Location
Salt Lake City UT

This individual will serve as a key technical leader responsible for securing a large-scale, cloud-first environment while driving automation, incident response, vulnerability management, and security program maturity. The ideal candidate combines strong hands-on security engineering expertise with a passion for automation, cloud security, and modern security operations practices.

This role offers the opportunity to influence security strategy, improve operational effectiveness through engineering and AI-driven solutions, and collaborate closely with executive leadership on security initiatives and reporting.

This position requires occasional after-hours support for critical security incidents.


What You'll Do

Cloud Security & Infrastructure Protection

  • Own and continuously improve cloud security posture across complex AWS environments.
  • Operate and optimize security technologies including:
    • CSPM
    • SIEM
    • Vulnerability Management
    • Network Security
    • Zero Trust Network Access (ZTNA)
    • Data Loss Prevention (DLP)
    • Endpoint Detection & Response (EDR)
    • Endpoint Management
  • Lead vulnerability management efforts including scanning, prioritization, remediation tracking, and reporting
  • Partner with IT and Engineering teams to strengthen identity and access management capabilities
  • Support the development and maturation of privileged access management (PAM) initiatives.
  • Contribute to cloud migration and modernization security efforts.
  • Monitor threat intelligence and external attack surface exposure to identify and prioritize risks.

Incident Response & Security Operations

  • Act as a primary responder for security incidents
  • Perform incident triage, containment, eradication, recovery, and post-incident analysis.
  • Improve incident response processes, playbooks, and forensic readiness capabilities.
  • Participate in occasional after-hours response activities for critical security events.

Security Engineering & Automation

  • Develop automation solutions that reduce manual security operations work.
  • Build integrations between security platforms using APIs and scripting.
  • Improve security metrics collection, asset visibility, compliance evidence gathering, and alert triage processes.
  • Support Infrastructure-as-Code (IaC) and CI/CD security initiatives.
  • Evaluate and implement AI-assisted security operations capabilities.
  • Contribute to emerging AI and automation initiatives within the security program.
  • Help identify and mitigate risks associated with AI technologies and adoption.

Security Program Support

  • Support security program objectives, roadmap initiatives, and remediation tracking.
  • Maintain risk and compliance artifacts and ensure timely resolution of findings.
  • Assist with audit-readiness and evidence-collection efforts for industry-standard compliance frameworks.
  • Develop meaningful security metrics and reporting for technical and executive audiences.
  • Partner with Engineering, IT, Product, and business stakeholders to drive security outcomes

Required Qualifications

  • 5+ years of experience in Security Engineering, Security Operations, or a related cybersecurity role
  • Must be authorized to work in the United States and currently reside in the U.S.
  • Strong hands-on experience securing AWS environments
  • Proficiency in Python or another scripting/programming language
  • Experience working with SIEM platforms, dashboards, alert tuning, and threat detection
  • Strong understanding of vulnerability management and incident response processes
  • Experience supporting compliance initiatives such as SOC 2, PCI DSS, ISO 27001, or similar frameworks
  • Familiarity with AI/ML-enabled security tools and automation platforms
  • Demonstrated ability to mentor team members and elevate technical capabilities across a team
  • Excellent written and verbal communication skills, with the ability to communicate effectively to both technical and non-technical audiences
  • Willingness to participate in occasional after-hours incident response activities

Preferred Qualifications

  • Experience with GRC platforms, compliance automation, or risk management solutions
  • Exposure to Identity Governance (IGA) and Privileged Access Management (PAM) technologies
  • Relevant security certifications such as:
    • CISSP
    • CISM
    • AWS Security Specialty
    • GIAC certifications (GCIH, GCED, etc.)
  • Experience within regulated industries such as financial services, fintech, healthcare, or other compliance-driven environments
  • Background building internal security tooling or contributing to platform engineering initiatives
  • Experience with SOAR technologies and automated response workflows