environments","Autonomous systems","Unmanned vehicles","Safety-critical embedded platforms","RTOS","Microcontroller security","Resource-constrained device environments","NMEA protocols","Maritime communication systems","RF/GPS/GNSS security","ICS security standards","Defense or safety-critical compliance frameworks","OSEE","GXPN","GSE","Hardware-focused credentials"],"datePosted":"2026-04-17T12:57:49.070Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Hardware security, Embedded systems security, Firmware security, Fault injection, Side-channel analysis, Interface evaluation, Bus protocol analysis, Physical security assessments, Secure boot chains, Hardware root of trust, Firmware integrity, Embedded system hardening, Third-party hardware integrations, Supply chain security risks, Provenance validation, Anti-tamper, Attestation controls, Hardware security testing, Tooling, Methodology, Repeatable test procedures, Device identity, Key storage, Measured boot, Remote attestation, Signed updates, Rollback protection, Verified delivery, Cryptographic key lifecycle, Provisioning, Rotation, Revocation, Escrow, Embedded Linux systems, Kernel configuration, Mandatory access controls, Secure IPC, Attack surface reduction, Operational technology protocols, Industrial protocols, Control system security, CAN bus, NMEA, Maritime/industrial communication protocols, Security boundaries, Trust zones, Segmentation strategies, Threat modeling, Actionable engineering requirements, Secure-by-design reference architectures, Hardware and firmware security standards, Testing requirements, Acceptance criteria, Engineering workflows, C, C++, Python, Rust, Hardware security testing tools, Defense, Aerospace, Robotics, Autonomy, Maritime, High-assurance environments, Autonomous systems, Unmanned vehicles, Safety-critical embedded platforms, RTOS, Microcontroller security, Resource-constrained device environments, NMEA protocols, Maritime communication systems, RF/GPS/GNSS security, ICS security standards, Defense or safety-critical compliance frameworks, OSEE, GXPN, GSE, Hardware-focused credentials"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_85f1ada0-78d"},"title":"Security Engineer","description":"<p>We&#39;re seeking a Security Engineer at the senior-level or above on our Security Operations team with strong detection engineering experience. You&#39;ll design and develop high-fidelity detection content, build and operate the data pipelines that power our security operations, develop automation playbooks that accelerate response, and work across a uniquely diverse telemetry landscape spanning cloud infrastructure, embedded vessel platforms, corporate systems, and operational technology.</p>\n<p>This role is heavily weighted toward detection engineering. You should think in terms of adversary behaviour and telemetry coverage, not just alert triage. You&#39;ll own detections end-to-end: from identifying gaps in coverage, through designing and testing detection logic, to tuning and validating in production.</p>\n<p>Key Responsibilities:</p>\n<ul>\n<li><p>Design, build, test, and tune high-fidelity detection rules and analytic queries across endpoint, cloud, network, identity, and DLP telemetry sources</p>\n</li>\n<li><p>Develop and maintain detection content using detection-as-code practices including version-controlled logic, automated testing, and CI/CD deployment</p>\n</li>\n<li><p>Map detection coverage to MITRE ATT&amp;CK, identify gaps, and prioritise new detection development based on threat intelligence and business risk</p>\n</li>\n<li><p>Engineer correlation rules, behavioural analytics, and anomaly-based detections that minimise false positives while surfacing real adversary tradecraft</p>\n</li>\n<li><p>Own the detection lifecycle from initial development through production tuning, performance monitoring, and retirement</p>\n</li>\n<li><p>Build and operate pipelines to ingest, normalise, enrich, and manage security telemetry at scale across diverse data sources, using Terraform and infrastructure-as-code practices to deploy and maintain logging and detection infrastructure</p>\n</li>\n<li><p>Design and maintain log collection, parsing, and enrichment configurations that ensure the right telemetry is available at the right fidelity for detection and investigation</p>\n</li>\n<li><p>Evaluate and onboard new telemetry sources as Saronic&#39;s infrastructure and threat landscape evolve</p>\n</li>\n<li><p>Monitor pipeline health, data quality, and ingestion reliability to ensure detections operate on complete and accurate data</p>\n</li>\n<li><p>Develop and manage automated response playbooks in SOAR platforms to accelerate containment and reduce analyst toil</p>\n</li>\n<li><p>Build automation that enriches alerts with contextual data, reducing investigation time and improving analyst decision-making</p>\n</li>\n<li><p>Support incident response efforts and translate lessons learned into improved detections and playbooks</p>\n</li>\n<li><p>Partner with SOC analysts, Cloud Security, Product Security, and IT teams to close visibility and detection gaps across environments</p>\n</li>\n<li><p>Collaborate with threat intelligence to ensure detection engineering is informed by current adversary TTPs relevant to defence, maritime, and autonomous systems</p>\n</li>\n</ul>\n<p>Required Qualifications:</p>\n<ul>\n<li><p>3+ years of hands-on experience in detection engineering, security operations, security automation, or a closely related security engineering role</p>\n</li>\n<li><p>Demonstrated experience designing, testing, and tuning detection rules and analytic queries across production security telemetry (endpoint, cloud, network, identity, or DLP)</p>\n</li>\n<li><p>Hands-on experience with SIEM platforms and proficiency with query languages such as SPL, KQL, or equivalent</p>\n</li>\n<li><p>Experience building and operating security data pipelines, including log ingestion, normalisation, enrichment, and data quality management</p>\n</li>\n<li><p>Understanding of data engineering concepts including ETL pipelines, data modelling, schema design, and indexing as applied to security telemetry</p>\n</li>\n<li><p>Hands-on coding experience in Python, PowerShell, Go, or Rust for security automation, detection tooling, or pipeline development, and familiarity with Terraform for managing detection and logging infrastructure as code</p>\n</li>\n<li><p>Understanding of MITRE ATT&amp;CK framework and its application to detection coverage and gap analysis</p>\n</li>\n<li><p>Ability to obtain and maintain a security clearance</p>\n</li>\n</ul>\n<p>Preferred Qualifications:</p>\n<ul>\n<li><p>Experience in defence, aerospace, robotics, autonomy, or other high-assurance environments</p>\n</li>\n<li><p>Experience with EDR platforms including custom detection rule creation and telemetry analysis</p>\n</li>\n<li><p>Experience with cloud-native detection in AWS and Microsoft 365/Azure</p>\n</li>\n<li><p>Experience using Terraform to deploy and manage security monitoring infrastructure, log pipeline components, or cloud-native security service configurations</p>\n</li>\n<li><p>Hands-on experience with incident response, threat hunting, or adversary emulation</p>\n</li>\n<li><p>Exposure to embedded Linux, operational technology, or ICS telemetry and detection</p>\n</li>\n<li><p>Familiarity with NIST SP 800-171, NIST SP 800-53, or CMMC and their logging and monitoring requirements</p>\n</li>\n<li><p>Relevant certifications such as GCIH, GCIA, GCDA, GSOM, OSDA, or OSCP</p>\n</li>\n</ul>\n<p>Additional Information:</p>\n<ul>\n<li><p>Benefits: Medical Insurance, Dental and Vision Insurance, Time Off, Parental Leave, Competitive Salary, Retirement Plan, Stock Options, Life and Disability Insurance, Pet Insurance</p>\n</li>\n<li><p>This role requires access to export-controlled information or items that require &#39;U.S. Person&#39; status.</p>\n</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_85f1ada0-78d","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Saronic Technologies","sameAs":"https://www.saronictechnologies.com/","logo":"https://logos.yubhub.co/saronictechnologies.com.png"},"x-apply-url":"https://jobs.lever.co/saronic/79424778-76c1-41c6-8385-cba5f6ddc50e","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["detection engineering","security operations","security automation","SIEM platforms","query languages","data engineering","ETL pipelines","data modelling","schema design","indexing","Python","PowerShell","Go","Rust","Terraform","MITRE ATT&CK framework","security clearance"],"x-skills-preferred":["EDR platforms","cloud-native detection","incident response","threat hunting","adversary emulation","embedded Linux","operational technology","ICS telemetry","NIST SP 800-171","NIST SP 800-53","CMMC","GCIH","GCIA","GCDA","GSOM","OSDA","OSCP"],"datePosted":"2026-04-17T12:56:57.672Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"detection engineering, security operations, security automation, SIEM platforms, query languages, data engineering, ETL pipelines, data modelling, schema design, indexing, Python, PowerShell, Go, Rust, Terraform, MITRE ATT&CK framework, security clearance, EDR platforms, cloud-native detection, incident response, threat hunting, adversary emulation, embedded Linux, operational technology, ICS telemetry, NIST SP 800-171, NIST SP 800-53, CMMC, GCIH, GCIA, GCDA, GSOM, OSDA, OSCP"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_734a57ad-497"},"title":"Security Engineer","description":"<p>We&#39;re seeking a senior-level Security Engineer to own the design, implementation, and continuous improvement of security guardrails across our cloud infrastructure. You willaki, you&#39;ll build the systems and patterns that enable every team at Saronic to move fast and ship with confidence, with security baked in from the start. You will be the technical authority on how we architect, govern, and defend our AWS environments across commercial and GovCloud.</p>\n<p><strong>Key Responsibilities</strong></p>\n<ul>\n<li>Own the security architecture for Saronic&#39;s AWS environments, including multi-account strategy, network segmentation, identity architecture, and data protection across commercial AWS and AWS GovCloud</li>\n</ul>\n<ul>\n<li>Design and maintain secure-by-default Terraform modules and IaC standards that teams adopt as the standard path, enforcing least privilege, secure defaults, and compliance requirements</li>\n</ul>\n<ul>\n<li>Implement preventive controls (SCPs, permission boundaries, policy-as-code) and detective controls (Config rules, CloudTrail analysis, GuardDuty) as a unified, layered security model</li>\n</ul>\n<ul>\n<li>Design and enforce IAM patterns across AWS accounts, services, and workloads including least-privilege policies, permission boundaries, cross-account access, federation, and service-to-service authentication</li>\n</ul>\n<ul>\n<li>Implement and govern secrets management using tools such as AWS Secrets Manager or Vault, integrated into CI/CD and runtime environments</li>\n</ul>\n<ul>\n<li>Partner with DevOps and Platform Engineering to embed security into CI/CD pipelines, infrastructure provisioning, and deployment workflows</li>\n</ul>\n<ul>\n<li>Build automated compliance validation into infrastructure pipelines and replace manual security gates with automated guardrails wherever possible</li>\n</ul>\n<ul>\n<li>Create self-service security tooling and patterns that allow teams to operate with speed and autonomy while maintaining compliance</li>\n</ul>\n<ul>\n<li>Integrate logging, monitoring, and alerting across cloud infrastructure to validate control effectiveness and detect misconfigurations or threats</li>\n</ul>\n<ul>\n<li>Build and tune cloud-native detections using CloudTrail, GuardDuty, Config, and SIEM integrations</li>\n</ul>\n<ul>\n<li>Support incident response for cloud security events, drive root-cause analysis, and translate findings into improved guardrails and controls</li>\n</ul>\n<p><strong>Required Qualifications:</strong></p>\n<ul>\n<li>6+ years of hands-on experience in cloud security engineering, infrastructure security, DevSecOps, or a closely related security engineering role</li>\n</ul>\n<ul>\n<li>Expert-level proficiency with Terraform, including module design, state management, policy-as-code, and managing complex multi-environment configurations</li>\n</ul>\n<ul>\n<li>Deep expertise in AWS security services and architecture, including IAM, Organizations, SCPs, Control Tower, CloudTrail, Config, GuardDuty, Security Hub, KMS, and VPC security</li>\n</ul>\n<ul>\n<li>Demonstrated experience building security guardrails and reusable infrastructure patterns that engineering teams adopt without friction</li>\n</ul>\n<ul>\n<li>Strong experience with CI/CD pipeline security, IaC review processes, and automated compliance validation</li>\n</ul>\n<ul>\n<li>Experience operating in AWS GovCloud or FedRAMP-regulated cloud environments</li>\n</ul>\n<ul>\n<li>Strong proficiency in Python, Go, Rust, or equivalent languages for building security automation and tooling</li>\n</ul>\n<ul>\n<li>Ability to obtain and maintain a security clearance</li>\n</ul>\n<p><strong>Preferred Qualifications:</strong></p>\n<ul>\n<li>Experience in defence, aerospace, robotics, autonomy, or other high-assurance environments</li>\n</ul>\n<ul>\n<li>Experience designing multi-account AWS landing zones and organisational security architectures from the ground up</li>\n</ul>\n<ul>\n<li>Hands-on experience with Kubernetes security, container security, and service mesh security in cloud-native environments</li>\n</ul>\n<ul>\n<li>Familiarity with NIST SP 800-171, NIST SP 800-53, FedRAMP, or Cloud Computing SRG Impact Levels</li>\n</ul>\n<ul>\n<li>Experience with infrastructure drift detection, automated remediation, and continuous compliance monitoring</li>\n</ul>\n<ul>\n<li>Relevant certifications such as AWS Security Specialty, AWS Solutions Architect Professional, HashiCorp Terraform Associate/Engineer, CCSP, or CISSP</li>\n</ul>\n<p><strong>Additional Information</strong></p>\n<p>Benefits: Medical Insurance: Comprehensive health insurance plans covering a range of services. Saronic pays 100% of the premium for employees and 80% for dependents. Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care. Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents. Time Off: Generous PTO and Holidays. Parental Leave: Paid maternity and paternity leave to support new parents. Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses. Retirement Plan: 401(k) plan. Stock Options: Equity options to give employees a stake in the company’s success. Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage. Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline. Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office</p>\n<p>This role requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in 8 U.S.C. 1324b(a)(3).</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_734a57ad-497","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Saronic Technologies","sameAs":"https://www.saronictechnologies.com/","logo":"https://logos.yubhub.co/saronictechnologies.com.png"},"x-apply-url":"https://jobs.lever.co/saronic/18310005-a24b-4f4c-9538-465df614c4fa","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Terraform","AWS security services","IAM","Organizations","SCPs","Control Tower","CloudTrail","Config","GuardDuty","Security Hub","KMS","VPC security","Python","Go","Rust","CI/CD pipeline security","IaC review processes","automated compliance validation","AWS GovCloud","FedRAMP-regulated cloud environments"],"x-skills-preferred":["Kubernetes security","container security","service mesh security","NIST SP 800-171","NIST SP 800-53","FedRAMP","Cloud Computing SRG Impact Levels","infrastructure drift detection","automated remediation","continuous compliance monitoring","AWS Security Specialty","AWS Solutions Architect Professional","HashiCorp Terraform Associate/Engineer","CCSP","CISSP"],"datePosted":"2026-04-17T12:56:38.157Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Terraform, AWS security services, IAM, Organizations, SCPs, Control Tower, CloudTrail, Config, GuardDuty, Security Hub, KMS, VPC security, Python, Go, Rust, CI/CD pipeline security, IaC review processes, automated compliance validation, AWS GovCloud, FedRAMP-regulated cloud environments, Kubernetes security, container security, service mesh security, NIST SP 800-171, NIST SP 800-53, FedRAMP, Cloud Computing SRG Impact Levels, infrastructure drift detection, automated remediation, continuous compliance monitoring, AWS Security Specialty, AWS Solutions Architect Professional, HashiCorp Terraform Associate/Engineer, CCSP, CISSP"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_395c1cc1-6a4"},"title":"Security Engineer","description":"<p>We are seeking a Security Engineer to join our growing security team. This role will have a huge impact on maintaining and improving Greenlight&#39;s security posture by developing and implementing automated workflows or AI toolings.</p>\n<p>The successful candidate will design, build, and maintain high-scale automation workflows and AI-assisted capabilities that proactively mature Greenlight&#39;s security posture. They will also architect and implement security guardrails for internal AI usage, ensuring LLM integrations and automated agents operate within company risk tolerances.</p>\n<p>Key responsibilities include:</p>\n<ul>\n<li>Developing custom integrations across the security and business systems stack (SaaS, FinTech tools, and internal APIs) to eliminate manual silos.</li>\n<li>Building and configuring automated tooling for real-time monitoring of data security, privacy, and vulnerability management.</li>\n<li>Partnering with IT, Engineering, and Business Owners to identify operational bottlenecks and deploy AI-powered solutions that enhance both security and efficiency.</li>\n<li>Collaborating with DevOps to bake automated security controls into the CI/CD pipeline and cloud environments.</li>\n<li>Creating high-quality designs, workflow diagrams, and playbooks to ensure automated systems are maintainable and transparent.</li>\n</ul>\n<p>Requirements include:</p>\n<ul>\n<li>4+ years of professional experience in Cybersecurity, DevOps, or Software Engineering.</li>\n<li>Strong proficiency in Python (preferred) or Go for building custom security tools and API-heavy integrations.</li>\n<li>Solid understanding of cloud security principles (AWS/GCP), containerization (Docker/K8s), and securing distributed systems.</li>\n<li>Deep familiarity with the OWASP Top 10 (including LLM-specific risks) and CI/CD security best practices.</li>\n<li>Hands-on experience with CI/CD platforms (GitHub Actions, GitLab CI) and no-code/low-code automation platforms (e.g., Tines, Torq, or Tray.io).</li>\n<li>Proven experience using AI-assisted tools (Copilot, Cursor, etc.) to accelerate development and a curiosity for deploying AI-driven security solutions.</li>\n</ul>\n<p>Nice to have:</p>\n<ul>\n<li>Experience with Infrastructure-as-code (IaC)</li>\n<li>Direct experience implementing security controls within both AWS and GCP.</li>\n<li>Security certifications such as CISSP, Security+, or specialized GIAC certifications.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_395c1cc1-6a4","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Greenlight","sameAs":"https://www.greenlight.com/","logo":"https://logos.yubhub.co/greenlight.com.png"},"x-apply-url":"https://jobs.lever.co/greenlight/2a76b288-50ec-4b8c-82b8-bf9543fcf054","x-work-arrangement":"remote","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Python","Go","Cloud security principles","Containerization","Securing distributed systems","OWASP Top 10","CI/CD security best practices","CI/CD platforms","No-code/low-code automation platforms","AI-assisted tools"],"x-skills-preferred":[],"datePosted":"2026-04-17T12:36:46.694Z","jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Finance","skills":"Python, Go, Cloud security principles, Containerization, Securing distributed systems, OWASP Top 10, CI/CD security best practices, CI/CD platforms, No-code/low-code automation platforms, AI-assisted tools"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_d6302dc5-860"},"title":"Security Engineer","description":"<p><strong>Job Description</strong></p>\n<p>Fuse Energy is a forward-thinking renewable energy startup on a mission to deliver a terawatt of renewable energy - fast. We&#39;re combining first-principles thinking with cutting-edge technology to build a radically better energy system.</p>\n<p>We&#39;re creating a fully integrated energy company: from developing solar, wind and hydrogen projects to real-time power trading and distributed energy installations. By selling directly to consumers, we cut out the middleman, lower costs and pass on savings to customers.</p>\n<p>But we&#39;re not stopping there. We&#39;re also building the Energy Network: a decentralised platform of smart devices that rewards users in Energy Dollars for electrifying their homes, shifting usage to off-peak hours, and helping balance the grid. This network strengthens grid stability - a critical foundation for scaling AI data centers and other energy-intensive industries.</p>\n<p><strong>Responsibilities</strong></p>\n<p><strong>Security Engineering &amp; Implementation</strong></p>\n<ul>\n<li>Assist in implementing and maintaining security controls across cloud infrastructure, web applications, and internal systems.</li>\n<li>Support secure configuration of services, including access controls, secrets management, and API security.</li>\n<li>Help review and improve the security of components related to identity, authentication, and transaction workflows.</li>\n</ul>\n<p><strong>Threat Modelling &amp; Risk Awareness</strong></p>\n<ul>\n<li>Participate in threat modelling exercises and security reviews for new features and system changes.</li>\n<li>Help identify common security risks and misconfigurations, and work with engineers to remediate them.</li>\n<li>Stay informed about common attack vectors and vulnerabilities relevant to modern cloud and web environments.</li>\n</ul>\n<p><strong>Security Operations &amp; Incident Support</strong></p>\n<ul>\n<li>Assist with monitoring, detection, and investigation of security alerts and events.</li>\n<li>Support incident response activities, including analysis, documentation, and follow-up remediation tasks.</li>\n<li>Help maintain and improve runbooks, alerts, and basic detection mechanisms.</li>\n</ul>\n<p><strong>Secure Development &amp; Best Practices</strong></p>\n<ul>\n<li>Contribute to secure development practices, including code reviews with a security lens.</li>\n<li>Help document and promote security guidelines for engineers, such as secure coding and secrets handling.</li>\n<li>Support ongoing efforts related to compliance readiness (e.g., evidence gathering, control checks).</li>\n</ul>\n<p><strong>Collaboration &amp; Learning</strong></p>\n<ul>\n<li>Work closely with engineering and product teams to integrate security into day-to-day development.</li>\n<li>Learn from senior security engineers and actively develop your skills in cloud security, application security, and infrastructure security.</li>\n</ul>\n<p><strong>Requirements</strong></p>\n<ul>\n<li>Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent practical experience.</li>\n<li>2–3 years of experience in a Security Engineer, Software Engineer, Infrastructure Engineer, or similar role with security exposure.</li>\n<li>Foundational understanding of security concepts such as authentication, authorisation, encryption, and secure communication.</li>\n<li>Familiarity with common web and cloud security risks (e.g., OWASP Top 10, IAM misconfigurations).</li>\n<li>Basic experience with AWS and an interest in cloud security best practices.</li>\n<li>Working knowledge of operating systems, networking fundamentals, and software development workflows.</li>\n<li>Strong problem-solving skills and a willingness to learn and grow in a fast-moving environment.</li>\n</ul>\n<p><strong>Benefits</strong></p>\n<ul>\n<li>Competitive salary and an equity sign-on bonus</li>\n<li>Biannual bonus scheme</li>\n<li>Fully expensed tech to match your needs</li>\n<li>Paid annual leave</li>\n<li>Breakfast and dinner allowance for office based employees</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_d6302dc5-860","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Fuse Energy","sameAs":"https://jobs.workable.com","logo":"https://logos.yubhub.co/view.com.png"},"x-apply-url":"https://jobs.workable.com/view/pGZMLfYQcD1sroC7XJLzH2/hybrid-security-engineer-in-london-at-fuse-energy","x-work-arrangement":"hybrid","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["AWS","cloud security","application security","infrastructure security","security concepts","authentication","authorisation","encryption","secure communication","OWASP Top 10","IAM misconfigurations"],"x-skills-preferred":["operating systems","networking fundamentals","software development workflows"],"datePosted":"2026-03-09T16:59:38.977Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"London, England"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"AWS, cloud security, application security, infrastructure security, security concepts, authentication, authorisation, encryption, secure communication, OWASP Top 10, IAM misconfigurations, operating systems, networking fundamentals, software development workflows"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_f7ac368b-fd2"},"title":"Security Engineer","description":"<p><strong>Job Description</strong></p>\n<p>Fuse Energy is a forward-thinking renewable energy startup on a mission to deliver a terawatt of renewable energy - fast. We&#39;re combining first-principles thinking with cutting-edge technology to build a radically better energy system.</p>\n<p>We&#39;re creating a fully integrated energy company: from developing solar, wind and hydrogen projects to real-time power trading and distributed energy installations. By selling directly to consumers, we cut out the middleman, lower costs and pass on savings to customers.</p>\n<p>But we&#39;re not stopping there. We&#39;re also building the Energy Network: a decentralised platform of smart devices that rewards users in Energy Dollars for electrifying their homes, shifting usage to off-peak hours, and helping balance the grid. This network strengthens grid stability - a critical foundation for scaling AI data centers and other energy-intensive industries.</p>\n<p><strong>Responsibilities</strong></p>\n<p><strong>Security Engineering &amp; Implementation</strong></p>\n<ul>\n<li>Assist in implementing and maintaining security controls across cloud infrastructure, web applications, and internal systems.</li>\n<li>Support secure configuration of services, including access controls, secrets management, and API security.</li>\n<li>Help review and improve the security of components related to identity, authentication, and transaction workflows.</li>\n</ul>\n<p><strong>Threat Modelling &amp; Risk Awareness</strong></p>\n<ul>\n<li>Participate in threat modelling exercises and security reviews for new features and system changes.</li>\n<li>Help identify common security risks and misconfigurations, and work with engineers to remediate them.</li>\n<li>Stay informed about common attack vectors and vulnerabilities relevant to modern cloud and web environments.</li>\n</ul>\n<p><strong>Security Operations &amp; Incident Support</strong></p>\n<ul>\n<li>Assist with monitoring, detection, and investigation of security alerts and events.</li>\n<li>Support incident response activities, including analysis, documentation, and follow-up remediation tasks.</li>\n<li>Help maintain and improve runbooks, alerts, and basic detection mechanisms.</li>\n</ul>\n<p><strong>Secure Development &amp; Best Practices</strong></p>\n<ul>\n<li>Contribute to secure development practices, including code reviews with a security lens.</li>\n<li>Help document and promote security guidelines for engineers, such as secure coding and secrets handling.</li>\n<li>Support ongoing efforts related to compliance readiness (e.g., evidence gathering, control checks).</li>\n</ul>\n<p><strong>Collaboration &amp; Learning</strong></p>\n<ul>\n<li>Work closely with engineering and product teams to integrate security into day-to-day development.</li>\n<li>Learn from senior security engineers and actively develop your skills in cloud security, application security, and infrastructure security.</li>\n</ul>\n<p><strong>Requirements</strong></p>\n<ul>\n<li>Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent practical experience.</li>\n<li>2–3 years of experience in a Security Engineer, Software Engineer, Infrastructure Engineer, or similar role with security exposure.</li>\n<li>Foundational understanding of security concepts such as authentication, authorisation, encryption, and secure communication.</li>\n<li>Familiarity with common web and cloud security risks (e.g., OWASP Top 10, IAM misconfigurations).</li>\n<li>Basic experience with AWS and an interest in cloud security best practices.</li>\n<li>Working knowledge of operating systems, networking fundamentals, and software development workflows.</li>\n<li>Strong problem-solving skills and a willingness to learn and grow in a fast-moving environment.</li>\n</ul>\n<p><strong>Benefits</strong></p>\n<ul>\n<li>Competitive salary and an equity sign-on bonus</li>\n<li>Biannual bonus scheme</li>\n<li>Fully expensed tech to match your needs</li>\n<li>Paid annual leave</li>\n<li>Breakfast and dinner allowance for office based employees</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_f7ac368b-fd2","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Fuse Energy","sameAs":"https://jobs.workable.com","logo":"https://logos.yubhub.co/view.com.png"},"x-apply-url":"https://jobs.workable.com/view/eziLwb6ZKLhWWhioSWTY9L/hybrid-security-engineer-in-dubai-at-fuse-energy","x-work-arrangement":"hybrid","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["AWS","cloud security","application security","infrastructure security","security concepts","authentication","authorisation","encryption","secure communication","OWASP Top 10","IAM misconfigurations"],"x-skills-preferred":["operating systems","networking fundamentals","software development workflows"],"datePosted":"2026-03-09T16:56:38.305Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Dubai"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"AWS, cloud security, application security, infrastructure security, security concepts, authentication, authorisation, encryption, secure communication, OWASP Top 10, IAM misconfigurations, operating systems, networking fundamentals, software development workflows"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_1d0184f1-be6"},"title":"Security Engineer","description":"<p><strong>About the Role</strong></p>\n<p>We&#39;re hiring our first Security Engineer to own the process of safeguarding our systems, infrastructure, applications, and data. As the first security hire, you will build out our security operations and vulnerability management process for our AI gateway platform. You&#39;ll implement programs, run tooling, ship security fixes, and drive remediation across our stack. You’ll be responsible for all aspects of ensuring the security of our platform and users. This isn&#39;t a compliance paperwork role; it&#39;s a hands-on security position with direct impact on how we protect millions of API requests daily. You&#39;ll work closely with engineering and senior leadership to ship security improvements that actually matter.</p>\n<p><strong>What You&#39;ll Do</strong></p>\n<ul>\n<li>Deploy and operate vulnerability scanning across our cloud infrastructure. Triage findings and drive remediation with engineering teams.</li>\n</ul>\n<ul>\n<li>Lead security assessments for internal and customer security needs (e.g. SOC 2 Type II, ISO 27001, HIPAA audits).</li>\n</ul>\n<ul>\n<li>Maintain vulnerability and remediation documentation for auditors.</li>\n</ul>\n<ul>\n<li>Act as a liaison between product, engineering, compliance, and GTM to guide and prioritize the right security investments.</li>\n</ul>\n<ul>\n<li>Perform penetration tests, tabletop exercises, DR testing, and incident response.</li>\n</ul>\n<ul>\n<li>Manage endpoint security tooling as we scale; conduct audit log reviews and maintain visibility across our stack.</li>\n</ul>\n<p><strong>About You</strong></p>\n<ul>\n<li>3-5+ years in security engineering or operations.</li>\n</ul>\n<ul>\n<li>Deep knowledge of cloud security and expertise in operating in a cloud-hosted environment.</li>\n</ul>\n<ul>\n<li>Comfortable in compliance-heavy environments (SOC 2, ISO 27001, HIPAA).</li>\n</ul>\n<ul>\n<li>Strong experience with SIEM platforms (Splunk, Elastic, Panther) and vulnerability scanners (e.g. Qualys, Tenable, Rapid7).</li>\n</ul>\n<ul>\n<li>AI-forward with hands-on experience adopting, leveraging, and integrating AI tools.</li>\n</ul>\n<ul>\n<li>Startup mindset; you thrive building programs from the ground up and not just inheriting existing playbooks.</li>\n</ul>\n<ul>\n<li>Pragmatic and business-oriented, able to balance security rigor and business speed.</li>\n</ul>\n<ul>\n<li>Ability to communicate risk and technical ideas clearly to both technical and non-technical audiences.</li>\n</ul>\n<p><strong>Bonus Points</strong></p>\n<ul>\n<li>Experience with AI/ML infrastructure or inference platforms.</li>\n</ul>\n<ul>\n<li>Automation and scripting with Python.</li>\n</ul>\n<ul>\n<li>Healthcare data handling or BAA compliance experience.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_1d0184f1-be6","directApply":true,"hiringOrganization":{"@type":"Organization","name":"OpenRouter","sameAs":"https://jobs.ashbyhq.com","logo":"https://logos.yubhub.co/openrouter.com.png"},"x-apply-url":"https://jobs.ashbyhq.com/openrouter/188d9898-d4e0-4895-8203-86063af0ee41","x-work-arrangement":"Remote","x-experience-level":"mid","x-job-type":"Full time","x-salary-range":null,"x-skills-required":["cloud security","vulnerability scanning","SIEM platforms","vulnerability scanners","AI tools","endpoint security tooling"],"x-skills-preferred":["AI/ML infrastructure","inference platforms","Python scripting","healthcare data handling","BAA compliance"],"datePosted":"2026-03-09T09:48:01.907Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote (US)"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"cloud security, vulnerability scanning, SIEM platforms, vulnerability scanners, AI tools, endpoint security tooling, AI/ML infrastructure, inference platforms, Python scripting, healthcare data handling, BAA compliance"}]}