远程工作雷达

高级安全工程师

Senior Security Engineer

开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差
公司Wpromote
薪资$145,000 - $170,000/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求与中国几乎无重叠,需长期倒时差
用工类型permanent
发布时间2026-08-06
数据来源4dayweek.io
前往 4dayweek.io 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。
作息提示:与中国几乎无重叠,需长期倒时差。

职位描述

高级安全工程师是一个新设立的高级个人贡献者职位,将推动Wpromote安全工程计划的设计、实施和持续改进。

向IT总监汇报,你将作为IT领导层真正的合作伙伴,凭借深厚的专业知识,提升整个组织的安全决策。这不是一个分析师或应用安全的角色;你将被期望构建和改进我们的安全系统,适合那些热衷于从头到尾负责一个领域并不断提高标准的人。

这是一个远程职位,将在整个职能范围内担任高级安全人员和问题升级的主要联系人。

在Wpromote,我们相信只有优秀的人才能做出出色的工作。我们的目标是打造一个更好、更具包容性的职场环境,并通过以下政策和福利,在员工职业生涯的每个阶段支持他们。作为Ad Age和Glassdoor以及Adweek的“最快成长数字机构”之一,我们正在快速扩展团队,引入新的专家,以不断突破营销领域的可能性。

我们提供:
- 无限带薪休假
- 延长的节假日(冬季)
- 100% 的育儿假
- 401(k) 配比
- 医疗、牙科、视力、人寿、宠物保险
- 资助的人寿保险
- 短期残疾保险和其他自愿保险
- 年度课程通行证积分等!

该职位的预期年薪范围为145,000至170,000美元,具体取决于每位候选人的多种因素,包括技能、工作经验年限和深度、教育和认证、市场竞争基准、职责范围、市场动态、地理位置以及相应州的非豁免员工薪资门槛。在Wpromote,薪资范围可能会根据第三方薪资基准调查中类似职位的特定市场中位数进行调整。该范围内的具体薪资可能因技能、经验和可用预算而有所不同。该职位的总薪酬包将包括上述福利。

*此职位可在除少数例外之外的美国大多数州远程工作
**虽然此职位提供远程工作的灵活性,但我们设有洛杉矶、芝加哥和纽约的办公中心,你可以参与学习和发展的机会

查看英文原文

The Role
 
The Senior Security Engineer is a newly established senior individual contributor role that will drive the design, implementation, and continuous advancement of Wpromote's security engineering program.

Reporting to the Director of IT, you will operate as a true partner to IT leadership, trusted to shape security decisions with a depth of expertise that elevates the whole organization. This is not an analyst or application security role; you will be expected to build and improve our security systems, ideal for someone energized by owning a domain end to end and continuously raising the bar.

This is a remote role, serving as a senior security presence and point of escalation across the function.
 
At Wpromote, we believe that great work is only possible with great people. Our goal is to build a better, more inclusive work environment and support our people at every stage of their careers by prioritizing a strong work-life balance through our policies and benefits listed below. As a Best Place to Work according to both Ad Age and Glassdoor and Adweek’s Fastest Growing Digital Agency, we are moving fast to expand our teams and bring new experts into the fold to keep pushing the boundaries of what’s possible in marketing.
 
We offer:
-Unlimited PTO
-Extended Holiday break (Winter)
-100% paid parental leave
-401(k) matching
-Medical, Dental, Vision, Life, Pet Insurance
-Sponsored life insurance
-Short Term Disability insurance and additional voluntary insurance
-Annual Class Pass credits and more!
 
The anticipated annual salary for this role will range from $145,000 - $170,000, based on a variety of factors unique to each candidate, including skill set, years and depth of experience, education and certifications, competitive benchmarks, scope of responsibility, market dynamics, geographic location, and the respective state’s salary threshold for exempt employees. At Wpromote, pay ranges are subject to change and are based on specific market medians for similar jobs according to third-party salary benchmark surveys. Individual pay within that range can vary due to skills, experience, and available budget.  The total compensation package for this role will include benefits (listed above).
 
*This position may be performed remotely in most states within the US, with some exclusions
**While this role offers the flexibility to work remotely, we have office hubs in Los Angeles, Chicago, and New York, where you can join in on learning and development opportunities, fun events, take advantage of a space to work, and collaborate in person!
***This position is not eligible for immigration sponsorship
 
Important Notice: Beware of Job Scams
Wpromote recruiting communications will only be sent through our official channels via wpromote.com email addresses. If you see a posting elsewhere that is not reflected on Wpromote.com/careers, it may be a fraudulent posting. We do not require payment or fees during the hiring process nor do we request sensitive information, such as Social Security numbers or payment details. Please safeguard yourself against possible scams and contact us if you encounter any suspicious activity.
 
#LI-SD
#LI-Remote

You Are
Composed under fire: When a security event lands, you move toward it, not away. You stay methodical and let the evidence drive your decisions, instead of panicking or jumping to conclusions.
Relentlessly current: You live at the leading edge of the security field, tracking emerging threats, techniques, and tooling, and you treat staying ahead of the threat landscape as a core part of the job rather than an afterthought.
Evidence-driven and precise: You distinguish what is observed from what is assessed, and you hold that line even when stakeholders are pushing for a certainty you cannot yet responsibly give.
Deeply autonomous: You own investigations end to end, escalating genuine judgment calls rather than routine unknowns, and you operate with high autonomy on security architecture and incident decisions.
A detailed planner who executes: You translate ambiguous problems into granular, sequenced plans of action, then deliver against them. Your plans are specific enough that others can trust and follow them.
A builder at heart: You are energized by owning solutions, testing new ideas, and driving improvements quickly rather than settling for the status quo.
An audience-aware communicator: You write clearly for executive, technical, and non-technical readers, and you exhibit good judgement and discretion during sensitive incidents where accuracy, confidentiality, and timing matter

You Will Be
Owning the Security Tooling Portfolio: Evaluating, integrating, and rationalizing the security tool stack so investments are coherent, well-integrated, and earning their value
Owning Identity and Access Architecture: Designing identity, access, and session governance across Google Workspace and additional identity providers, including least-privilege design, credential and secrets hygiene, service-identity architecture, and joiner, mover, and leaver controls at the design layer.
Governing Cloud Security Posture: Defining security requirements for the GCP environment and translating them into policy and controls across Cloud IAM, organization policy, service account governance, and audit logging. Partnering with platform engineering on implementation, governing posture against those requirements, and feeding cloud telemetry into the detection pipeline.
Advancing Authentication and Secrets: Driving our phishing-resistant MFA strategy such as passkeys and hardware keys, strengthening secrets-management architecture, and advancing SAML SSO, SCIM provisioning, and session policy across the SaaS environment.
Governing OAuth and Token Lifecycle: Owning OAuth app vetting and governance, token lifecycle and revocation, and third-party application risk management.
Owning Incident Response: Owning incident response and forensic practice, running investigations independently, and coordinating external partners during major escalations.
Applying Security Automation and DaC: Treating detection, policy, configuration, and response automation as code that is version-controlled, peer-reviewed, and tested. Partnering with platform engineering on Terraform and cloud guardrails where security controls intersect with infrastructure.
Developing Internal Capability: Mentoring and developing team members on security practice over time, and partnering with the Director of IT to inform security decisions across the organization.

You Must Have
5+ years of hands-on security engineering experience in a professional environment, with a track record of owning security architecture and projects end to end
Detection engineering experience, including selecting, building, and operating a SIEM, writing and tuning detections, and owning log pipelines, alerting, and monitoring
4+ years of hands-on security cloud engineering, GCP strongly preferred, including Cloud IAM, organization policy, service account governance, and audit logging
Deep identity and access management expertise, including federation (SAML SSO) and SCIM provisioning and deprovisioning
SaaS identity security depth, including phishing-resistant MFA (passkeys, hardware keys), secrets-management architecture, and OAuth app governance, token lifecycle, and third-party application risk
Hands-on incident response and forensic methodology, including sound evidence handling
Endpoint security posture experience, including EDR operations (CrowdStrike Falcon or equivalent) and device-trust or conditional-access design
Experience operating vulnerability management or exposure management programs, including prioritization by exploitability, asset criticality, and business risk
Security automation and infrastructure-as-code fluency, including detection-as-code and a tool such as Terraform, at a level beyond ad hoc scripting

Nice to Have
A background in infrastructure, cloud platform, DevOps, SRE, or systems engineering before moving into security, bringing an automation-first foundation to detection and governance work
Experience scaling or maturing a security program in a fast-growing environment
Industry certifications (GCP Professional Cloud Security Engineer, GIAC such as GCIH, GCDA, or GDAT, CISSP, OSCP)
Experience managing least-privilege access across many vendor systems, including those that do not support SSO
Player-coach or mentoring experience: while this role is scoped as a senior individual contributor, candidates who can develop internal talent will be considered for expanded scope
Exposure to SOC 2 or similar compliance frameworks, partnering with GRC on audit readiness
Scripting and automation experience (Python, Bash) for security tooling and workflow optimization

Wpromote is committed to bringing together individuals from different backgrounds and perspectives, providing employees with a safe and welcoming environment free of discrimination and harassment. We strive to create a diverse & inclusive environment where everyone can thrive, feel a sense of belonging, and do impactful work together. As an equal opportunity employer, we prohibit any unlawful discrimination against a job applicant on the basis of their race, color, religion, gender, gender identity, gender expression, sexual orientation, national origin, family or parental status, disability*, age, veteran status, or any other status protected by the laws or regulations in the locations where we operate. We respect the laws enforced by the EEOC and are dedicated to going above and beyond in fostering diversity across our workplace.
 
Applicants with disabilities may be entitled to reasonable accommodation under the terms of the Americans with Disabilities Act and certain state or local laws. A reasonable accommodation is a change in the way things are normally done which will ensure an equal employment opportunity without imposing undue hardship on Wpromote.
 
This employer participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S. If E-Verify cannot confirm that you are authorized to work, this employer is required to give you written instructions and an opportunity to contact Department of Homeland Security (DHS) or Social Security Administration (SSA) so you can begin to resolve the issue before the employer can take any action against you, including terminating your employment. Employers can only use E-Verify once you have accepted a job offer and completed the Form I-9. For more information on E Verify, or if you believe that your employer has violated its E-Verify responsibilities, please contact DHS.

本页面信息整理自 4dayweek.io,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

B2B战略总监

WpromoteUnited States$150,000 - $175,000/年permanent今天
市场运营限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级软件工程师I,全栈开发

WpromoteUnited States$135,000 - $155,000/年permanent昨天
开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级媒体策划师(B2B策略)

WpromoteUnited States$75,000 - $90,000/年permanent4 天前
市场运营限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级直接IO经理

WpromoteUnited States$77,000 - $90,000/年permanent4 天前
市场运营限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

← 返回全部职位