Design and lead the strategic security architecture across diverse technical landscapes.
Implement sophisticated security tooling, create centralized dashboards, and ensure a unified, compliant security posture across multiple environments.
Build automated workflows to streamline incident response and evidence collection for compliance audits.
Serve as a subject matter expert for network design and cloud migrations.
Develop and maintain standardized security baselines that satisfy both ISO 27001 and SOC2 requirements.
Requirements
5+ years in security engineering with a proven track record of implementing security tools in complex, multi-tenant, or fragmented environments.
Deep familiarity with SOC2 (Trust Services Criteria) and ISO 27001 frameworks. You know how to translate these standards into technical requirements for engineering teams.
Hands-on experience with modern security stacks (e.g., Splunk, Elastic, Sentinel, or similar) and the ability to integrate them via APIs.
Strong proficiency in Cloud Security (AWS/Azure/GCP), Containerization (Docker/K8s), and Infrastructure as Code (Terraform/Ansible).
The ability to mentor junior analysts and explain the "why" behind compliance and security strategy to stakeholders.