Senior Security Engineer (2026)

Aptible
United States
Workplace: RemoteFull timeUSD 162,000 - 184,000 annuallyFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication","Incident response","Organized project execution","Hands-on problem-solving"]

Defend and harden a cloud security platform by designing security-by-default infrastructure across Aptible’s AWS-based PaaS. Own vulnerability management and run pentesting end to end (including XBOW), driving findings to verified remediation in code and infrastructure. Lead incident response from detection through post-incident reviews, build detection tooling and runbooks (AWS Security Agent tuning), and support compliance recertifications like SOC 2 or HITRUST.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Aptible
Aptible
19 hours ago

Senior Security Engineer (2026)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 5 hours agoStatus: Live

Job Summary

Defend and harden a cloud security platform by designing security-by-default infrastructure across Aptible’s AWS-based PaaS. Own vulnerability management and run pentesting end to end (including XBOW), driving findings to verified remediation in code and infrastructure. Lead incident response from detection through post-incident reviews, build detection tooling and runbooks (AWS Security Agent tuning), and support compliance recertifications like SOC 2 or HITRUST.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Design and build security-by-default infrastructure across the AWS-based PaaS, spanning Ruby on Rails backend systems, a React-TypeScript web app, and Go-based Terraform and CLI clients, plus other distributed components.
  • •Own and mature vulnerability management by triaging findings from scanning tools and the AWS Security Agent, prioritizing by exploitability and risk in collaboration with Engineering.
  • •Own pentesting end to end by running automated assessments with XBOW, coordinating manual/third-party testing, and driving remediation to closure in code and infrastructure.
  • •Lead incident response operations across detection, containment, eradication, and post-incident review with a focus on fixing root causes in code and infrastructure.
  • •Build and maintain detection tooling, alerting, and runbooks, including tuning and extending the AWS Security Agent; participate in security on-call and drive prevention follow-ups.

Pay and Benefits

Salary: USD 162,000 - 184,000 annually

Key Requirements

  • •5+ years of experience in security engineering, with a track record owning security-critical systems in production.
  • •Hands-on ability to read and write code, operate infrastructure, and work deep in systems under attack.
  • •Strong engineering fundamentals across a fullstack codebase, including comfort with Ruby on Rails, React/TypeScript, and Go.
  • •Deep, hands-on cloud infrastructure security experience, with AWS-native security tooling (e.g., AWS Security Agent, GuardDuty, Security Hub).
  • •Real pentesting and vulnerability management experience, including driving remediation to verified closure, plus incident response experience.
Experience:5+ years
Skills:CommunicationIncident responseOrganized project executionHands-on problem-solving
Tech Stack:AWSRuby on RailsReactTypeScriptGoTerraformPythonRubyCLIXBOWAWS Security AgentGuardDutySecurity HubSOC 2HITRUST

Company Brief

Aptible
Aptible provides a secure, compliance-focused Platform-as-a-Service (PaaS) that automates provisioning, management, and scaling of applications and databases for startups and regulated enterprises.
Industry: Cloud Computing
Company Size: Small (11 to 50 employees)
Growth: Growth Stage Startup
Funding: Series A
Headquarters: San Francisco, United States
Founded: 2013
Glassdoor
Glassdoor: 5.0
WebsiteLinkedInGlassdoor