Security Engineer
RemoteSerbia
Job Summary
Conduct vulnerability management lifecycles including scanning, triage, prioritization, and remediation while operating security monitoring and SIEM tooling to investigate alerts and lead incident responses. Improve infrastructure security across Linux hosts, cloud environments, networks, and containers by automating patching, evidence collection, and recurring control checks. Own technical controls for identity and access management, least privilege, and secrets, translating SOC 2 and ISO 27001 requirements into effective implementations and producing audit evidence. Coordinate penetration tests and drive technical findings through remediation, maintaining runbooks and risk-based priorities to support engineering teams with practical security guidance.
Required Qualifications
- Proven ownership of technical security in a production SaaS, cloud, hosting, or infrastructure environment
- Strong Linux systems, networking, and cloud-security fundamentals
- Hands-on experience with vulnerability management, patching, hardening, and remediation at scale
- Experience operating SIEM or security-monitoring systems and investigating security events
- Practical understanding of IAM, privileged access, secrets management, certificates, and network controls
- Ability to automate operational work using Python, Bash, infrastructure-as-code, or similar tools
- Experience participating in incident response and communicating clearly during high-pressure situations
- Working knowledge of ISO 27001, SOC 2, or similar security-control frameworks
- Strong written and spoken English and comfort working independently in a remote, asynchronous team
- Good risk judgment: the ability to distinguish urgent security problems, acceptable exceptions, and low-value processes
Desired Qualifications
- Experience with Wazuh or a comparable SIEM/security-monitoring platform
- Experience with Teleport, PAM, or just-in-time access systems
- Experience securing large Linux server fleets or hybrid cloud/on-premise environments
- Familiarity with CI/CD systems, build infrastructure, containers, and software supply-chain security
- Experience supporting SOC 2 or ISO 27001 audits from the technical-control side
- Relevant certifications such as Security+, CISSP, CISM, GIAC, or ISO 27001, although certification is not required
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.