Senior Security Engineering Architect
United StatesJob Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
Key Responsibilities
Own and maintain the organization's baseline security standards for Linux hardening, VM image governance, container and Kubernetes security, and CI/CD pipeline security controls, ensuring standards are practical, well-documented, and easy for engineering teams to adopt
Act as the primary bridge between Security, Compliance, and Engineering, translating regulatory and policy requirements into concrete, implementable guidance without blocking delivery velocity
Engage engineering squads in a consultant capacity, embedding into team workflows to assess current security posture, identify gaps, and deliver actionable remediation plans across bare metal, virtual, and container environments
Partner closely with the DevSecOps Engineer to identify security controls that can be codified, ensuring hardening standards, compliance checks, and policy enforcement are built into images, configuration management pipelines, and CI/CD workflows rather than left as manual processes
Champion secure-by-default practices by making security requirements visible early in the design and architecture phase, before engineering teams build
Own the security review process for infrastructure architecture changes, partnering with SecOps on tooling and third-party integration reviews to ensure engineering context and requirements are represented
Develop and maintain accessible runbooks, playbooks, and onboarding materials that enable engineering teams to self-serve security best practices across bare metal, virtual, and container environments
Build and maintain cross-functional relationships to surface emerging risks early, synthesizing findings from engineering teams into prioritized remediation work that can be automated and scaled
Represent engineering's security needs in compliance and risk discussions, ensuring security strategy stays grounded in operational realities
Measure program effectiveness through adoption metrics, policy compliance rates, and mean-time-to-remediate trends, using data to continuously improve both the standards themselves and how they are communicated
Qualifications
5+ years of experience in security engineering, DevSecOps, or a related discipline with direct experience working alongside infrastructure and platform engineering teams
Deep understanding of Linux hardening, container security, and Kubernetes security standards and their practical implementation
Experience translating compliance frameworks (SOC 2, ISO 27001, PCI-DSS, or similar) into actionable engineering requirements
Strong technical writing skills with the ability to produce clear, adoption-focused documentation, runbooks, and onboarding materials
Experience acting in a consultant or embedded capacity with engineering teams, balancing security requirements with delivery velocity
Familiarity with security scanning tools and CI/CD pipeline security controls
Experience measuring and reporting on security program effectiveness using data-driven metrics
Excellent communication skills with a proven ability to build cross-functional relationships and influence without authority
Background in infrastructure security across bare metal, virtual, and container environments
How would you rate this job post?
See what other professionals think about this role.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.