HUMAN
Securitas Security Services USA, Inc.
ELRADO SECURITY SERVICE LLC
Primal Protection Service
Confero
HW3
Securitas Security Services USA, Inc.
Wealthy Group of Companies LLC
CoreWeave
Clay Labs
Alpha-Tx Solutions LLC
Simone Development Companies
Bloomberg
Harvard Partners, LLP, Trusted Advisors to IT
FHR
Clover Security
Figma
Custom Protective Services
Premier Talent Partners
Techfellow Limited
QCIC
Modal
Insight Global
Thread AI
Capula Investment Management LLP
HUMAN is looking for a skilled Security Engineer to join their New York team. This senior role focuses on strengthening product security and automating compliance processes. With 7+ years in info security, you'll be collaborating with various teams to improve security protocols. Responsibilities include developing scripts for security tools, leading compliance initiatives, and participating in incident response efforts. A strong background in cloud environments and security frameworks is essential. This is an opportunity to work in a dynamic, diverse environment committed to cybersecurity.
We are seeking a hands-on Security Engineer to join our small, high-impact security team that protects our products, corporate environments, and customers. This is a senior individual contributor role that sits at the intersection of corporate security, incident response, compliance and product security. In this role, you will partner closely with multiple teams to embed security into how we build, operate, and defend HUMAN. Location: USA East Coast or UK
Build and automate – Develop scripts, tooling, and infrastructure (e.g., Python code) to automate security controls and workflows. Evaluate and integrate security tooling where it meaningfully improves capabilities or coverage.
Design and implement automation controls for compliance programs (ISO 27001, ISO 27701, SOC 2, and PCI DSS), including evidence collection, execution, and reporting.
Build and maintain integrations among security, IT, and cloud tools (e.g., SIEM, EDR/MDR, SOAR, ticketing, asset inventory) using APIs, webhooks, and SDKs.
Own technical delivery for security projects, from design and prototyping through implementation, documentation, and handoff.
Create and maintain reusable libraries, scripts, and modules that the security team and IT can use to standardise how we talk to common platforms.
Partner with Incident Response – Design and implement logging and detection content needed to support high-quality investigations. Participate in incident response efforts as a senior technical responder and adviser. Support security operations and incident response as an engineer when needed, for example, by building collection scripts, queries, or ad hoc tooling to answer investigation questions.
Architect and improve controls across endpoint, identity, and SaaS environments (e.g., Okta/Google, Cyera, CrowdStrike).
Help define and implement baseline security configurations for corporate systems and services. Encode policies and standards into technical guardrails where possible, reducing reliance on manual checks and spreadsheets.
Collaborate with IT – Automate provisioning, hardening, and continuous monitoring in support of the identity lifecycle. Build and maintain automation for organizational changes (join/move/leave) and monitoring of organizational drift.
Raise the security bar by working cross functionally to translate HUMAN’s policies and audit requirements into clear, understandable controls and runbooks, and by defining practical metrics that reflect how those controls are operating in production.
7+ years of experience in information security or software engineering roles such as security engineer, platform engineer, or GRC engineer, with clear responsibility for building and automating security controls.
Strong familiarity with modern cloud environments (AWS, GCP, or Azure) and their security controls.
Strong coding or scripting skills in at least one language (for example, Python, Go, etc.) working with APIs, automation, and infrastructure as code.
Practical experience with at least some of:
Familiarity with governance, risk, and compliance frameworks (such as ISO 27001, ISO 27701, SOC 2, or PCI DSS), and an interest in encoding those requirements into technical controls and workflows.
Comfortable working with common security and IT tooling (for example, IAM, SIEM, EDR/MDR, ticketing, asset inventory) and stitching them together into coherent workflows.
Comfortable working in ambiguous, fast moving environments, prioritizing impact, and driving work to completion in a small, high ownership team. Clear, concise communicator who can explain designs, tradeoffs, and implementation details and influence both technical and non-technical stakeholders.
HUMAN is an equal opportunity workplace dedicated to protecting the internet's integrity for everyone. We believe in putting people first, embracing diversity of thought from our global teams, and welcoming all individuals to share their unique experiences as we fight cybercrime together.
If you are an individual with a disability or special need that requires accommodation, please contact us directly.
* The salary benchmark is based on the target salaries of market leaders in their relevant sectors. It is intended to serve as a guide to help Premium Members assess open positions and to help in salary negotiations. The salary benchmark is not provided directly by the company, which could be significantly higher or lower.