Search...

Senior Cloud Security Engineer II

Incode logo
Incode

Incode is an AI-driven identity verification and fraud-prevention company. It provides enterprise tools for identity and age verification, KYC/KYB/AML workflows, deepfake detection, workforce identity protection, and fraud analytics.

San Francisco, USA
About Incode

Incode Technologies provides an enterprise identity orchestration platform that helps organizations verify customers, businesses, employees, and autonomous AI systems. Its products combine biometric and document verification, liveness and deepfake detection, fraud intelligence, analytics, case management, APIs, SDKs, and no-code workflow tools. It serves large organizations across financial services, healthcare, online gaming and gambling, e-commerce, public sector, and social media.

View jobs by Incode

Skills

About the Role

YOU will be the architect of trust across a multi cloud environment. YOU will design and operationalize a forward leaning cloud security program that protects hybrid and private environments at scale. YOU will embed proactive, risk based security controls into infrastructure from Kubernetes and Terraform to cloud native services and identity architecture. YOU will ensure environments are resilient, observable, and secure by default. YOU will build, deploy, and maintain production security tools to monitor networks, endpoints, and cloud workloads. YOU will build and evolve low touch infrastructure using Terraform, Kubernetes, and immutable images. YOU will integrate security into applications and customer data and support a secure software development lifecycle. YOU will collaborate with security, compliance, SRE, and product engineering teams to elevate the cloud security posture, automate risk reduction, and help engineers reason about security. YOU will mentor peers and share knowledge to raise the security capabilities across teams.

Requirements

  • 5+ years experience deploying and securing services on public cloud infrastructure
  • Detailed understanding of cloud and network security
  • Detailed understanding of Kubernetes components and cloud-native security
  • Strong Linux expertise - you live and breathe Linux environments
  • Fluency in one or more programming or scripting languages
  • Experience building, deploying, and customizing security tools to address threats and lower risk: CSPM, vulnerability scanners, static analyzers, web application firewalls, IDS/IPS, endpoint security monitoring, etc.
  • Knowledge of networking and web protocols (TCP/IP, HTTP, TLS, REST), and the ability to analyze traffic to find anomalies
  • Depth and experience in modern cloud technology components and deployment patterns - virtual machines, containers, Kubernetes (including building and securing clusters from scratch), serverless, and infrastructure as code.
  • Depth and experience with at least one common cloud service provider: AWS, GCP, Azure
  • Understanding of security weaknesses, exploits, attacks and mitigations
  • Experience with most of the following: AWS security tools (GuardDuty, AWS Config, CloudTrail), Terraform, Kubernetes, Containers, Open Policy Agent, Secrets Management, SIEM
  • Excellent collaborative skills
  • Outstanding written and verbal communication

Responsibilities

  • Discover security challenges and partner with teams across the company to implement security recommendations.
  • Build security controls that detect, prevent, and correct cloud vulnerabilities in our very complex, multi cloud, hybrid and private cloud environment.
  • Architect and design infrastructure to support the security team’s mission and ensure well-architected fundamentals (logging, identity and access controls, etc).
  • Build, deploy, and manage production security tools and services to monitor networks, endpoints, and cloud workloads
  • Build, maintain and evolve a reliable and low-touch infrastructure using technologies such as Terraform, Kubernetes, and immutable images
  • Facilitate the security baked into our cloud infrastructure for our applications and customer data
  • Contribute changes to production security infrastructure and platforms (e.g., configure GuardDuty or AWS Config, Kubernetes, VPNs, Secrets Manager, etc)
  • Help your peer engineers grow their own security reasoning and knowledge

Benefits

  • Flexible Working Hours & Workplace
  • Open Vacation Policy
Senior Cloud Security Engineer II at Incode | JobStash