Resumen del rol

Senior Security Engineer

Requisitos y responsabilidades

Contenido del rol extraído en secciones para revisar más rápido.

Information Security Program

  • Lead the information security program across NEAR Foundation, with a dotted line into NEAR Intents’ security leadership on shared work.
  • Drive SOC II Type 2 and ISO 27001 readiness and ongoing compliance at NEAR AI: control design, evidence collection, auditor liaison, and remediation.
  • Support the needs and operation of the NEAR Security Committee (NSC).
  • Run logging, monitoring, and alerting; lead investigation and response for security incidents.
  • Run vulnerability management, third-party risk reviews, and security awareness across the organization.

Security Engineering

  • Own the security architecture and hardening of our identity, access, and endpoint stack (SSO/MFA, MDM, EDR, conditional access, privileged access) — partnering with the IT Director and IT Operations team on day-to-day operations.
  • Engineer security and compliance automation across our SaaS estate — evidence collection, control monitoring, access reviews, and workflows that tighten controls and reduce manual work.
  • Be the senior technical escalation point for complex security issues across the organization.
  • Lead security tooling rollouts and security vendor selection; provide deep security input into the broader IT roadmap and technical due diligence.

Cloud and Policy

  • Help maintain a secure cloud footprint (AWS / GCP) — baseline configuration, secrets management, and posture monitoring — in partnership with infrastructure and product teams.
  • Maintain the security policy library; ensure policies are accurate, enforced, and updated as we evolve.

What We're Looking For

  • 7+ years in information security with strong IT engineering depth, including meaningful time as a senior IC owning programs end-to-end.
  • Demonstrated ownership of SOC II Type 2 and ideally ISO 27001 readiness and audit cycles in a fast-moving environment.
  • Deep hands-on experience across IAM, endpoint, and at least one cloud (AWS or GCP).
  • Comfortable scripting (Python, Go, or Bash) and automating IT and security workflows.
  • Practical experience with SSO/IdP platforms (Okta, Google Workspace, Entra), MDM/EDR tooling, and modern logging/SIEM stacks.
  • Strong written communication — clear policy, clean post-incident reviews, credible audit narratives.
  • Pragmatic about risk and process; calm under pressure; bias to action.
  • Crypto or AI/ML exposure is a plus.

We value

  • ECOSYSTEM-FIRST: always put the health and success of the ecosystem above any individual's interest
  • OPENNESS: operate transparently and consistently share knowledge to build open communities
  • PRAGMATISM OVER PERFECTION: find the right solution not the ideal solution and beat dogmatism by openly considering all ideas
  • MAKE IT FEEL SIMPLE: strive to make the complex feel simple so the technology is accessible to all
  • GROW CONSTANTLY: learn, improve and fail productively so the project and community are always becoming more effective
Roles similares

Mantén una lista de respaldo.

Ver stack
FocoSenior Security EngineerÁrea del rol
Señal de senioritySeniorNivel del candidato
StackAWS, GCP, PythonSkills principales
Ubicación10 países aceptadosElegibilidad

Stack

Usa estas tags para comparar roles remotos similares.

Elegibilidad de ubicación

Candidatos deberían aplicar solo cuando el país del perfil aparece aquí.

Flujo de contratación

WithMira muestra el rol y luego envía candidatos a la aplicación de la empresa.

1Revisa fit del rol, stack y elegibilidad de ubicación en WithMira.
2Abre la página de aplicación de la empresa desde el link rastreado.
3Guarda el rol o suscríbete a oportunidades similares antes de salir.