Develop hardware and software solutions designed to establish and test security guardrails across the code, cloud resources, and hardware infrastructure of the Anchorage platform.
Manage vulnerabilities in both in-house and third-party components, partnering with service owners to secure networking and infrastructure while continuously monitoring for anomalies or unexpected configuration changes.
Strategically automate investigation tasks, threat isolation, inventory management, and assurance provision for regulated entities.
Conduct rigorous static and dynamic testing of application interfaces throughout the organization.
Requirements
3+ years of hands-on experience in security engineering, application security, penetration testing, or security operations.
You have built or maintained security tools, integrations, or automation workflows using Python, Go, or similar languages.
You can identify and assess security vulnerabilities in applications, APIs, and cloud infrastructure, and effectively communicate remediation strategies.
You have experience with tools like Semgrep, CodeQL, Burp Suite, or equivalent for identifying security issues in code and running systems.
You understand AWS security fundamentals including IAM, VPCs, security groups, and CloudTrail/logging.
You can investigate security events, perform root cause analysis, and coordinate response efforts.
You have developed "computer science fundamentals," i.e. concurrency, algorithms, and data structures.
You genuinely care about code quality and operational excellence.
You prioritize security outcomes, end-user experience, and business value over "cool tech."
You self-describe as some combination of the following: creative, humble, ambitious, detail-oriented, hardworking, trustworthy, eager to learn, methodical, action-oriented, and tenacious.
Tech Stack
AWS
Cloud
Python
Go
Benefits
We encourage and sponsor quarterly in-person collaboration days to work together and further deepen our Village