Security Engineer
Job Description
<div class="content-intro"><p><span style="font-size: 10pt; font-family: helvetica, arial, sans-serif;">Arionkoder is an AI consulting firm helping companies build, embed, and own AI systems that drive real business outcomes. We combine Product Development, Artificial Intelligence, and Team Augmentation to craft digital products and solutions that create lasting impact — guided by a human-centric approach and a commitment to pushing the boundaries of what technology can do.</span></p></div><p> </p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;"><strong>Sr Security Engineer</strong></span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">We're looking for a <strong>hands-on Security Engineer</strong> who can take full ownership of the vulnerability management lifecycle—from discovery and risk assessment through remediation tracking and verification. You'll be the driving force behind reducing security risk across a cloud-native AWS environment, partnering closely with DevSecOps and engineering teams. The ideal candidate has experience owning and tuning SIEM platforms, distinguishing real threats from noise, and leveraging scripting to automate security operations and integrate security tooling.</span></p> <p> </p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;"><strong>Required Qualifications:</strong></span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- Experience in security engineering, system administration, or related roles.</span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- Hands-on, production-level <em>AWS security experience</em> (100% cloud-native environment), not just familiarity, but deep, applied knowledge in securing AWS workloads at scale.</span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- <em>End-to-end ownership of the vulnerability management lifecycle</em>: discovery, prioritization, risk and criticality assessment, timeline assignment, progress tracking, and closure driving (excluding code fixes, which you coordinate with development teams).</span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- Demonstrated experience owning <em>security incident investigations</em></span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- Proven experience <em>owning and fine-tuning a SIEM </em>solution in production, with the judgment to separate real security signals from noise and false positives.</span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- Strong scripting skills in Python, Bash, or PowerShell for automation and tooling.</span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- Solid understanding of network security concepts (firewalls, IDS/IPS, proxies, VPNs).</span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- Hands-on experience with endpoint security tools and monitoring solutions.</span></p> <p><span style="font-family: verdana, geneva, sans-serif; font-size: 10pt;">- Strong analytical and problem-solving skills with the ability to think like an attacker.</span></p> <p style="padding-left: 40px;"> </p> <p><span style="font-size: 10pt; font-family: verdana, geneva, sans-serif;"><em>Nice-to-Haves: Experience securing containerized workloads (Docker, Kubernetes); kno