As a Product Security Engineer, you will focus on threat modeling, security assessments, and vulnerability management to enhance the security of Bloomreach's platform.
Senior Security Engineer - Remote
๐ Description
- Oversee security across the entire infrastructure and codebase.
- Conduct penetration testing and proactively identify system vulnerabilities.
- Assess and improve security across enterprise deployments.
- Identify and remediate security flaws in applications, DevOps pipelines, and cloud environments.
- Strengthen data protection controls including encryption, access management, audit logging, and secure hosting.
- Lead compliance initiatives for SOC 2, ISO 27001, and GDPR.
๐ ๏ธ Requirements
- 3 to 6 years of experience in Security Engineering.
- Hands-on experience with Penetration Testing and Vulnerability Assessment.
- Strong understanding of Application Security and Code Security practices.
- Experience identifying security risks across codebases, CI/CD pipelines, and cloud environments.
- Working knowledge of AWS, GCP, and Azure security best practices.
- Experience with Docker and Kubernetes security.
- Familiarity with SAST, DAST, dependency scanning, and vulnerability management tools.
- Knowledge of SOC 2, ISO 27001, and GDPR compliance frameworks.
- Experience with Git and CI/CD systems.
- Strong written and verbal communication skills in English.
Full job description
Security Engineer with 3โ6 years of experience to strengthen infrastructure, application, cloud, and compliance security across a fast-growing AI startup operating in a regulated domain.
Company Details
Conqr AI is an early-stage startup building AI solutions for regulated, document-heavy professional workflows. The company focuses on privacy, security, reliability, and delivering high-impact AI products for enterprise users.
Website: https://www.conqr.ai/
Requirements
3 to 6 years of experience in Security Engineering.
Hands-on experience with Penetration Testing and Vulnerability Assessment.
Strong understanding of Application Security and Code Security practices.
Experience identifying security risks across codebases, CI/CD pipelines, and cloud environments.
Working knowledge of AWS, GCP, and Azure security best practices.
Experience with Docker and Kubernetes security.
Familiarity with SAST, DAST, dependency scanning, and vulnerability management tools.
Knowledge of SOC 2, ISO 27001, and GDPR compliance frameworks.
Experience with Git and CI/CD systems.
Strong written and verbal communication skills in English.
Experience securing AI/ML systems is a plus.
Responsibilities
Oversee security across the entire infrastructure and codebase.
Conduct penetration testing and proactively identify system vulnerabilities.
Assess and improve security across enterprise deployments.
Identify and remediate security flaws in applications, DevOps pipelines, and cloud environments.
Strengthen data protection controls including encryption, access management, audit logging, and secure hosting.
Lead compliance initiatives for SOC 2, ISO 27001, and GDPR.
Support audit preparation, security reviews, and certification activities.
Establish secure development practices and security review processes.
Partner with Engineering, DevOps, and ML teams to embed security throughout the development lifecycle.
Drive continuous improvement of the organization's security posture.
Job Details
Location: Remote
Interview Process
Recruiter Screening
Hiring Manager Discussion
Technical Security Assessment
Founder Round
Final HR Discussion
Important Note
ClanX is a recruitment partner, helping Conqr AI hire a Security Engineer.
Similar jobs
Search more Cybersecurity Engineer jobsAs a Product Security Engineer, you will enhance user privacy and security by analyzing vulnerabilities, integrating security practices, and collaborating with engineering teams to ensure secure software development.
As a Security Engineer, you will actively identify and remediate vulnerabilities, build detection mechanisms, and respond to security incidents within a cloud environment.
Security Engineer
As an Abuse Control Engineer on the ACE team, you will design, prototype, and incubate technical defenses to protect Stripe's financial ecosystem from complex abuse vectors.
Security Engineer โ Cloud & Infrastructure Security
As a Security Engineer, you will design and implement security controls to protect cloud infrastructure and applications while collaborating with various teams to enhance security measures.
