About the job
Join our dynamic team at the forefront of innovation in the facilities management industry! We are collaborating with a rapidly expanding software startup that is transforming this sector through groundbreaking, industry-first solutions.
In this senior, hands-on position, you will play a pivotal role in enhancing CI/CD pipelines, securing cloud infrastructure, troubleshooting intricate production challenges, and driving security improvements. You will also work closely with developers to elevate engineering practices.
Your contributions will ensure our environments are secure, scalable, cost-efficient, and operationally sound, while also aiding in the long-term modernization of our platform architecture.
This role carries significant responsibilities in core platform security engineering, which includes managing identity and access, data protection, vulnerability management, and implementing ISO 27001-compliant technical controls.
Key Responsibilities:
- Enhance and maintain AWS infrastructure.
- Work with containerized and serverless workloads.
- Oversee cloud security posture, including network segmentation, security group design, WAF implementation, and infrastructure hardening in line with best practices (e.g., CIS benchmarks).
- Refine and maintain CI/CD pipelines.
- Enhance deployment safety, consistency, rollback capabilities, and release quality.
- Establish best practices for building, testing, deploying, and promoting environments.
- Implement security gates to prevent the deployment of high-risk code or misconfigured infrastructure.
- Manage a structured vulnerability management program, including scanning, prioritization, remediation SLAs, and reporting.
- Define and enforce identity and access management standards, including role-based access control, least privilege, and automated provisioning and deprovisioning.
- Support ISO 27001-aligned controls, audit readiness, and technical compliance requirements.
- Lead or assist in root cause analysis for incidents, outages, and major performance issues.
- Drive preventative improvements following production incidents.
- Facilitate a transition from reactive firefighting to disciplined operational management within engineering.
- Implement and manage centralized logging and security monitoring, with alerting in alignment with security risks and incidents.
- Collaborate with software engineers on best practices for infrastructure, deployment, and operations.
- Provide clear recommendations to engineering leadership regarding operational risk, priorities, and trade-offs.

