Security Engineer
$105k - $185kMenlo Security
Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense.
The world has fundamentally changed. We are growing from 400 employees into the next phase of our journey, and we need passionate talent filled with empathy and agility. The right candidate for the job is ethical, hyper-organized, fanatical about seeing things through to completion, service-oriented, and humble enough to take feedback and coaching yet confident enough to provide feedback and coaching.
Menlo is well-funded for growth and our investors are second to none. They include Vista Equity Partners (“ Vista ”), General Catalyst, JPMC, American Express, HSBC, and Ericsson Ventures.
Role Overview
We are seeking a forward-thinking Security Engineer to join our team, focusing on SecOps for the cloud architecture supporting the product. In this role, you will operate across a complex, multi-cloud environment (AWS & GCP) comprising both traditional VMs and modern managed and unmanaged container-based architectures.
As part of a lean team, your primary focus will be on the aggressive automation of security processes. You will be responsible for deploying, integrating, and monitoring Jenkins and GitLab pipelines to ensure that 'Security as Code' scales seamlessly alongside our infrastructure. This includes the strategic deployment and management of CSPM, CNAPP, and CWPP tools to act as a force multiplier for the team.
Your operational cadence must be built on speed and automation over manual triage. Success requires you to continuously tune alerting to ensure high-fidelity signals, reduce alert fatigue, and build automated response workflows. Ultimately, you will conduct rigorous infrastructure reviews to ensure that cloud configurations, IAM policies, and orchestration layers meet our security baselines while maintaining rapid release velocity.
Key Responsibilities
● Multi-Cloud Governance (AWS & GCP): Deploy and manage Cloud Security Posture Management (CSPM) tools to automatically detect and remediate misconfigurations across both providers.
● Container Security Lifecycle: Implement Cloud Native Application Protection Platform (CNAPP) strategies by shifting left and integrating container image scanning directly into Jenkins and GitLab pipelines.
● Workload Protection: Deploy and tune Cloud Workload Protection Platform (CWPP) tools to monitor runtime behavior and detect anomalies in both VMs and Kubernetes pods. ● Advanced Automation & SOAR: Build Automated Response Playbooks to automatically enrich alerts, isolate compromised resources, and dismiss low-fidelity noise without human intervention.
● Infrastructure Review & Identity: Manage effective permissions across complex multi-cloud IAM structures and standardize secret management workflows. ● Release Readiness & Customer Trust: Collaborate closely with Technical Program Managers (TPMs) during software releases to enforce compliance standards and oversee vulnerability scanning. Additionally, respond to customer inquiries regarding the impact of Common Vulnerabilities and Exposures (CVEs) on our product.
Required Skills & Qualifications
● Multi-Cloud Fluency: Deep architectural understanding of GCP and AWS, with the ability to manage complex IAM policies, standardizing identity, and securing networking layers across both providers.
● Security Automation: Proficiency in Python, Go, or Bash to write custom scripts that eliminate toil, build auto-remediation playbooks, and streamline security operations. ● Infrastructure as Code (IaC) : Experience developing secure Terraform modules and primitives for the organization to stem from, ensuring security defaults are baked into the architecture and catching misconfigurations before deployment.
● Developer Enablement: Design and maintain shared CI/CD security components (SAST/SBOM/Container Scanning) that are easily adoptable by engineering teams with minimal friction.
● Container Security: Proven experience securing managed (EKS, GKE) and unmanaged container workloads, with a strong emphasis on automating runtime defenses and admission controllers.
● Pragmatic Mindset: The ability to operate pragmatically within a lean team, knowing how to prioritize risk based on runtime context and business impact rather than just chasing scanner outputs.
● Privileged Access Management: Proven ability to implement and manage Just-In-Time access policies to replace manual ticket and eliminating standing privileges.
● Federal Compliance & Citizenship : Due to the role’s involvement in federal compliance activities, the candidate is required to be a US citizen.
Bonus Points
● Orchestration & Event-Driven Automation Expert: Proven experience designing and deploying fully automated security systems using AWS Step Functions or Google Cloud Workflows. You have a track record of building event-driven architectures that orchestrate complex, multi-stage security workflows such as automatically triggering vulnerability scans upon resource creation, aggregating and filtering reporting data, and routing high-fidelity, actionable alerts to Slack, Grafana, and other external platforms.
● Performance-Aware Security Engineering: Experience troubleshooting and tuning security agent performance to balance deep visibility with system stability, specifically preventing CPU/Memory exhaustion in high-traffic proxy environments.
● Linux Security: Understanding of Linux security primitives, specifically the use of MAC (Mandatory Access Control) like AppArmor or SELinux, DAC (Discretionary Access Control), and Linux kernel capabilities
Our Compensation and Benefits
At Menlo Security, Base Salary is one part of our competitive total compensation and benefits package and is determined using a salary range. The base salary range for this role is $105,000 - $185,000.
In accordance with NY, CO, CA, and WA law, the range provided is Menlo Security’s reasonable estimate of the base compensation for this role. The actual amount may be higher or lower, based on non-discriminatory factors such as experience, knowledge, skills, abilities, and location. All employees may be eligible to become Menlo Security shareholders through eligibility for stock-based compensation grants, which are awarded to employees based on company and individual performance.
Menlo Security does not accept unsolicited resumes from search firm recruiters. Fees will not be paid in the event a candidate submitted by a recruiter without an agreement in place is hired; such resumes will be deemed the sole property of Menlo Security.
Menlo Security is an equal opportunity employer. All aspects of employment will be based on merit, competence, performance, and business needs. We do not discriminate on the basis of race, color, religion, marital status, age, national origin, ancestry, physical or mental disability, medical condition, pregnancy, genetic information, gender, sexual orientation, gender identity or expression, veteran status, or any other status protected under federal, state, or local law.
MSGL-I4
Follow us on LinkedIn !
Why Menlo?
Our culture is collaborative, inclusive, and fun! We have five core values: Stay Aligned, Get It Done, Customer Empathy, Think Creatively and Help Each Other Out. We believe in open communication, supporting new ideas, and sharing a mutual mindset of what we’re aiming to achieve together. There are tremendous opportunities to take initiative, implement new ideas, and have a hand in building a legacy.
All qualified applicants will receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability .
TO ALL AGENCIES: Please, no phone calls or emails to any employee of Menlo Security outside of the Talent organization. Menlo Security’s policy is to only accept resumes from agencies via Ashby (ATS). Agencies must have a valid services agreement executed and must have been assigned by the Talent team to a specific requisition. Any resume submitted outside of this process will be deemed the sole property of Menlo Security. In the event a candidate submitted outside of this policy is hired, no fee or payment will be paid.
- ...ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers support clients in assessing, improving, and maintaining the cybersecurity posture of their ICS/OT environments to mitigate security risks (e.g., insider and external threats, intentional and accidental...SuggestedFull timeWork at officeRemote work
- ...About the Team Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity... ...robust security culture. About the Role As a Security Engineer, Application Security you will be responsible for identifying...SuggestedWork at officeRemote workRelocation package
$200k - $255k
...Instead of accepting the status quo, we decided to fix it. National security professionals, journalists, parents, and everyone in between... ...a member of our team, you will collaborate with world-class engineers, architects, and visionaries, and work across organizational...SuggestedOdd jobImmediate startRemote work$190.8k - $267.1k
...internet. Every day, Reddit users submit, vote, and comment on the topics they care most about. Reddit is hiring a Senior Security Engineer, AI Security to help teams build and ship AI-powered products securely. This role combines product security judgment with hands...SuggestedFor contractorsWork experience placementRemote work$75.19 - $97.74 per hour
...Job Description Title : Security Engineer Location : Remote Job Type : Contract (12 Months) Compensation : $75.19 - $97.74/hr Industry: Retail Work Arrangement: Candidates located in the Minneapolis, MN area may be asked to...SuggestedContract workRemote work- ...Job Title: Security Engineer Duration: 12 - 24 Month Project Engagement Role Summary: The Security Engineer is a hands-on technical expert responsible for implementing, maintaining, and optimizing MNAO's security tooling. This role works closely with platform and...Remote work
- ...Endpoint Security Engineer Castalia Systems is seeking an Endpoint Security Engineer to support our Intelligence Client's mission sets. As an Endpoint Security Engineer you will design, deploy, and operationalize active, behavior-based endpoint detection and response...Work at officeLocal areaRemote work
- ...API Security Engineer Perfict Global is a leading IT consulting services provider focused on providing innovative and successful business workforce solutions to Fortune 500 companies. Our trained and experienced professionals constantly strive to bring together the...Remote work
- ...Cybersecurity Engineer As a Cybersecurity Engineer, you will help design, implement, and mature Moderna's approach to API security across modern applications, platform services, and AI-enabled use cases. This role is primarily focused on securing APIs and the systems...Remote work
- ...McAfee Consultant Downey, CA - Remote 12+ months A Security Engineer serves as the security engineer of complex technology implementations in a product-centric environment; is comfortable with bridging the gap between legacy development or operations teams and...Remote work
- ...Security Engineer This role builds and maintains complex integrations, develops automation, engineers SailPoint rules and workflows, and ensures scalable, secure identity architecture across the enterprise. The IAM SailPoint Engineer partners with IAM leadership, cybersecurity...Remote work
- ...Security Analyst SimSpace serves as an AI Proving Ground where organizations can confidently train, test, and outmaneuver adversaries... ..., intelligence, and observed attacker behavior. Detection Engineering: Assist with developing, testing, tuning, and maintaining SIEM...For subcontractorLocal areaRemote workWorldwide
$190.6k - $263.9k
...excited to innovate with purpose, and motivated by work that truly matters, we’d love to hear from you. The Team Upstart’s Security Engineering team protects Upstart’s people, systems, products, and data by building and operating security capabilities that reduce risk...Summer workCurrently hiringLocal areaRemote workWork from home- ...Security Engineer We are looking for a Security Engineer who is responsible for design, implement, and maintain systems to protect organizations from cyber threats, ensuring data confidentiality, integrity, and availability. They work across industries to safeguard...Remote work
$100k - $125k
...8 Description Position Summary You are the kind of engineer who stays curious when no one is watching. You read threat intelligence... ...credit for it. You have likely seen what happens when strong security talent gets trapped in slow, rigid organizations where good...Work experience placementRemote work$230k - $290k
...teams to run agents across organizations without compromising security or reliability. Continue cloud agent runs that were triggered... ...at a company where your work reaches hundreds of thousands of engineers every day, we'd love to have you. The Role This is a rare...Work at officeRemote workFlexible hours$200k - $240k
...City, CA, Liftoff has a diverse, global presence. The Liftoff Security team protects Liftoff's customers, users, and employees. We... ...build the tools and systems that defend it, and partner with engineering teams as they ship new products and features. Our work spans the...Full timeRemote work$105k - $123k
...Chainguard is the trusted source for open source. By delivering hardened, secure, and production-ready builds of all the open source software engineers and AI agents rely on, Chainguard helps organizations build faster, stay compliant, and eliminate risk. Our...Local areaRemote workFlexible hoursShift work- ...Security Engineer Company: Game Plan Tech Work Type: Remote Employment: Full Time Location: US Seniority: Senior Level Technologies: Google Cloud Security Command Center, AWS Security Hub, Azure Security Center, Tenable Products, firewalls, intrusion detection systems,...Full timeRemote work
- A leading coffee company is seeking a Cybersecurity Engineer Lead to design detection strategies against real-world threats. This remote role requires hands-on experience in Detection Engineering and managing SIEM platforms. The ideal candidate will lead initiatives to...Remote work
$170k - $205k
...Snyk is the leader in secure AI software development, helping millions of developers develop fast and stay secure as AI transforms how... ...world. Why this role? We are hiring a Staff Security Engineer to own cloud and identity security for Snyk's own multi-cloud estate...Work at officeRemote workWork from homeFlexible hours- ...Endpoint Engineer, Data Security About Ent Ent is the intent-aware workspace security platform for securing human and AI-driven work. Built to protect productivity, the new attack surface, Ent understands not just what users and agents do but why, and intervenes at the...Permanent employmentWork at officeImmediate startRemote workHome officeFlexible hours
- ...Security Engineer Company: Ross Stores Work Type: Remote Employment: Full Time Location: US, California, US Seniority: Senior Level Technologies: Threat Intelligence Platforms (TIPs), SIEM, Endpoint Detection, Python, SQL, MITRE ATT&CK, STIX/TAXII, OSINT, IoCs, Threat...Full timeRemote work
- ...Security Engineer Company: Secur-Serv Work Type: Remote Employment: Full Time Location: US Seniority: Mid Level Technologies: Palo Alto Networks NGFW, Cisco, Checkpoint, Juniper, Fortinet, Symantec/Blue Coat, Zscaler, Prisma Access, AWS, GCP, Azure, tcpdump, Wireshark,...Full timeRemote work
$100k - $135k
...support with compassion, creativity, and an unwavering commitment to children with medical complexity. What You’ll Do As a Security Engineer, you will help operate, tune, and improve the technologies and processes that protect Imagine Pediatrics’ systems, data, and...Temporary workRemote work$125k - $148k
...from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation. Our prevention-first approach safeguards... ...What you bring to the table ~8+ years of engineering and pre-sales experience ~ Possess strong analytical and problem...Temporary workWork at officeRemote workWorldwide- ...from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation. Our prevention-first approach safeguards... ...What you bring to the table ~8+ years of engineering and pre-sales experience ~ Possess strong analytical and problem...Remote workWorldwide
- ...Position Summary The Security Engineer is responsible for designing, implementing, and operating the organization’s cybersecurity program from the ground up, with a primary focus on software supply chain security, identity and access management (IAM), permissions architecture...Full timeRemote work
- ...To enhance security for customers, the full-time salaried Security Engineer II will conduct application security reviews and penetration tests, collaborate with various teams, and contribute to security tooling and improvements in a remote environment. Key responsibilities...Full timeRemote work
- ...rooms full of people. If you want to build things that matter (not just maintain them), this is a good time to join. Position: Security Engineer – Cloud & Infrastructure Security AWS Location: Remote Role Overview: The Security Engineer is a member of...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!
- product security engineer Remote
- network security engineer Remote
- security software engineer Remote
- security engineer Remote
- IT security engineer Remote
- security engineering manager Remote
- aws cloud security engineer Remote
- senior security operations engineer Remote
- dlp security engineer Remote
- senior application security engineer Remote


