远程工作雷达

云安全工程师

Cloud Security Engineer

开发工程限定地区(需当地身份)
公司Hex
薪资$198,750 - $295,000
工作地点Remote (US) / San Francisco / New York
地域资格限定地区(需当地身份)
时区要求无特别要求
用工类型FullTime
发布时间2026-02-06
数据来源Ashby
前往企业招聘页投递 →
注意地域限制:该职位明确限定在 Remote (US) 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

Hex 正在扩大我们的团队,致力于让每个人都能成为数据专家。我们的平台解决了当前数据和分析工具中的关键痛点,使任何人都能通过自然语言探索数据,无需代码或借助代码,在可信的上下文中进行操作。Ramp、Figma、Stubhub、Anthropic 和 Gamma 等数千家客户喜欢 Hex,因其出色的用户界面、代理式超级能力以及无限的灵活性。

Hex 已从 Sequoia、a16z、Snowflake 和 Amplify 等领先投资方筹集了超过 1 亿美元。我们在旧金山和纽约设有办公中心,并在美国和英国拥有远程员工。我们是一支高自主性的团队,快速交付并享受工作过程。观看我们的 Hex 简介视频和员工手册,了解更多关于在 Hex 工作的内容。

职位描述:

我们正在寻找一位经验丰富的云安全工程师加入 Hex 的安全团队。你将负责确保我们云基础设施的安全性和弹性,为云安全实践提供领导力,并与我们的基础设施和工程团队紧密合作,保护我们的云原生应用。

- 设计、实施和管理 AWS 环境和 Kubernetes 集群的安全解决方案和控制措施,包括 Hex 的 RCE-as-a-Service 平台适当的隔离/沙箱方法

- 使用 Terraform 构建、部署和维护基础设施即代码,确保严格执行安全标准

- 对 AWS 云基础设施和 Kubernetes 部署进行安全评估、威胁建模和审计

- 与开发和运维团队合作,将安全最佳实践嵌入 CI/CD 流水线

- 监控和响应云安全事件,识别根本原因并推荐修复措施

- 提供与云安全相关的合规性要求的专业知识(例如 SOC 2、ISO 27001、GDPR、HIPAA、PCI DSS)

- 指导工程师并在整个组织中倡导云安全

我们希望你具备:

- 5 年以上云安全工程经验,具有丰富的 AWS 经验

- 在 Kubernetes 安全方面有扎实的技能,包括集群加固、基于角色的访问控制等

查看英文原文

ABOUT HEX

Hex is growing our team of builders on a mission to make everyone a data person. Our platform solves key pain points with today’s data and analytics tooling, and empowers anyone to explore data using natural language, with or without code, on trusted context. Thousands of customers like Ramp https://hex.tech/customers/ramp/, Figma https://hex.tech/customers/figma/, Stubhub https://hex.tech/customers/stubhub/, Anthropic, and Gamma love Hex https://www.g2.com/products/hex-tech-hex/reviews for our beautiful UI, agentic superpowers, and boundless flexibility.

Hex has raised over $100M from leading investors like Sequoia, a16z, Snowflake and Amplify. With office hubs in San Francisco and New York, as well as remote team members throughout the US and UK, we’re a high-agency team that ships fast and has fun doing it. Check out our Intro to Hex video https://www.youtube.com/watch?v=qAXsnrNlavk and employee handbook https://www.notion.so/hexhq/Hex-Handbook-9fff0d42860e4f70815c599e0d1664d6 to learn more about what it’s like to work at Hex.

ABOUT THE ROLE:

We are looking for an experienced Cloud Security Engineer to join Hex’s security team. You will be responsible for ensuring the security and resilience of our cloud infrastructure, providing leadership in cloud security practices, and collaborating closely with our infrastructure and engineering teams to secure our cloud-native applications.

- Design, implement, and manage security solutions and controls for AWS environments and Kubernetes clusters, including appropriate isolation/sandboxing methods for Hex’s RCE-as-a-Service platform

- Build, deploy, and maintain infrastructure-as-code using Terraform, ensuring robust security standards are enforced.

- Conduct security assessments, threat modeling, and audits on AWS cloud infrastructure and Kubernetes deployments.

- Collaborate with development and operations teams to embed security best practices into CI/CD pipelines.

- Monitor and respond to cloud security incidents, identifying root causes and recommending remediation actions.

- Provide expertise in compliance requirements related to cloud security (e.g., SOC 2, ISO 27001, GDPR, HIPAA, PCI DSS).

- Mentor engineers and advocate for cloud security across the organization.

ABOUT YOU:

- 5+ years of experience in cloud security engineering, with extensive expertise in AWS.

- Demonstrated proficiency with Kubernetes security including cluster hardening, role-based access control (RBAC), network policies, and container vulnerability management.

- Expert-level knowledge and hands-on experience with Terraform.

- Familiarity with AWS security services (e.g., IAM, GuardDuty, Security Hub, CloudTrail, WAF).

- Familiarity with CNAPP solutions such as Wiz

- Familiarity with SIEM solutions such as Panther

- Solid understanding of secure software development lifecycle practices, CI/CD security, and DevSecOps methodologies.

- Relevant certifications such as AWS Certified Security – Specialty, Certified Kubernetes Security Specialist (CKS), and Terraform Associate certification are highly desirable.

- Bonus points for security certifications from SANS or OffSec.

- Excellent problem-solving, communication, and leadership skills.

OUR ENGINEERING TEAM

We’re a group of engineers who are forging new ground together and love partnering with Security on our journey to pull ahead of our competition. You can read about how we think through problems as well as how we learn from mistakes on our blog here:

- How we took down production… https://hex.tech/blog/we-took-down-production/

- Beyond Linear Notebooks https://hex.tech/blog/beyond-linear-notebooks/

- A pragmatic approach to live collaboration https://hex.tech/blog/a-pragmatic-approach-to-live-collaboration/

OUR STACK

Our product is a web-based notebook and app authoring platform. Our frontend is built with Typescript and React, using a combination of Apollo GraphQL and Redux for managing application state and data. On the backend, we also use Typescript to power an Express/Apollo GraphQL server that interacts with Postgres, Redis, and Kubernetes to manage our database and Python kernels. Our backend is tightly integrated with our infrastructure and CI/CD, where we use a combination of Terraform, Helm, and AWS to deploy and maintain our stack.

The salary range for this role is: $198,750 - $295,000

In addition to our unique culture, Hex proudly offers a competitive total rewards package, including but not limited to, market-benched salary & equity, comprehensive health benefits, and flexible paid time off.

The salary range shown may be a reflection of additional factors such as geographical location and skill ranges/levels we’re open to. Placement in the salary range will be decided upon completion of the interview process, taking into account factors like leaving room for growth, internal fairness & parity, your demonstrated skills, and the depth of your experience. Our Recruiting team will be able to provide more details during the interview process.

By submitting an application the candidate consents to the use of their personal information in accordance with the Hex Privacy policy: https://learn.hex.tech/docs/trust/privacy-policy.

本页面信息整理自 Ashby,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位