About the Role
We are seeking an experienced security engineer with broad expertise across AWS infrastructure security, application security, and identity/access management. This role involves owning security end-to-end as the first or sole security hire at a fast-moving startup, building security programs from scratch, and making the secure path the easy path.
Responsibilities
- Own infrastructure security across the entire AWS environment, designing guardrails that make the secure default also the fastest one.
- Take ownership of application security across web and desktop clients, embedding threat modeling, dependency/supply-chain controls, and secure code review into how the team designs and ships.
- Build and manage identity and access controls for both humans and AI agents, ensuring every actor reaches exactly what it needs and nothing more.
- Design audit trails and access controls that make autonomous agent activity fully reconstructable.
- Own IT security in partnership with the IT MSP — devices, endpoints, and access for a 12-person in-office team.
- Stand up and run compliance, auditability, bug bounty, VDP, and pentest programs that prove security posture to clients, partners, and auditors.
Requirements
- Experienced security engineer with broad expertise across AWS infrastructure security, application security, and identity/access management.
- Owned security end-to-end as the first or sole security hire at a fast-moving startup.
- Comfortable operating with high autonomy in a small team.
- Experience building security programs from scratch.
- Track record of making the secure path the easy path rather than gatekeeping.
- Experience securing AI/agent systems (bonus points).
- Experience working in financial services (bonus points).
Skills
- AWS infrastructure security (VPC, VPN peering, network segmentation, IAM, secrets management)
- Application security (threat modeling, dependency/supply-chain controls, secure code review)
- Identity and access management (SSO, RBAC, least-privilege design) for humans and non-human actors
- IT security (endpoint security, device management, access controls)
- Compliance and auditability program experience (SOC2, pentest coordination, vulnerability management)
Experience Level
- Experienced
About the Company
- We provide Recruitment and Staffing services to many industries and domain through our innovative and customized solutions and passionate commitment to research.
- Ability to understand the hiring strategies, availability of talent and compensation benchmarking makes us proud hiring partner for various industries.
- We work as trusted business partners and always strive to deliver the most value and highest return on investment for our clients.
- We are highly trained business professionals with strong understanding of clients need.
- We work closely with the leading staffing trade associations, training, and research organizations to ensure we are knowledgeable of industry trends and technologies.
Equal Opportunity
- All your information will be kept confidential according to EEO guidelines.
