Join our security operations team to defend the infrastructure powering our next-generation network operating system (NOS) and internal services. As a SecOps Engineer, you’ll run the tools, policies, and monitoring systems that keep our engineering environment safe while enabling rapid delivery.
This is a hands-on opportunity to lead detection, hardening and incident response across Linux servers, macOS endpoints, and Windows systems, protecting both production and development environments.
What You’ll Do
- Design, implement, and maintain security controls and baselines across Linux, macOS, and Windows environments.
- Manage and improve identity and access management (SSO, MFA, LDAP/SAML integrations, privileged account management).
- Harden build servers, containers, and CI/CD pipelines against supply-chain and insider threats.
- Deploy, configure, and tune endpoint security, IDS/IPS, vulnerability management and SIEM solutions.
- Monitor logs and telemetry (ELK, Grafana, SIEM) to detect and respond to suspicious activity.
- Lead and document incident response: triage, containment, root-cause analysis, and remediation.
- Collaborate with developers, IT, and DevOps to embed security best practices into daily workflows.
- Maintain security documentation, runbooks, and playbooks for audits and compliance.
What We’re Looking For
- Strong background in defending Linux systems (servers, containers) with solid macOS and Windows knowledge.
- Experience operating IAM, MFA, and SSO solutions (Okta, Keycloak, Azure AD, etc.)
- Familiarity with network security concepts (firewalls, VPNs, segmentation, IDS/IPS).
- Hands-on with vulnerability scanning, patch management, and endpoint protection tools.
- Scripting skills (Bash, Python, PowerShell) to automate security and monitoring tasks.
- Ability to interpret and act on alerts/logs from SIEM, IDS, and monitoring systems.
- Clear communication skills and the ability to coordinate with both engineering and non-technical teams.
Ways to Stand Out
- Deep experience building and tuning blue-team capabilities in CI/CD environments (Jenkins, GitLab CI, Ansible, Terraform).
- Expertise in container security (Docker, Kubernetes, image scanning, runtime policies).
- Proven record of leading incident response or digital forensics investigations.
- Certifications such as CISSP, GIAC, CompTIA Security+, or vendor-specific (AWS Security, Microsoft, Cisco).
- Familiarity with compliance frameworks (ISO 27001, SOC 2, NIST, GDPR).
- Track record of automating security processes or developing internal defensive security tools.