Remofirst

Remofirst

Remofirst: Simplifying global HR solutions with streamlined payroll, compliance, and remote hiring in 180+ countries.

Professional Services
11-50
Founded 2021

Description

  • Own the architecture and security of the customer-facing Auth0 implementation, including SCIM provisioning and OIDC federation with enterprise identity providers.
  • Manage and automate the internal Okta environment, including SSO, lifecycle management, hardware-based MFA, and complex RBAC.
  • Enforce least privilege across the AWS environment by managing IAM policies and service control policies.
  • Conduct internal pentests and vulnerability scans against Python/Django and Java/Spring Boot services and coordinate with third-party pen testers.
  • Review application code and help engineers build secure services, databases, and message streams across Postgres and Kafka.
  • Own SAST and DAST processes, including detection of license misuse and outdated libraries.
  • Define guardrails for AI initiatives, including prompt data privacy and model pipeline security.
  • Lead SOC 2 Type II and ISO 27001 efforts, maintain the risk register, and support security questionnaires from customers.
  • Use compliance automation tools and manage the Trust Center in Thoropass to keep the organization audit-ready.
  • Help draft and implement practical security policies covering data residency, logging, audit trails, and non-repudiation.

Requirements

  • 5+ years of experience in security engineering.
  • Experience with Python/Java environments, including Django, FastAPI, and Spring Boot.
  • Experience with Kafka, RabbitMQ, PostgreSQL, and some MongoDB.
  • Strong knowledge of AWS infrastructure, including EKS, RDS, IAM, and S3.
  • Familiarity with IAM tools such as Okta and/or Auth0.
  • Understanding of SAML, OIDC, and API-based security.
  • Familiarity with the SOC 2 and ISO 27001 audit cycle.
  • Comfortable working with internal and external Risk & Compliance teams.
  • Ability to explain ISO 27001 requirements to software engineers in practical terms.
  • Bonus: awareness of OWASP Top 10 for LLMs, including prompt injection and data leakage risks.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Engineer II

LivePerson 1K-5K Internet Software & Services

LivePerson is hiring a security professional on its Global Product and Tech: CISO team to help protect cloud, infrastructure, and IT systems while improving security operations across a global environment.

Active Directory Elasticsearch Linux macOS Python
14 hours, 18 minutes ago

Public Key Infrastructure (PKI) Architect

Capital Technology Group 51-250 Internet Software & Services

Capital Technology Group is seeking a PKI Architect to modernize and support enterprise public key infrastructure and identity trust services for mission-critical federal systems.

Ansible AWS Azure CI/CD Cybersecurity DevSecOps Docker HashiCorp Vault Kubernetes SonarQube Splunk
15 hours, 3 minutes ago

Senior Cybersecurity Engineer - Freelance

Netguru 251-1K Internet Software & Services

Netguru is hiring a Senior Cybersecurity Engineer to support a technical white-box security audit of a client's data and AI ecosystem, including Google Cloud tools, data pipelines, third-party integrations, and LLM/AI agents.

Agile CI/CD Cybersecurity GCP Network Security
15 hours, 33 minutes ago

Staff Information Security Engineer - AI First

Rithum Internet Software & Services

Rithum is hiring a Staff AI-First Information Security Engineer to secure AI adoption across its commerce platform by designing and automating guardrails, controls, and monitoring for cloud, enterprise, and AI-powered systems.

AWS LLM Python SIEM Terraform
1 day, 14 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers