Senior Security Engineer

Plaud
San Francisco
Workplace: HybridFull timeFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication","Problem-solving","Teamwork","Leadership"]

Own and harden the cloud security stack across detection, response, and infrastructure. Build security controls across AWS/GCP, CSPM, IAM, and IaC; deploy a SIEM and author MITRE ATT&CK-mapped detections; lead end-to-end incident response; ensure SOC 2 Type II readiness and ongoing risk governance with robust analytics and reporting.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Plaud
Plaud
4 months ago

Senior Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 3 hours agoStatus: Live

Job Summary

Own and harden the cloud security stack across detection, response, and infrastructure. Build security controls across AWS/GCP, CSPM, IAM, and IaC; deploy a SIEM and author MITRE ATT&CK-mapped detections; lead end-to-end incident response; ensure SOC 2 Type II readiness and ongoing risk governance with robust analytics and reporting.
Location: San Francisco
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Own the detection & response layer and the cloud infrastructure security foundation to deliver SOC 2 Type II readiness by Q4 2026.
  • •Remediate credential exposure across AWS/GCP environments, deploy CSPM across accounts, embed IaC security gates into CI/CD, and implement Zero Standing Privileges via JIT/CIEM.
  • •Deploy the SIEM platform and author 30+ MITRE ATT&CK-mapped detection rules spanning cloud telemetry, endpoint, and SaaS with ongoing tuning.
  • •Own the incident response lifecycle end-to-end: develop playbooks across at least 4 incident categories, lead cross-functional response for P1/P2 events, and drive MTTD to ≤60 minutes.
  • •Produce and maintain the continuous evidence package for audits (log retention, alert records, control narratives) for Cloud Security and SecOps domains.

Key Requirements

  • •5+ years of hands-on security engineering experience with depth in cloud security (AWS/GCP, CSPM, IAM, IaC) or security operations (SIEM, IR, SOAR, detection engineering) and fluency in the other
  • •Proven ability to build security infrastructure from zero: tool selection, baseline configuration, and policy definition
  • •Strong working knowledge of MITRE ATT&CK, CIS Benchmarks (L1/L2), cloud-native security tooling (AWS Security Hub, GCP SCC, or CSPM), and log source integration across cloud and endpoint
  • •Familiarity with SOC 2 TII control requirements — CC6, CC7, and the operational evidence standards used by auditors
  • •Routinely uses LLMs in security workflows (alert summarization, detection rule generation, SOAR playbooks); able to demonstrate AI usage in interviews
Experience:5+ yearsAISaaSCloud securitySecurity operations
Skills:CommunicationProblem-solvingTeamworkLeadership
Languages:English
Tech Stack:AWSGCPTerraformCheckovCI/CDMITRE ATT&CKCIS BenchmarksAWS Security HubGCP SCCSIEMSOARLLMs

Company Brief

Plaud
Builds AI-native hardware and software note-taking devices and apps (Plaud NOTE, NotePin) that record, transcribe, summarize, and extract insights from conversations to boost professional productivity.
Industry: Hardware Devices
Company Size: Medium (51 to 250 employees)
Revenue: USD 100M to 250M
Growth: Scaleup
Funding: Bootstrapped
Headquarters: San Francisco, United States
Founded: 2021
WebsiteLinkedIn