3Pillar Global
Senior Information Security Engineer
Rol remoto de Information Security Engineer con fit claro de ubicación del candidato.
Publicado21 jun 2026
Países elegibles64 países aceptados
Señal de senioritySenior
Modelo de trabajoRemoto
Ubicaciones aceptadas para candidatos
Resumen del rol
Senior Information Security Engineer
Requisitos y responsabilidades
Contenido del rol extraído en secciones para revisar más rápido.
Key Responsibilities
- Vulnerability & Product Security:
- Own the end-to-end vulnerability management program across our SaaS products, cloud infrastructure, containers, and endpoints including identification, triage, prioritization, remediation tracking, and reporting.
- Operate and tune SAST, SCA, and dependency-scanning tooling (e.g., Snyk, GitHub Advanced Security/Dependabot) and partner with engineering teams to drive timely remediation.
- Monitor runtime and infrastructure telemetry (e.g., Datadog) for security signals; investigate alerts and lead containment and follow-up actions.
- Track and report on vulnerability SLAs, mean-time-to-remediate, and other security KPIs to leadership.
- Cloud & Endpoint Security:
- Enhance the security posture of our Microsoft Azure environment including identity, networking, data, and workloads through configuration hardening, policy enforcement, and continuous monitoring.
- Administer and improve Microsoft Intune for endpoint configuration, compliance, and mobile device management.
- Tune and maintain Microsoft Defender (Endpoint, Cloud, and related products) for threat detection, response, and reporting.
- Implement and operate Microsoft Purview controls for data classification, DLP, and information protection.
- Governance, Risk & Compliance:
- Draft, update, and maintain corporate information security policies, standards, and procedures aligned to recognized frameworks (e.g., SOC 2, ISO 27001, NIST CSF).
- Lead the response to customer and prospect security questionnaires, RFPs, and due-diligence requests, and maintain a reusable response library.
- Support vendor risk assessments and third-party security reviews.
- Assist with internal and external audits, evidence collection, and remediation of findings.
- Security Program & Collaboration:
- Partner with Engineering on secure SDLC practices, threat modeling, and code review guidance.
- Contribute to security awareness training, phishing simulations, and a strong security culture across the company.
- Help mature incident response playbooks and participate in tabletop exercises and on-call rotations as needed.
Minimum Qualifications:
- 4–6 years of professional experience in information security, application security, cloud security, or a closely related role.
- Hands-on experience securing SaaS applications and workloads running in Microsoft Azure.
- Demonstrated experience with vulnerability management tooling and process including triage, prioritization (e.g., CVSS, EPSS, exploitability context), and driving remediation through engineering teams.
- Working proficiency with several of the following: Microsoft Intune, Microsoft Defender (Endpoint/Cloud), Microsoft Purview, Datadog, GitHub (Advanced Security, Dependabot, code scanning), and Snyk.
- Solid understanding of identity and access management concepts, particularly Microsoft Entra ID (Azure AD), conditional access, and least-privilege design.
- Experience writing or substantially contributing to security policies, standards, or procedures.
- Experience responding to customer security questionnaires and supporting compliance efforts (SOC 2, ISO 27001, or similar).
- Strong written and verbal communication skills and able to translate technical risk for both engineers and non-technical stakeholders.
Additional Experience Desired:
- Industry certifications such as CISSP, CCSP, AZ-500, SC-200, SC-100, GCIH, GSEC, or equivalent.
- Scripting/automation experience (PowerShell, Python, Bash) and familiarity with infrastructure-as-code (Terraform, Bicep, ARM).
- Experience with container and Kubernetes security.
- Exposure to threat modeling, secure code review, or penetration testing.
- Prior experience in a SaaS company or regulated industry.
What is it like working for 3Pillar Global?
- Imagine a flexible work environment – whether it's the office, your home, or a blend of both. From interviews to onboarding, we embody a remote-first approach.
- You will be part of a global team, learning from top talent around the world and across cultures, speaking English everyday. Our global workforce enables our team to leverage global resources to accomplish our work in efficient and effective teams.
- We’re big on your well-being – as a company, we spend a whole trimester in our annual cycle focused on wellbeing. Whether it is taking advantage of fitness offerings, mental health plans (country-dependent), or simply leveraging generous time off, we want all of our team members operating at their best.
- Our professional services model enables us to accelerate career growth and development opportunities - across projects, offerings, and industries.
- We are an equal opportunity employer. It goes without saying that we live by values like Intrinsic Dignity and Open Collaboration to create cutting-edge technology AND reinforce our commitment to diversity - globally and locally.
Roles similares
Mantén una lista de respaldo.
Kubernetes, Python 13 países aceptados
Senior Backend Engineer (AdTech)Leap ToolsVer rol Kubernetes, Python 13 países aceptados
Senior Backend EngineerLeap ToolsVer rol Claude, Jetpack Compose 13 países aceptados
Senior/Lead Android EngineerBumbleVer rol Python 8 países aceptados
Application Security Engineer (Tech Lead)Morgan StanleyVer rol Stack
Usa estas tags para comparar roles remotos similares.
Elegibilidad de ubicación
Candidatos deberían aplicar solo cuando el país del perfil aparece aquí.
Tu perfilPaís no definidoInicia sesión para comparar tu país con este rol.
Ver todos los 64 países aceptados
AlbaniaArgentinaAustriaBahamasBarbadosBielorrusiaBélgicaBeliceBoliviaBrasilBulgariaCanadáChileColombiaCosta RicaCroaciaChipreChequiaDinamarcaRepública DominicanaEcuadorEl SalvadorEstoniaFinlandiaFranciaAlemaniaGreciaGuatemalaHondurasHungríaIslandiaIrlandaItaliaJamaicaLetoniaLituaniaLuxemburgoMaltaMéxicoMoldaviaMontenegroPaíses BajosNicaraguaMacedonia del NorteNoruegaPanamáParaguayPeruPoloniaPortugalPuerto RicoRumaníaSerbiaEslovaquiaEsloveniaEspañaSueciaSuizaTrinidad y TobagoUcraniaReino UnidoUruguayEstados UnidosVenezuela
Flujo de contratación
WithMira muestra el rol y luego envía candidatos a la aplicación de la empresa.
1Revisa fit del rol, stack y elegibilidad de ubicación en WithMira.
2Abre la página de aplicación de la empresa desde el link rastreado.
3Guarda el rol o suscríbete a oportunidades similares antes de salir.