Remofirst

Remofirst

Remofirst: Simplifying global HR solutions with streamlined payroll, compliance, and remote hiring in 180+ countries.

Professional Services
11-50
Founded 2021

Description

  • Own the architecture and security of the customer-facing Auth0 implementation, including SCIM provisioning and OIDC federation with enterprise identity providers.
  • Manage and automate the internal Okta environment, including SSO, lifecycle management, hardware-based MFA, and complex RBAC.
  • Enforce least privilege across the AWS environment by managing IAM policies and service control policies.
  • Conduct internal pentests and vulnerability scans against Python/Django and Java/Spring Boot services and coordinate with third-party pen testers.
  • Review application code and help engineers build secure services, databases, and message streams across Postgres and Kafka.
  • Own SAST and DAST processes, including detection of license misuse and outdated libraries.
  • Define guardrails for AI initiatives, including prompt data privacy and model pipeline security.
  • Lead SOC 2 Type II and ISO 27001 efforts, maintain the risk register, and support security questionnaires from customers.
  • Use compliance automation tools and manage the Trust Center in Thoropass to keep the organization audit-ready.
  • Help draft and implement practical security policies covering data residency, logging, audit trails, and non-repudiation.

Requirements

  • 5+ years of experience in security engineering.
  • Experience with Python/Java environments, including Django, FastAPI, and Spring Boot.
  • Experience with Kafka, RabbitMQ, PostgreSQL, and some MongoDB.
  • Strong knowledge of AWS infrastructure, including EKS, RDS, IAM, and S3.
  • Familiarity with IAM tools such as Okta and/or Auth0.
  • Understanding of SAML, OIDC, and API-based security.
  • Familiarity with the SOC 2 and ISO 27001 audit cycle.
  • Comfortable working with internal and external Risk & Compliance teams.
  • Ability to explain ISO 27001 requirements to software engineers in practical terms.
  • Bonus: awareness of OWASP Top 10 for LLMs, including prompt injection and data leakage risks.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

IoT & OT Network Engineer Associate

Nebius 51-250 Internet Software & Services

Nebius is hiring a Junior IoT & OT Network Engineer to support secure connectivity and network security for IoT, OT, and corporate environments within its Cyber Security organization.

DNS IoT Linux Network Security TCP/IP Wireshark
31 minutes ago

Head of Security

Label Your Data 51-250 Internet Software & Services

Label Your Data is hiring a Head of Security to build and lead its standalone security function, owning security operations, strategy, and maturity while collaborating with the group security team.

Cybersecurity SIEM
31 minutes ago

Security Automation Engineer

ProArch 251-1K Internet Software & Services

ProArch is hiring a remote Security/SOAR Automation Engineer in India to design and scale cybersecurity automation for a global MSSP SOC environment supporting clients across modern security ecosystems.

Cybersecurity DevSecOps JSON PowerShell Python REST API SIEM SOC Splunk
47 minutes ago

Senior Linux Systems Engineer, Edge Compute and Communications - Active Clearance Required

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Linux Systems Engineer to support sensitive classified defense programs by building and maintaining tactical edge computing infrastructure for UAS products.

Active Directory Bash Linux PowerShell
47 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers