Senior Information Security Engineer

10 hours, 23 minutes ago
Full-time
Senior
Cybersecurity
3Pillar Global

3Pillar Global

3Pillar Global is an innovative product development company that builds breakthrough software products to power digital businesses. They offer a range of services including product strategy, management, user experience design, and software engineering ...

Internet Software & Services
1K-5K
Founded 2006
$26M raised

Description

  • Own the end-to-end vulnerability management program across SaaS products, cloud infrastructure, containers, and endpoints.
  • Operate and tune SAST, SCA, and dependency-scanning tools and coordinate remediation with engineering teams.
  • Monitor runtime and infrastructure telemetry for security signals, investigate alerts, and lead containment and follow-up actions.
  • Track and report vulnerability SLAs, mean time to remediate, and other security KPIs to leadership.
  • Enhance the security posture of the Microsoft Azure environment through hardening, policy enforcement, and continuous monitoring.
  • Administer and improve Microsoft Intune for endpoint configuration, compliance, and mobile device management.
  • Tune and maintain Microsoft Defender products for threat detection, response, and reporting.
  • Implement and operate Microsoft Purview controls for data classification, DLP, and information protection.
  • Draft, update, and maintain security policies, standards, and procedures aligned to recognized frameworks.
  • Lead responses to security questionnaires, RFPs, due diligence requests, and vendor risk assessments.
  • Support internal and external audits by collecting evidence and helping remediate findings.
  • Partner with Engineering on secure SDLC practices, threat modeling, and code review guidance.
  • Contribute to security awareness training, phishing simulations, incident response playbooks, and tabletop exercises.

Requirements

  • 4–6 years of professional experience in information security, application security, cloud security, or a closely related role.
  • Hands-on experience securing SaaS applications and workloads running in Microsoft Azure.
  • Demonstrated experience with vulnerability management tooling and processes, including triage, prioritization, and remediation tracking.
  • Working proficiency with some combination of Microsoft Intune, Microsoft Defender, Microsoft Purview, Datadog, GitHub Advanced Security, Dependabot, code scanning, and Snyk.
  • Solid understanding of identity and access management concepts, especially Microsoft Entra ID, conditional access, and least-privilege design.
  • Experience writing or substantially contributing to security policies, standards, or procedures.
  • Experience responding to customer security questionnaires and supporting compliance efforts such as SOC 2 or ISO 27001.
  • Strong written and verbal communication skills with the ability to translate technical risk for technical and non-technical stakeholders.
  • Industry certifications such as CISSP, CCSP, AZ-500, SC-200, SC-100, GCIH, or GSEC are preferred.
  • Scripting or automation experience with PowerShell, Python, or Bash, plus familiarity with Terraform, Bicep, or ARM is preferred.
  • Experience with container and Kubernetes security is preferred.
  • Exposure to threat modeling, secure code review, or penetration testing is preferred.
  • Prior experience in a SaaS company or regulated industry is preferred.

Benefits

  • Remote-first and flexible work environment with office, home, or hybrid options.
  • Global team environment with opportunities to collaborate across regions and cultures.
  • Generous time off.
  • Wellbeing-focused annual cycle, including dedicated wellbeing time.
  • Fitness offerings.
  • Mental health plans, country-dependent.
  • Professional services model that supports career growth and development opportunities.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Staff Information Security Engineer - AI First

Rithum Internet Software & Services

Rithum is hiring a Staff AI-First Information Security Engineer to secure AI adoption across its commerce platform and internal operations by designing guardrails, automating controls, and reducing risk at scale.

AWS LLM Machine Learning Python SIEM Terraform
9 hours, 23 minutes ago

Staff Information Security Engineer - AI First

Rithum Internet Software & Services

Rithum is hiring a Staff AI-First Information Security Engineer to shape and enforce security guardrails for AI-powered products, AI-enabled workflows, and cloud enterprise environments across the company.

AWS Machine Learning Python SIEM Terraform
9 hours, 38 minutes ago

Ingeniero DevSecOps Junior

Multiplica Talent 251-1K Professional Services

Multiplica busca un/a DevSecOps Engineer para diseñar y optimizar la automatización, la infraestructura cloud y la seguridad integrada en el ciclo de desarrollo de software para equipos que entregan productos digitales.

Agile AWS Azure Bash CI/CD CloudFormation Datadog DevSecOps Docker GCP Git GitHub Actions Grafana Jenkins Kubernetes Linux Microservices New Relic Prometheus Python Secrets Management Terraform
10 hours, 8 minutes ago

SecOps Analyst - Systems Implementation & Hardening

CallTek 51-250 Internet Software & Services

Mid-Level SecOps Analyst at a company focused on securing new infrastructure and applications before production through security control implementation, validation, and technical risk review.

AWS Azure Cisco CrowdStrike Cybersecurity Elasticsearch Encryption Fortinet GCP Network Security SIEM
10 hours, 23 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers