DISQO
Senior Security Engineer
Los Angeles, CA · Senior · Full-time
Sponsorship not specified$180k-$200kDetected 82 days ago
PythonGoAWSGCPAzureKubernetesTerraformCI/CDLLMsSIEMSOARSOC OperationsDetection EngineeringIncident ResponseComplianceCadenceZero TrustCommunicationCollaboration
About the role
- As Senior Security Engineer, you are the technical owner of DISQO's security posture, encompassing both cloud and endpoint environments.
- You set the technical bar for security and security operations, driving the implementation of Zero Trust principles across our infrastructure and employee devices.
Responsibilities
- Own the security posture of our AWS environment: IAM, networking, encryption, KMS, secrets management, and multi-account governance.
- Design and review secure-by-default patterns for new services. Provide security guidance on Terraform, CloudFormation, and CDK changes.
- Drive identity, network, and data perimeter strategy. Reduce blast radius and enforce least privilege across accounts.
- Tune and operate the SIEM, SOAR, and EDR stack (e.g., CrowdStrike). Author and maintain detections as code.
- Drive the implementation of Zero Trust principles and manage endpoint security for employee devices, including local admin removal for employees handling customer data.
- Lead incident response end-to-end: containment, forensics, root cause, customer comms, and blameless postmortems.
- track and drive remediation SLAs.
- Build runbooks, on-call playbooks, and tabletop exercises that keep the team sharp.
- That's why, at DISQO, we welcome, support, and empower individuals from diverse backgrounds.
Requirements
- AWS Depth: Strong working knowledge of AWS security: IAM, VPC, KMS, GuardDuty, Security Hub, CloudTrail, Config, and multi-account governance.
- You have led real investigations, written postmortems, and tuned detections in a SIEM/SOAR.
- Frameworks: Working knowledge of NIST CSF, CIS Controls, OWASP Top 10, and MITRE ATT&CK.
- Experience implementing cloud-native detection and monitoring
- Hands-on experience with endpoint security, including EDR (e.g., CrowdStrike), local admin removal, and device management/hardening.
- Strong working knowledge of
- Working knowledge of NIST CSF, CIS Controls, OWASP Top 10, and MITRE ATT&CK.
Nice to have
- Detection engineering and SOAR/automation experience at scale.
- IaC security: Terraform, CDK, or CloudFormation, plus CI/CD security gates and policy-as-code (OPA, Cedar).
- Container and Kubernetes (EKS) security.
- Multi-cloud exposure (GCP or Azure) in addition to AWS.
- Familiarity with AI/LLM security (OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF).
- Useful but not required.
- Certifications: AWS Security Specialty, CISSP, CCSP, GCIH, GCIA, GCFA, or OSCP.
- Built custom MCP servers, agent frameworks, or in-house security tooling.
Compensation
- DISQO does not discriminate against employees based on race, color, religion, sex, national origin, gender identity or expression, age, disability, pregnancy (including childbirth, breastfeeding, or related medical condition), genetic infor
Equal opportunity
- DISQO is an equal opportunity employer.
This listing is sourced directly from DISQO's careers page and normalized into a canonical job model.