NMS
Senior Platform Security Engineer
Dallas, TX · Senior
No sponsorshipDetected 27 days ago
PythonBashAWSAzureCloud PlatformsKubernetesCI/CDLinuxDevOpsPlatform EngineeringCybersecurityDetection EngineeringSupply ChainResearchLeadership
About the role
- The Platform Security team sits within NMC²'s Security organization and is responsible for securing the engineering platforms and infrastructure that power our HPC and cloud environment.
Responsibilities
- Own the design and operation of NMC²'s vulnerability management program across the platform engineering stack, including infrastructure, containers, and cloud services
- Implement and tune real-time security monitoring and threat detection tooling, ensuring high-fidelity signal across our HPC and cloud environments
- Partner with Platform Engineering and DevOps teams to integrate security scanning and vulnerability assessment into CI/CD pipelines and Infrastructure-as-Code workflows
- Lead vulnerability triage and prioritization, working with engineering teams to drive timely and effective remediation of identified risks
Requirements
- 6+ years of experience in security engineering, with a strong focus on platform, infrastructure, or application security
- Hands-on experience with vulnerability management tooling and real-time security monitoring platforms ( e.g. Qualys, Tenable, Wiz, Lacework, Prisma Cloud, or similar)
- Strong understanding of software and infrastructure security, including container security, supply chain risk, secrets management, and secure configuration
- Experience securing container orchestration platforms such as Kubernetes and OpenStack, and cloud environments including AWS and/or Azure
- Proficiency in Linux and familiarity with how platform engineering teams build and operate infrastructure
- Experience integrating security tooling into CI/CD pipelines and IaC workflows, with scripting ability in Python, Bash, Go, or similar
- Good knowledge of vulnerability scoring frameworks (CVSS), exploit maturity, and risk-based prioritization
Nice to have
- Experience with runtime threat detection tools such as Falco or eBPF -based security tooling
- Familiarity with software supply chain security frameworks ( e.g. SLSA, SBOM generation, Sigstore )
- Background working within or alongside a SOC or threat intelligence function
- Relevant certifications such as OSCP, GIAC (GPEN/GWAPT/GCSA), AWS Security Specialty, or equivalent
- It is impossible to list every requirement for, or responsibility of, any position.
- Similarly, we cannot identify all the skills a position may require since job responsibilities and the Company's needs may change over time.
- Therefore, the above job description is not comprehensive or exhaustive.
- The Company reserves the right to adjust, add to or eliminate any aspect of the above description.
Benefits
- Medical insurance in our PPO plan and a variety of other benefits such as Health Savings Accounts (with Company Contribution!), Flexible Spending Accounts, Supplemental Life Insurance, Wellhub and more.
- Company-Paid Lunch Stipend: Lunch is provided via GrubHub
- Time Off: 25 days of Paid Time Off plus 12 company holidays
- Develop automation to continuously assess the security posture of our platforms, reducing manual effort and improving detection coverage
Company info
- Lunch is provided via GrubHub
Equal opportunity
- NORTHMARK STRATEGIES LLC IS AN EQUAL EMPLOYMENT OPPORTUNITY EMPLOYER.
- THE COMPANY'S POLICY IS NOT TO DISCRIMINATE AGAINST ANY APPLICANT OR EMPLOYEE BASED ON RACE, COLOR, RELIGION, NATIONAL ORIGIN, GENDER, AGE, SEXUAL ORIENTATION, GENDER IDENTITY OR EXPRESSION, MARITAL STATUS, MENTAL OR PHYSICAL DISABILITY, AND GENETIC INFORMATION, OR ANY OTHER BASIS PROTECTED BY APPLICABLE LAW.
- THE FIRM ALSO PROHIBITS HARASSMENT OF APPLICANTS OR EMPLOYEES BASED ON ANY OF THESE PROTECTED CATEGORIES.
Visa & Work Authorization
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
This listing is sourced directly from NMS's careers page and normalized into a canonical job model.