Onit

Onit

Onit provides automated legal operations and workflow software designed to enhance productivity and strategic decision-making across various industries by utilizing an AI-native framework for managing enterprise legal workflows, contracts, vendors, and...

IT Services
251-1K
Founded 2011
$216M raised

Description

  • Develop and execute cybersecurity engineering and operations strategy, roadmaps, architecture standards, and performance metrics.
  • Design and improve security controls across AWS and corporate environments, including identity, networks, workloads, containers, Kubernetes, and data.
  • Own security operations and incident response, including detection, investigation, containment, recovery, playbooks, and automated workflows.
  • Lead vulnerability and exposure management across applications, cloud, endpoints, and external attack surfaces using risk-based remediation priorities.
  • Provide security leadership for Microsoft 365, Entra ID, endpoints, email, application security, product security, and the software development lifecycle.
  • Manage security automation using Terraform, Python, CI/CD, policy-as-code, and cloud-native tooling.
  • Lead, mentor, and develop cybersecurity managers, engineers, and operations staff while defining scalable team structures and processes.
  • Manage security vendors, penetration testing, and managed security services, and advise Engineering, IT, Product, and executive leadership.

Requirements

  • 10+ years of progressive cybersecurity experience, including 5+ years leading security engineering, operations, or cloud security functions.
  • Experience managing managers and technical security teams.
  • Deep expertise securing cloud-native enterprise SaaS applications, with hands-on AWS experience across IAM, VPC, EC2, RDS, S3, EKS/ECS, logging, and monitoring.
  • Strong knowledge of Linux, networking, containers, and Kubernetes.
  • Experience with SIEM, EDR, CSPM, vulnerability management, WAF, security monitoring, and incident response programs.
  • Experience securing Microsoft 365 and Entra ID, including MFA, Conditional Access, privileged identity management, access governance, and just-in-time access.
  • Knowledge of application and API security, including SAST, DAST, SCA, SBOMs, secrets management, authentication, and authorization.
  • Proficiency with Python, Bash, Terraform, APIs, CI/CD, infrastructure-as-code security, and policy-as-code guardrails.
  • Experience using AI and LLM-based tools for security workflows; experience securing AI-enabled applications and integrations is preferred.
  • Preferred experience with multi-tenant SaaS security, CrowdStrike, Cloudflare, DevSecOps, offensive security, SOC 2, ISO 27001, NIST, FedRAMP, or certifications such as CISSP, CCSP, AWS Security Specialty, or GIAC.

Benefits

  • Competitive base compensation with an annual discretionary bonus.
  • Three medical plan options, dental and vision coverage, and employer HSA contributions for HDHP participants.
  • 401(k) with employer matching contributions.
  • Flexible PTO, 7 sick days, and 9 paid company holidays.
  • Paid parental and caregiver leave, plus surrogacy and adoption reimbursement.
  • Employer-paid life and disability insurance, voluntary insurance options, and tax-advantaged accounts.
  • One paid volunteer day annually.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior DevSecOps Engineer

360Learning 251-1K Diversified Consumer Services

360Learning is hiring a Senior DevSecOps Engineer to secure and automate the Azure and Kubernetes infrastructure supporting its collaborative learning platform while strengthening detection, vulnerability management, and audit readiness.

AWS Azure CI/CD GCP GitOps Go Kubernetes Python Secrets Management Shell Scripting SIEM Terraform
3 hours, 34 minutes ago

Senior Detection Engineer, Protective Services

DoorDash 10K-50K Air Freight & Logistics

DoorDash is hiring a Senior Detection Engineer on its Global Safety and Security team to build detection, investigation, and automation capabilities that help Protective Services identify and respond to threats against executives, employees, and operations worldwide.

Go Machine Learning Python SIEM Snowflake SQL
3 hours, 34 minutes ago

Network & Security Support Engineer

Kerv 51-250 IT Services

Kerv Digital is seeking a remote Network & Security Support Engineer to support Kerv Connected Cloud’s managed network and security environments, delivering planned out-of-hours work and resolving critical customer incidents during UK night shifts.

DevSecOps DHCP DNS Fortinet Load Balancing
4 hours, 4 minutes ago

Staff Engineer, Identity & Access Management (IAM)

Recursion 251-1K Pharmaceuticals

Recursion is hiring an Identity and Access Management leader to modernize IAM across its products, infrastructure, and corporate applications while advancing its zero-trust security strategy.

Active Directory AWS Azure C++ Java Linux macOS OAuth OpenID Connect Python SAML Unix
4 hours, 4 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers