Security Engineer
- Company
- Zeely
- Location
- Remote - United States
- Work type
- Full Time
- Posted
- 2026-10-05
Job description
What You'll Do:
Identify, prioritize, and fix vulnerabilities across our product and cloud infrastructure;
Respond to security incidents and help defend against attacks in real time;
Close security tickets end to end, from investigation to fix in code or infrastructure;
Integrate security checks and tooling into our development pipeline (SDLC / CI/CD);
Review code and infrastructure changes from a security perspective;
Help implement security controls and gather evidence for compliance (SOC 2, CASA);
Work with the DevOps and Platform teams on access management, secrets, and hardening of our AWS environment.
What Do You Need to Join Us?
5+ years of engineering experience, with the ability to work fully independently;
2+ years of hands-on experience in security (Security Engineer, or a combined Security/DevOps or Platform role);
Backend development background in at least one of: Node.js / JavaScript / TypeScript, Java, C#/.NET, Go, or Rust;
Strong practical experience with DevOps and cloud infrastructure (AWS);
Hands-on experience finding and fixing vulnerabilities (OWASP Top 10, cloud misconfigurations, dependency issues);
Experience handling security incidents;
Upper-Intermediate (B2+) English or higher;
Fluent Ukrainian.
Nice to Have:
A career path from backend to DevOps/Platform to Security;
Security certifications (AWS Security Specialty or similar);
Experience preparing for SOC 2, ISO 27001, or CASA audits;
Understanding of GDPR and/or CCPA (CPRA) requirements.