
SecOps Engineer
Clipboard Health
- Location
- United States of America
- Posted
Senior Security Operations Engineer needed to define & improve security processes & systems, focusing on SIEM management & incident response in a 100% remote role.
Clipboard Health
Senior Security Operations Engineer needed to define & improve security processes & systems, focusing on SIEM management & incident response in a 100% remote role.
Workiva
APSE role at Workiva providing technical support to customers through phone, chat, and ticket management
Workiva
Provide expert technical support to Workiva customers via phone, chat, or email; troubleshoot issues, maintain positive customer relationships, and contribute to a positive team culture. Gain experience in database support or network security while advancing your career.
Rackspace
AWS Support Engineer I - Remote - Provide first-level technical support for AWS-based solutions
Rackspace
Design and implement cloud solutions using AWS, automate deployments, mentor team members, and collaborate with stakeholders to ensure optimal cloud infrastructure and customer satisfaction.
Ajax Systems
Join Ajax Systems as a Product Manager to lead technical seminars, develop product strategies, and foster relationships with key partners while working with cutting-edge security technologies.
Nethermind
Lead Okta implementation for identity management, design CI/CD pipelines, use IaC tools like Terraform and Ansible, manage AWS & GCP services, troubleshoot issues, communicate with stakeholders, document configurations, and mentor junior team members as an Infrastructure Engineer at Nethermind.
Gitlab
Support customer GitLab environments, collaborate across teams to improve the product, contribute to documentation and processes, and work in a global, distributed team with flexible benefits.
Gitlab
Support customers by resolving issues in their GitLab environments, collaborate with cross-functional teams, and contribute to improving the product through scripting and documentation.
Voodoo
Join Voodoo's Live Games team as a Level Design QA Engineer and contribute to delivering fun, innovative levels at a fast pace.
Deimos
Lead as a Principal Site Reliability Engineer at Deimos, driving cloud-native solutions and fostering team growth through mentorship and technical leadership.
Rackspace
L4 AWS Support Engineer: Provide expert-level technical support for complex AWS-based solutions, lead critical incident response, and drive strategic initiatives.
CoinsPaid
Senior R&D Engineer for blockchain and crypto-processing solutions at CoinsPaid
Rocket Money
Machine Learning Engineer at Rocket Money, developing reusable ML pipelines and systems for personalized product experiences and accurate customer segmentation.
Rackspace
Lead cloud automation and optimization at Rackspace as a Senior DevOps Engineer. Utilize AWS, Terraform, Docker, Kubernetes, and monitoring tools to ensure high availability and reliability of systems. Collaborate with teams to deliver exceptional customer solutions and mentor colleagues while maintaining strong technical expertise in DevOps practices.
neptune.ai
Join our remote team as a Staff Site Reliability Engineer to optimize infrastructure, implement automation, ensure security, and collaborate on scalable solutions for Neptune's global platforms.
Kayzen
Join Kayzen as a Solution Engineer and collaborate with our team to provide expert guidance on integrating our products into customer systems.
Kraken
Join a mission-focused crypto company as a backend developer, integrating systems with blockchains and protecting client funds.
JumpCloud
Senior Analytics Engineer at JumpCloud: drive data modeling, curation, and self-service across the analytics team and organization.
StackAdapt
Lead technical solutions for enterprise clients at StackAdapt, mentor the Sales Engineering team, collaborate with product teams, develop scalable integrations, and present advanced advertising technology solutions to senior stakeholders. Enjoy competitive benefits including salary, RRSP matching, comprehensive health care, work from home reimbursements, training programs, and a supportive culture.
Clipboard Health
Clipboard Health is seeking a founding Senior Security Operations Engineer to shape the future of their security operations. As the first hire, you will define and improve security processes and systems, focusing on operational security work, SIEM management, and incident response. You will lead investigations, automate workflows, and partner with IT teams to refine procedures. The role requires at least 5 years of security incident response experience, leading security incidents as an Incident Commander, and experience with major cloud providers like AWS or GCP. You will have high autonomy and trust in a fast-growing tech environment, with opportunities for growth and impact.
We are looking for a founding Senior Security Operations Engineer to join Clipboard Health and shape the future of our security operations. As the first hire in this function, you will have the unique opportunity to define and improve security operations processes and systems. This role will focus on operational security work at Clipboard, including bolstering our situational awareness, automating cloud security detection and response capabilities, improving the security posture of 3rd party tools, and ensuring that security issues are handled as they arise. The culture is high-autonomy and high-trust, valuing speed and impact. We are looking for candidates with SIEM management and security D&R experience in web and cloud environments.
This is a 100% remote role, open exclusively to individuals who are legally authorized to work within the United States.
Security Operations, Investigation, and Incident Response
Lead investigations into security alerts and reported security events in a cloud-based environment.
Automate investigation workflows and integrate tools to accelerate response times and reduce manual intervention.
Serve as the Incident Commander, driving response efforts during security incidents, from containment through recovery and post-mortem analysis.
Define, document, and continuously improve security operations playbooks to ensure rapid and effective handling of security events.
Partner with IT and support teams on refining procedures relating to security.
SIEM Management
Develop and implement SIEM detections and alerting mechanisms using Terraform, Datadog, and other security tools.
Onboard, enrich, and normalize diverse log sources across cloud environments, applications, and endpoints.
Collaborate with engineering teams to instrument deployed resources with tooling, enhance security auditing capabilities, and improve visibility in our environment.
Vulnerability Management
Manage vulnerability tracking and reporting, ensuring vulnerabilities are tracked and assigned across teams.
Negotiate acceptable remediation approaches and prioritization with owning teams.
Drive remediation efforts, ensuring timely and thorough patching of identified security weaknesses.
Vendor Platform & Service Security
Evaluate and enhance the security posture of third-party services and integrations (e.g., Google Workspace, Slack, Zapier), ensuring optimal configuration and ongoing monitoring.
Monitor and respond to phishing emails and other security threats within Google Workspace.
Need to Have:
At least 5 years of security incident response experience, such as working in a SOC or on a CIRT/DIRT team.
Experience leading security incidents as the incident commander.
Investigate security events, coordinating with other teams and organizations as needed.
Build high-confidence, low-noise security detections and alerts.
Experience with major cloud providers, such as AWS or GCP, and cloud technologies like Docker.
Comfortable with the Linux command line and able to use scripting languages to accelerate workflows, like Bash and Python.
Knowledge of web & cloud vulnerability categories and familiarity with CVSS.
Strong understanding of SaaS platform security, including access controls and phishing prevention.
Pragmatically balance business needs against security risk.
Clear written communication, including correspondence with internal stakeholders and third parties through documents, Slack messages, and emails.
Nice to Have:
Experience with infrastructure-as-code for writing detections, particularly Terraform.
Experience conducting vendor security reviews.
Ability to properly configure SAML SSO integrations.
Experience with systems administration or software development.
Experience working in high growth tech environments