Security Engineer, Product & Production Infrastructure

Cacheflow

United States

On-site

USD 207,000 - 283,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Wiz is seeking a Security Engineer for Product & Production Infrastructure to perform security reviews, vulnerability management, and detection and response in cloud-native environments. You’ll collaborate with software development and DevOps teams to secure Wiz’s products, CI/CD, and production infra.

You’ll influence the product roadmap by using threat modeling and implementing scalable security controls across cloud resources and Kubernetes, while building automation and policy-as-code to

Qualifications

  • 7+ years of experience in security engineering or security operations work in cloud environments.
  • Experience with AWS cloud security, or equivalent experience in Azure and GCP with some level of AWS experience.
  • Experience with cloud-native Kubernetes services (such as EKS, GKE, or AKS) and strong container security principles.
  • Experience securing IAM and cloud identities at scale.
  • Experience leading technical security reviews of products and architectures, conducting threat modeling exercises, and translating findings into actionable security controls.
  • Practical understanding of web application security concepts (such as OWASP Top-10 and similar).
  • Experience with Infrastructure as Code (IaC) and related tools (such as Terraform, CloudFormation, Helm, or Pulumi).
  • Experience with automation and tooling development in Python, Go, Shell, HCL, or Rego.

Responsibilities

  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
  • Build automation, policy-as-code, and security tooling that enables development teams to "shift left" and integrate end-to-end security into their workflows.
  • Design and implement secure baselines for cloud resources and Kubernetes based infrastructure.
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents.
  • Collaborate with our Wiz Federal team – extending our DevSecOps and Product Security practices to Wiz's FedRAMP environment and ensure it meets key security requirements.
  • Build deep functional partnerships with Wiz's engineering and operations teams – helping them deliver secure-by-design solutions.

Skills

Threat modeling
Security reviews
Cloud security
Kubernetes security
IaC tools
Automation tooling
Python/Go
Vulnerability management

Education

Bachelor's degree in CS or related field

Tools

Terraform
CloudFormation
Helm
Pulumi
Kubernetes (EKS/GKE/AKS)

Job description

Come join the organization that is redefining security for the AI era. As one of the fastest-growing startups ever, we enable teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. Trusted by security teams all over the world, we have a proven track record of success and a culture that values world-class talent. Not to mention, we're now powered by Google, meaning we offer our customers an AI-powered platform that harnesses Google’s Threat Intelligence and Security Operations to better detect, prevent, and respond to threats across all environments, allowing for further innovation.

Our Wizards from all over the globe work together to protect the infrastructure of our customers, including over 65% of the Fortune 100, who trust us to scan and secure over 230 billion files daily. We’re honored to be a leading player in a massive and growing market, and we continue to look for exceptional Wizards who are eager to make a significant impact on our team. At Wiz, you’ll have the freedom to think creatively, dream big, and use your full range of skills to contribute to our momentous growth. Come join our team and help us create secure cloud environments that allow even the best companies to move faster, all while having some fun!

Minimum qualifications
  • 7+ years of experience in security engineering or security operations work in cloud environments.
  • Experience with AWS cloud security, or equivalent experience in Azure and GCP with some level of AWS experience.
  • Experience with cloud-native Kubernetes services (such as EKS, GKE, or AKS) and strong container security principles.
  • Experience securing IAM and cloud identities at scale.
  • Experience leading technical security reviews of products and architectures, conducting threat modeling exercises, and translating findings into actionable security controls.
  • Practical understanding of web application security concepts (such as OWASP Top-10 and similar).
  • Experience with Infrastructure as Code (IaC) and related tools (such as Terraform, CloudFormation, Helm, or Pulumi).
  • Experience with automation and tooling development in Python, Go, Shell, HCL, or Rego.
Preferred qualifications
  • Bachelor's degree in computer science or a related field, and/or equivalent job experience in lieu of a degree.
  • Experience working with remote, globally distributed teams.
  • Experience working in organizations that develop software and/or operate managed infrastructure and technology services for their own customers.
  • Experience with CNAPP, CSPM, or CIEM solutions.
About the job

Wiz is looking for a Security Engineer for Product & Production Infrastructure who has experience performing security reviews, vulnerability management, and detection and response operations in cloud-native environments. You’ll get to collaborate with our software development and DevOps teams to secure Wiz’s products, CI/CD infrastructure, and production infrastructure. You’ll also have the opportunity to influence our product roadmap by utilizing Wiz-for-Wiz to assess, monitor, and harden our environments.

Responsibilities
  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
  • Build automation, policy-as-code, and security tooling that enables development teams to "shift left" and integrate end-to-end security into their workflows.
  • Design and implement secure baselines for cloud resources and Kubernetes based infrastructure.
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents.
  • Collaborate with our Wiz Federal team – extending our DevSecOps and Product Security practices to Wiz's FedRAMP environment and ensure it meets key security requirements.
  • Build deep functional partnerships with Wiz's engineering and operations teams – helping them deliver secure-by-design solutions.
Compensation + Benefits

Compensation for this full-time position includes base salary + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Learn more about benefits at Google.

The US base salary range for this full-time position is listed below.

US Base Pay Range
  • $207,000 — $283,000 USD

Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship.

Wiz is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics.

By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Technical Program Manager, Security
Senior Technical Program Manager, Security

Cacheflow • United States

On-site
USD 189,000 - 258,000
Senior Solutions Engineer, Public Sector
Senior Solutions Engineer, Public Sector

Cacheflow • Atlanta (GA)

On-site
USD 153,000 - 211,000
Equity
Bonus
Senior Customer Experience Manager (East)
Senior Customer Experience Manager (East)

Cacheflow • United States

On-site
USD 110,000 - 151,000
Senior Partner Technical Enablement Manager
Senior Partner Technical Enablement Manager

Wiz • United States

On-site
USD 136,000 - 185,000
Chief of Staff, Security Customer Engineering
Chief of Staff, Security Customer Engineering

Wiz • United States

On-site
USD 211,000 - 291,000
Cyber Threat Intel Analyst
Cyber Threat Intel Analyst

Cacheflow • Washington

On-site
USD 160,000 - 220,000
Account Executive, SLED Central
Account Executive, SLED Central

Cacheflow • Chicago (IL)

On-site
USD 166,000 - 190,000
Equity
Annual bonus
Account Executive, SLED West
Account Executive, SLED West

Cacheflow • Seattle (WA)

On-site
USD 166,000 - 190,000
Manager, Solution Engineering, Public Sector
Manager, Solution Engineering, Public Sector

Cacheflow • Washington

On-site
USD 207,000 - 230,000
Medical, dental and vision insurance
Home Office Setup reimbursement
Flexible Spending Accounts
+5
Threat Detection Researcher (Windows/Linux/MacOS)
Threat Detection Researcher (Windows/Linux/MacOS)

Cacheflow • New York (NY)

On-site
USD 200,000 - 250,000