NEAR Foundation
Senior Security Engineer
Remote Senior Security Engineer role with clear candidate location fit.
PostedJul 19, 2026
Eligible countries10 accepted countries
Seniority signalSenior
Work settingRemote
Accepted candidate locations
Role overview
Senior Security Engineer
Requirements and responsibilities
Readable role content extracted into sections for faster review.
Information Security Program
- Lead the information security program across NEAR Foundation, with a dotted line into NEAR Intents’ security leadership on shared work.
- Drive SOC II Type 2 and ISO 27001 readiness and ongoing compliance at NEAR AI: control design, evidence collection, auditor liaison, and remediation.
- Support the needs and operation of the NEAR Security Committee (NSC).
- Run logging, monitoring, and alerting; lead investigation and response for security incidents.
- Run vulnerability management, third-party risk reviews, and security awareness across the organization.
Security Engineering
- Own the security architecture and hardening of our identity, access, and endpoint stack (SSO/MFA, MDM, EDR, conditional access, privileged access) — partnering with the IT Director and IT Operations team on day-to-day operations.
- Engineer security and compliance automation across our SaaS estate — evidence collection, control monitoring, access reviews, and workflows that tighten controls and reduce manual work.
- Be the senior technical escalation point for complex security issues across the organization.
- Lead security tooling rollouts and security vendor selection; provide deep security input into the broader IT roadmap and technical due diligence.
Cloud and Policy
- Help maintain a secure cloud footprint (AWS / GCP) — baseline configuration, secrets management, and posture monitoring — in partnership with infrastructure and product teams.
- Maintain the security policy library; ensure policies are accurate, enforced, and updated as we evolve.
What We're Looking For
- 7+ years in information security with strong IT engineering depth, including meaningful time as a senior IC owning programs end-to-end.
- Demonstrated ownership of SOC II Type 2 and ideally ISO 27001 readiness and audit cycles in a fast-moving environment.
- Deep hands-on experience across IAM, endpoint, and at least one cloud (AWS or GCP).
- Comfortable scripting (Python, Go, or Bash) and automating IT and security workflows.
- Practical experience with SSO/IdP platforms (Okta, Google Workspace, Entra), MDM/EDR tooling, and modern logging/SIEM stacks.
- Strong written communication — clear policy, clean post-incident reviews, credible audit narratives.
- Pragmatic about risk and process; calm under pressure; bias to action.
- Crypto or AI/ML exposure is a plus.
We value
- ECOSYSTEM-FIRST: always put the health and success of the ecosystem above any individual's interest
- OPENNESS: operate transparently and consistently share knowledge to build open communities
- PRAGMATISM OVER PERFECTION: find the right solution not the ideal solution and beat dogmatism by openly considering all ideas
- MAKE IT FEEL SIMPLE: strive to make the complex feel simple so the technology is accessible to all
- GROW CONSTANTLY: learn, improve and fail productively so the project and community are always becoming more effective
Similar roles
Keep a backup shortlist.
Stack
Use these tags to compare similar remote roles.
Location eligibility
Candidates should apply only when their profile country is listed here.
Your profileCountry not setSign in to check your country against this role.
Hiring flow
WithMira shows the role, then sends candidates to the company application.
1Check role fit, stack, and location eligibility in WithMira.
2Open the company application page from the tracked apply link.
3Save the role or subscribe for similar opportunities before leaving.