Apricot International Logo

Apricot International

Security Engineer

Posted 21 Days Ago
Remote
Hiring Remotely in USA
Mid level
Remote
Hiring Remotely in USA
Mid level
Assess and reduce security risks across AWS infrastructure, applications, CI/CD pipelines, containers, and AI/LLM integrations. Responsibilities include threat modeling, security reviews, integrating SAST/DAST/SCA tools, hardening cloud and Kubernetes environments, automating security and incident-response workflows, and remediating vulnerabilities from scans and bug bounty programs.
The summary above was generated by AI

This is a remote position.

Strengthen cloud, application, and AI security by embedding practical controls across infrastructure, delivery pipelines, and incident workflows.

Organization: A confidential client; further details will be shared with shortlisted candidates, subject to client confidentiality requirements
Location: Remote - open to candidates in Egypt, Jordan, and other countries nearshore to the client's operating region
Role Type: Full-time | Consultant/contractor | Fixed-term project (6-8 months)
Reports to: To be confirmed

The opportunity
Our client is looking for a Middle+ Security Engineer to assess and reduce security risk across AWS infrastructure, application delivery, containers, and LLM/AI integrations. In this role, you will combine hands-on security engineering with automation, vulnerability remediation, and cross-functional technical review.

About the organization
Our client is a UAE-based HRTech scale-up transforming workplace operations across HR, Payroll, Finance, and Insurance in the MENA region. It helps employers and employees manage the full workplace lifecycle through a unified platform.

What you will do

  • Conduct threat modeling and security reviews for cloud infrastructure and LLM/AI integrations.
  • Integrate SAST, DAST, and SCA tools directly into CI/CD pipelines.
  • Harden AWS environments, Infrastructure as Code scripts, and Kubernetes workloads and containers.
  • Automate repetitive security tasks, alerting, and incident-response workflows using custom scripts.
  • Triage, investigate, and remediate vulnerabilities identified through automated scans and Bug Bounty programs.

What you bring

  • At least 3 years of professional experience in Security Engineering, DevSecOps, or a related role.
  • Scripting proficiency in Python, Go, or Ruby.
  • Deep hands-on experience with AWS cloud security services (IAM, VPC, GuardDuty, WAF, Inspector).
  • Practical experience with AppSec tooling (Burp Suite, OWASP ZAP, Snyk, or SonarQube).
  • Experience with container and orchestration security controls (Docker, Kubernetes).
  • Knowledge of Infrastructure as Code (IaC) security reviews (Terraform or CloudFormation).
  • Familiarity with AI/LLM security risks (OWASP Top 10 for LLMs, RAG architectures, API security).

How the engagement works

Contracting party: You will contract directly with Apricot, which will manage contracting, invoicing/payroll, payments, and administrative support. Day to day, you will work closely with the client team and follow the agreed scope, deliverables, and security requirements.

You are expected to provide your own laptop and basic equipment, maintain reliable connectivity and a secure working environment, and follow required security controls, including two-factor authentication.

Planned check-ins are at month 1 to see how the engagement is working and help address issues, given the shorter 6–8 month duration.

About Apricot
Apricot is a nonprofit sourcing firm connecting displaced and underserved professionals from Palestine and the wider MENA region with global employment opportunities. We combine a clear social-impact mission with fast, high-quality recruitment delivery for international clients.


Similar Jobs

Yesterday
Remote or Hybrid
125K-155K Annually
Senior level
125K-155K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Designs and evaluates secure enterprise technology deployments through end-to-end security and threat analysis. Partners with business, IT, and cybersecurity teams on network, application, cloud, and enterprise security controls. Develops security guidance and mitigation requirements, communicates cybersecurity programs to stakeholders, documents best practices, and provides technical mentorship across concurrent initiatives.
Top Skills: CcpaCis Critical Security ControlsCloud Security MatrixCwe/Sans Top 25Endpoint Detection And Response (Edr)GdprHipaaIaasMitre Att&CkNist CsfOwasp Top 10PaasPci DssSaaSSox
2 Days Ago
Remote or Hybrid
United States
145K-245K Annually
Mid level
145K-245K Annually
Mid level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Partners with engineering teams to identify and remediate product security risks across the software development lifecycle. Responsibilities include threat modeling, secure architecture and coding guidance, security testing, vulnerability prioritization, penetration testing coordination, bug bounty remediation, application monitoring, developer training, and secure deployment practices. The role also advances AI-assisted security tooling, DevSecOps practices, security champions, Kubernetes and container security, and scalable risk-based remediation frameworks.
Top Skills: Ci/CdContainer Security ScannersCybersecurity AiDastDevsecopsGoJavaJavaScriptKubernetesNist Ai Risk Management FrameworkOpenssf Ai/Ml Security FrameworkOwasp Ai Security And Privacy GuidePythonRubySastScaTypescript
7 Days Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
Mid level
Mid level
Artificial Intelligence • Big Data • Cloud • Security • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Own and improve vulnerability management across cloud, on-premises, network, and endpoint environments. Responsibilities include scanning, triage, risk-based prioritization, remediation coordination, SLA tracking, exception management, closure validation, asset reconciliation, reporting, incident support, on-call participation, and audit documentation. The role partners with Engineering, SRE, IT, and Infrastructure teams and uses security tooling and AI-assisted workflows to reduce exposure and recurring vulnerabilities.
Top Skills: Api AutomationAWSCmdbQualysRapid7 InsightvmTenableWiz

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account