Summary
What you’ll impact
Our company is seeking a hands‑on Security Engineer to own and strengthen security across its cloud environment, endpoints, and internal systems, while supporting related companies. The role balances day‑to‑day security operations with automation to manage a globally distributed environment and protect valuable real‑world data.
Responsibilities
What you'll do
- Own day-to-day security operations across PIP Labs and related companies, including monitoring, alert triage, incident response and remediation.
- Secure and administer our AWS environment, with some exposure to Google Cloud, and continuously improve our cloud security posture.
- Manage endpoint security and device controls using tools such as CrowdStrike and Jamf.
- Automate recurring security and IT workflows so that controls can scale across multiple companies without unnecessary manual work.
- Partner with infrastructure and engineering teams to identify risks, improve configurations and ship practical fixes, including contributing code or pull requests where appropriate.
- Own dependency hygiene and software supply chain security, ensuring third-party code is appropriately vetted, pinned and continuously monitored for compromise.
- Support identity, access, device and other internal IT security needs for a globally distributed team.
- Develop and maintain clear security procedures, playbooks and documentation.
- Help assess and strengthen how sensitive and valuable real-world datasets are ingested, stored, accessed and protected across the DATA Network ecosystem.
- Contribute to security readiness in a high-threat environment, including protection against targeted account compromise, credential theft and sophisticated social-engineering attempts.
Requirements
What you’ll bring
- Professional experience in cloud security, IT security, security engineering or a closely related role.
- Strong practical knowledge of AWS security, including identity and access management, logging, monitoring and secure configuration.
- Experience operating endpoint detection and response and device-management tooling. Experience with CrowdStrike and Jamf is strongly preferred.
- A track record of automating operational workflows through scripting, APIs, infrastructure tooling, agents or security orchestration.
- Comfort handling both security engineering and hands‑on internal IT responsibilities.
- A proactive, low‑ego approach. You identify gaps, propose solutions and follow work through to completion.
- Excellent written and spoken English, with the ability to communicate clearly across technical and non‑technical teams.
- Sound judgment under pressure and a practical approach to balancing security, speed and usability.