This job has expired

This position was posted on March 12, 2026 and is likely no longer accepting applications. We've kept it here for historical reference. Check out the similar jobs below!

Menlo Security Inc. logo

Security Engineer

Job Overview

Location

US - Distributed

Job Type

Full-time

Category

Security Engineer

Date Posted

March 12, 2026

Full Job Description

đź“‹ Description

  • • Join Menlo Security Inc., a rapidly growing cybersecurity leader, as a forward-thinking Security Engineer. Our mission is to enable the world to connect, communicate, and collaborate securely without compromise, a mission that has become even more critical in today's evolving landscape. As we expand from 400 employees into our next phase of growth, fueled by significant investment from top-tier firms like Vista Equity Partners, General Catalyst, JPMC, American Express, HSBC, and Ericsson Ventures, we are seeking passionate, agile, and ethical talent to join our dynamic team.
  • • In this pivotal role, you will be instrumental in shaping and securing our cloud architecture, with a primary focus on SecOps within a complex, multi-cloud environment encompassing both AWS and GCP. You will navigate and secure a sophisticated infrastructure that includes traditional virtual machines alongside modern managed and unmanaged container-based architectures. This position offers a unique opportunity to operate at the forefront of cloud security, driving innovation and ensuring the robust protection of our cutting-edge product.
  • • As a key member of a lean and agile team, your core responsibility will be the aggressive automation of security processes. You will be tasked with deploying, integrating, and meticulously monitoring Jenkins and GitLab pipelines. This ensures that our “Security as Code” philosophy scales seamlessly with our infrastructure, embedding security directly into our development and deployment workflows. Your expertise will be crucial in the strategic deployment and ongoing management of Cloud Security Posture Management (CSPM), Cloud Native Application Protection Platform (CNAPP), and Cloud Workload Protection Platform (CWPP) tools. These tools will serve as critical force multipliers, enhancing our team's efficiency and effectiveness.
  • • Your operational approach must be characterized by speed and a relentless pursuit of automation, moving beyond manual triage to proactive, intelligent security. Success in this role hinges on your ability to continuously tune alerting mechanisms, ensuring high-fidelity signals that minimize alert fatigue. You will be responsible for building sophisticated automated response workflows that can swiftly address security incidents, thereby maintaining operational resilience and minimizing potential impact.
  • • A significant aspect of your role will involve conducting rigorous infrastructure reviews. You will meticulously examine cloud configurations, Identity and Access Management (IAM) policies, and orchestration layers to ensure they consistently meet our stringent security baselines. This critical work must be balanced with maintaining our rapid release velocity, ensuring that security enhancements do not impede our ability to innovate and deliver quickly.
  • • Key responsibilities include driving multi-cloud governance across AWS and GCP by deploying and managing CSPM tools to detect and remediate misconfigurations. You will implement container security lifecycle strategies by integrating container image scanning into CI/CD pipelines, effectively shifting security left. Furthermore, you will deploy and tune CWPP tools to monitor workload runtime behavior and detect anomalies in both VMs and Kubernetes pods.
  • • You will be a champion for advanced automation and Security Orchestration, Automation, and Response (SOAR), building automated response playbooks to enrich alerts, isolate compromised resources, and dismiss low-fidelity noise. Managing effective permissions across complex multi-cloud IAM structures and standardizing secret management workflows are also key duties. In collaboration with Technical Program Managers (TPMs), you will enforce compliance standards, oversee vulnerability scanning during software releases, and respond to customer inquiries regarding the impact of Common Vulnerabilities and Exposures (CVEs) on our product, ensuring customer trust and product integrity.
  • • This role demands a pragmatic mindset, enabling you to prioritize risks based on runtime context and business impact, rather than solely relying on scanner outputs. You will design and maintain shared CI/CD security components (SAST/SBOM/Container Scanning) that are easily adoptable by engineering teams, minimizing friction and promoting widespread security adoption. Your expertise in securing managed and unmanaged container workloads, with a strong emphasis on automating runtime defenses and admission controllers, will be vital. You will also implement and manage Just-In-Time (JIT) access policies to replace manual ticket processes and eliminate standing privileges, significantly enhancing our security posture. Due to the role’s involvement in federal compliance activities, US citizenship is a requirement.

Skills & Technologies

Python
Express
AWS
GCP
Kubernetes
Onsite
$105k-185k

Ready to Apply?

You will be redirected to an external site to apply.

Menlo Security Inc. logo
Menlo Security Inc.
Visit Website

About Menlo Security Inc.

Menlo Security Inc. offers a cloud-based security platform designed to protect organizations from malware and phishing threats. Their core technology, the Cloud Secure Gateway, isolates potentially harmful content in a virtual environment, preventing it from reaching end-user devices. This approach eliminates threats at the source, ensuring a safe browsing experience for users across all devices and locations. The platform integrates with existing security infrastructure and provides comprehensive visibility and control over web, email, and document-based threats. Menlo Security's solution is built on a Zero Trust principle, focusing on containment and adaptive security to defend against evolving cyberattacks and protect sensitive data.

Get more remote jobs like this

Subscribe to the weekly newsletter for similar remote roles and curated hiring updates.

Newsletter

Weekly remote jobs and featured talent.

No spam. Only curated remote roles and product updates. You can unsubscribe anytime.

Similar Opportunities

Expired
London Office
Full-time
Expired May 12, 2026
Onsite

3 months ago

Apply
Expired
Sydney
Full-time
Expired Apr 14, 2026
Senior
Onsite

3 months ago

Apply
Expired
Remote - Bulgaria
Full-time
Expired Apr 25, 2026

3 months ago

Apply
Brazil - Remote
Full-time
Expires Jul 16, 2026
Python
Java
AWS
+4 more

11 days ago

Apply