NEAR Foundation
Senior Security Engineer
Vaga remota de Senior Security Engineer com fit claro de localização do candidato.
Publicada19 de jul. de 2026
Países elegíveis10 países aceitos
Sinal de senioridadeSenior
Modelo de trabalhoRemoto
Locais aceitos para candidatos
Resumo da vaga
Senior Security Engineer
Requisitos e responsabilidades
Conteúdo da vaga extraído em seções para revisão mais rápida.
Information Security Program
- Lead the information security program across NEAR Foundation, with a dotted line into NEAR Intents’ security leadership on shared work.
- Drive SOC II Type 2 and ISO 27001 readiness and ongoing compliance at NEAR AI: control design, evidence collection, auditor liaison, and remediation.
- Support the needs and operation of the NEAR Security Committee (NSC).
- Run logging, monitoring, and alerting; lead investigation and response for security incidents.
- Run vulnerability management, third-party risk reviews, and security awareness across the organization.
Security Engineering
- Own the security architecture and hardening of our identity, access, and endpoint stack (SSO/MFA, MDM, EDR, conditional access, privileged access) — partnering with the IT Director and IT Operations team on day-to-day operations.
- Engineer security and compliance automation across our SaaS estate — evidence collection, control monitoring, access reviews, and workflows that tighten controls and reduce manual work.
- Be the senior technical escalation point for complex security issues across the organization.
- Lead security tooling rollouts and security vendor selection; provide deep security input into the broader IT roadmap and technical due diligence.
Cloud and Policy
- Help maintain a secure cloud footprint (AWS / GCP) — baseline configuration, secrets management, and posture monitoring — in partnership with infrastructure and product teams.
- Maintain the security policy library; ensure policies are accurate, enforced, and updated as we evolve.
What We're Looking For
- 7+ years in information security with strong IT engineering depth, including meaningful time as a senior IC owning programs end-to-end.
- Demonstrated ownership of SOC II Type 2 and ideally ISO 27001 readiness and audit cycles in a fast-moving environment.
- Deep hands-on experience across IAM, endpoint, and at least one cloud (AWS or GCP).
- Comfortable scripting (Python, Go, or Bash) and automating IT and security workflows.
- Practical experience with SSO/IdP platforms (Okta, Google Workspace, Entra), MDM/EDR tooling, and modern logging/SIEM stacks.
- Strong written communication — clear policy, clean post-incident reviews, credible audit narratives.
- Pragmatic about risk and process; calm under pressure; bias to action.
- Crypto or AI/ML exposure is a plus.
We value
- ECOSYSTEM-FIRST: always put the health and success of the ecosystem above any individual's interest
- OPENNESS: operate transparently and consistently share knowledge to build open communities
- PRAGMATISM OVER PERFECTION: find the right solution not the ideal solution and beat dogmatism by openly considering all ideas
- MAKE IT FEEL SIMPLE: strive to make the complex feel simple so the technology is accessible to all
- GROW CONSTANTLY: learn, improve and fail productively so the project and community are always becoming more effective
Vagas similares
Mantenha uma lista reserva.
Stack
Use estas tags para comparar vagas remotas similares.
Elegibilidade de localização
Candidatos devem aplicar apenas quando o país do perfil estiver listado aqui.
Seu perfilPaís não definidoEntre para comparar seu país com esta vaga.
Fluxo de contratação
O WithMira mostra a vaga e depois envia candidatos para a aplicação da empresa.
1Confira fit da vaga, stack e elegibilidade de localização no WithMira.
2Abra a página de aplicação da empresa pelo link rastreado.
3Salve a vaga ou assine oportunidades similares antes de sair.