BlackCloak Logo

BlackCloak

Security Engineer

Posted 13 Days Ago
Easy Apply
Remote
Hiring Remotely in United States
100K-140K Annually
Mid level
Easy Apply
Remote
Hiring Remotely in United States
100K-140K Annually
Mid level
As a Senior Security Engineer, you'll enhance security measures, support a Secure SDLC, manage cloud security, and respond to security incidents. You will collaborate with teams and develop security tools for application, cloud, and network security.
The summary above was generated by AI
BlackCloak’s mission is to protect corporate executives and high-profile individuals in their personal lives, mitigating risks to their families, companies, reputation, and finances. We defend our clients’ digital lives from hackers, privacy leaks, and identity theft. If you are passionate about helping to protect others, then keep reading - this may be your next great opportunity. 

As a Senior Security Engineer, you will be part of BlackCloak’s internal technology team supporting corporate security, information technology operations, and compliance. This is a critical role that is both hands-on and strategic, influencing and driving success for BlackCloak and its clients by designing, deploying, and supporting technology solutions for all areas of the business.

What you will do

  • Application Security (Primary)
  • Champion application security program strategy and implementation, including but not limited to various controls towards a “shift-left” security model, Security Champions program, adoption and implementation of SAST, DAST, other application security tools.
  • Assist in maturation of the Secure SDLC, including threat modeling, security architecture and requirements guidance, as well as secure code development training.
  • Work directly with developers to triage findings, provide remediation guidance, and foster a security-first culture.
  • Manual testing support for light red teaming such as POC’ing vulnerabilities, leading penetration tests via vendor engagements and/or internally led testing, and validating security findings.
  • Cloud & Infrastructure Security (Secondary)
  • Partner with Engineering, DevOps, to secure GCP, AWS environments
  • Leverage Cloud Security tools such as CNAAP, to remediate discovered misconfigurations, vulnerabilities, and triage of Cloud Security alerts.
  • Develop and implement secure infrastructure baselines, vulnerability management processes, secrets managements, IAM, and hardening standards within the cloud environment.
  • Incorporation of shift-left security tests and controls, into CI/CD pipelines
  • Help expand monitoring capabilities within tools such as SIEM, CNAAP, including implementation of required cloud architecture/logging, onboarding of log sources to security tools, and detection rules for cloud-based threats.
  • Zero Trust & Network Security (Support)
  • Strengthen Zero Trust posture by expanding usage of Cloudflare WARP, WAF, other Zero Trust tooling and principles
  • Collaborate with the IT team to enhance endpoint security policies within EDR tools such as SentinelOne, Crowdstrike, as well as secure hardening standards into MDM
  • Support design and implementation of IAM best practices/principles for workforce and client identity, leveraging tools such as; Google IDP, Okta, Auth0, Zitadel
  • Security Operations & Incident Response (Support)
  • Review, design, and implementation of new Security Tools - support administration across tools such as SIEM, EDR, CNAAP, Email Security, and others.
  • Support security and risk assessments for new tools, vendors, and relationships with broader Security and IT team.
  • Assist in development of new threat detections, playbooks, and automated response/remediation
  • Support triage and response of security alerts, as an escalation point from the broader team.
  • Participate in supporting security on-call rotation

What You Need to be Successful

  • 3-5 years of hands-on experience in a security engineering role, preferably within a cloud-native, startup environment
  • Experience building or contributing to a Secure SDLC program, leveraging application security tools, supporting security architecture reviews
  • Demonstrated experience securing public cloud environments, with a strong preference for Google Cloud Platform (GCP).
  • Experience building or contributing to a Secure SDLC program.
  • Hands-on experience with modern security tooling, including
  • SAST/SCA: Snyk, Checkmarx, Veracode, or similar.
  • CNAPP: Wiz, Prisma Cloud, or similar.
  • EDR: SentinelOne, CrowdStrike, or similar.
  • SIEM: Google SecOps, Splunk, or other modern platforms.
  • A solid understanding of Zero Trust, IAM principles and practical experience implementing solutions with tools like Cloudflare.
  • Proficiency in at least one scripting language (e.g., Python, Bash) to automate security tasks and processes. 
  • Excellent problem-solving skills and the ability to work collaboratively with both technical (Engineering) and non-technical (GTM) teams.
  • A proactive, "builder" mindset with a passion for improving processes, reducing risk.
  • Preferred Candidate will have:
  • Familiarity with Infrastructure as Code (IaC) and its security implications (e.g., Terraform).
  • Knowledge of compliance frameworks such as SOC 2, GDPR, NIST CSF
  • Familiarity with common application development languages such as Java or JavaScript
  • Understanding of system and architecture design principles, from code to cloud
  • Relevant industry certifications (e.g., GCLD, GCP Cloud Security Engineer, GCSA).

About BlackCloak
BlackCloak is an extremely fast-growing company in an entirely new product category. We have amazing product fit validated by industry awards and an impressive client base of Fortune 500 companies across all industries. 

BlackCloak offers a competitive salary, exceptional benefits, and a dynamic work environment.  Below is a quick summary of BlackCloak’s generous benefits package for full-time employees includes:

- 100% Remote Company, within the USA
- Comprehensive Medical, Dental, and Vision plans with a 100% employer-paid monthly premium option for employees & 50% employer-paid monthly premiums for dependents. 
- Health Savings Account with company contribution for eligible medical plans.
- Flexible Vacation Plan 
- 10 Paid Company Holidays 
- 100% employer-paid Life, AD&D and Short- and Long-Term Disability Insurance
- 401k with Traditional and Roth options, including employer match.
- Company Equity 
- Paid Parental and Pregnancy Recovery Leave
- Company and team off-sites and virtual events throughout the year 
- Home office stipend 

We are an equal opportunity employer. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, marital status, age, disability, national or ethnic origin, military service status, citizenship, or other protected characteristic.

Learn More about Us
Website: https://blackcloak.io
LinkedIn: /blackcloak
Twitter: @BlackCloakCyber
White Paper: https://bc.blackcloak.io/quantifying-the-business-need-for-digital-executive-protection-report-download

#liremote

Top Skills

AWS
Bash
Checkmarx
Cloudflare
Cnaap
Crowdstrike
Dast
Edr
GCP
Google Secops
Prisma Cloud
Python
Sast
Sentinelone
SIEM
Snyk
Terraform
Veracode
Wiz

Similar Jobs

21 Hours Ago
Remote or Hybrid
New York, NY, USA
125K-155K Annually
Senior level
125K-155K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
The Staff Cyber Security Engineer will focus on securing AI technologies, developing threat models, and guiding engineering teams to ensure secure deployments aligned with Cyber Security strategies.
Top Skills: AICis Critical Security ControlsCloudCyber SecurityMitre Att&CkMlNist CsfOwasp
22 Hours Ago
In-Office or Remote
5 Locations
195K-285K Annually
Expert/Leader
195K-285K Annually
Expert/Leader
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense
The Principal Enterprise Security Engineer will architect security measures for infrastructure, automate processes, and safeguard corporate assets, data, and networks while ensuring secure adoption of technologies like enterprise AI.
Top Skills: AzureGoLinuxM365macOSPowershellPythonWindows
Yesterday
Remote or Hybrid
Orlando, FL, USA
160K-200K Annually
Senior level
160K-200K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The role involves defining and executing security strategy, leading cloud migration initiatives, overseeing security in hybrid and cloud environments, and mentoring engineers.
Top Skills: AnsibleAWSAzureBashGCPGoPuppetPythonSIEMSplunkTerraform

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account