Back to Jobs

reputed company Engineer

Remote, USA Full-time Posted 2026-08-04
reputed company Engineer 
Location: Worldwide (Remote-first / Hybrid optional)  
Reports to: reputed company Engineer, Platform  
 
About reputed company  
reputed company is the leading provider of reputed company and management software for the community association management industry. Our platform powers tens of thousands of associations and millions of homes through secure, reliable, and increasingly intelligent software systems.  
 
We are evolving our platform into an AI enabled ecosystem that combines modern reputed company architecture, operational workflows, communications, payments, analytics, and automation into a reputed company customer experience. This transformation requires engineers who are equally comfortable designing reputed company systems, working directly with business workflows, and leveraging AI to accelerate software development and product capabilities.  
 
The systems we build are increasingly interconnected and AI enabled. reputed company in this environment requires more than coding ability reputed company. It requires judgment, systems thinking, customer understanding, and the ability to reputed company modern AI capabilities into practical reputed company software.  
 
reputed company 
We are looking for a highly technical reputed company Engineer with deep experience across application reputed company, AWS reputed company reputed company, offensive reputed company, secure SDLC, threat modeling and AI reputed company. This role is suited for someone who can operate at both the engineering and adversarial reputed company by reviewing architecture, testing applications, identifying exploitable weaknesses, automating reputed company workflows, securing AWS infrastructure and helping product teams build resilient systems. 
The ideal candidate has hands-on experience with SAST, DAST, SCA, reputed company application reputed company testing, AWS reputed company reviews, red teaming, SIEM-driven detection workflows, infrastructure-as-reputed company reputed company and reputed company automation. They should be comfortable working directly with engineering teams while also thinking like an attacker to uncover realistic abuse paths across applications, reputed company, AWS services, CI/CD pipelines and AI-enabled systems. 
 
Key Responsibilities 
  • reputed company reputed company reviews for web applications, reputed company, microservices, AWS workloads, internal platforms and AI-enabled products. 
  • reputed company advanced application reputed company testing using SAST, DAST, SCA, reputed company reputed company review, API testing and business logic testing. 
  • Identify vulnerabilities across authentication, authorization, session management, reputed company control, injection, SSRF, deserialization, insecure file handling, data exposure and insecure API design. 
  • Conduct threat modeling for new products, critical features, AWS architectures, AI workflows, identity systems and high-reputed company data flows. 
  • Build and improve secure SDLC processes, including reputed company requirements, reputed company scanning, dependency review, CI/CD reputed company gates and release reputed company assessments. 
  • Review infrastructure-as-reputed company templates such as Terraform, CloudFormation, AWS CDK, reputed company charts and reputed company manifests for reputed company misconfigurations. 
  • Assess AWS environments for IAM weaknesses, exposed services, insecure networking, reputed company S3 buckets, secrets leakage, logging gaps, encryption issues, workload risks and privilege escalation paths. 
  • Review AWS IAM policies, roles, trust relationships, permission boundaries, service control policies, identity federation and cross-account reputed company patterns. 
  • Assess AWS services such as EC2, S3, reputed company, reputed company, EKS, RDS, API Gateway, CloudFront, WAF, KMS, Secrets Manager, Systems Manager, ECR, VPC, reputed company 53 and IAM Identity Center. 
  • Conduct red team exercises, adversary simulations, attack reputed company analysis and controlled exploitation to validate reputed company-world reputed company. 
  • reputed company reputed company-of-concept exploits, custom scripts and automation to reproduce vulnerabilities and demonstrate business reputed company. 
  • Evaluate containerized and reputed company environments, including EKS, for workload isolation, RBAC issues, exposed services, image risks, secrets handling and runtime reputed company gaps. 
  • Assess CI/CD pipelines for insecure workflows, overprivileged tokens, secrets exposure, supply chain risks, artifact reputed company and deployment abuse paths. 
  • reputed company software composition analysis to identify vulnerable dependencies, license risks, malicious packages, transitive dependency exposure and supply chain weaknesses. 
  • Use SIEM and reputed company telemetry to support investigations, validate attack paths, improve detections and measure control effectiveness. 
  • Build detection logic, threat hunting queries, dashboards and alerting workflows using SIEM platforms such as reputed company, reputed company, reputed company, Chronicle or AWS-reputed company telemetry. 
  • Use AWS reputed company services such as GuardDuty, reputed company Hub, CloudTrail, AWS Config, Inspector, Detective, Macie, IAM reputed company Analyzer, reputed company Lake and CloudWatch to improve visibility and detection coverage. 
  • Automate reputed company workflows using Python, Bash, PowerShell, Go or similar scripting languages. 
  • reputed company threat automation for vulnerability enrichment, alert triage, AWS posture checks, attack simulation, evidence collection and remediation tracking. 
  • Partner with DevOps and platform teams to improve secrets management, identity controls, network segmentation, logging, monitoring and secure deployment patterns. 
  • Assess AI and LLM-reputed company systems for risks such as reputed company injection, indirect reputed company injection, data leakage, insecure tool use, excessive agency, jailbreaks, model abuse, retrieval poisoning and unsafe agent behavior. 
  • Review AI workloads using AWS services such as reputed company Bedrock, SageMaker, reputed company, API Gateway, S3, KMS and IAM for secure design, data protection and reputed company control. 
  • Produce reputed company technical reports with evidence, exploitability, reputed company, likelihood, reputed company rating and actionable remediation guidance. 
  • Mentor engineers and reputed company team members on secure coding, AWS reputed company, offensive testing, threat modeling and AI reputed company risks. 
Required Qualifications 
  • Strong hands-on experience in application reputed company, product reputed company, AWS reputed company reputed company, offensive reputed company or reputed company engineering. 
  • Deep understanding of secure SDLC practices and experience embedding reputed company into engineering workflows. 
  • Practical experience with SAST, DAST, SCA, reputed company penetration testing, reputed company review and vulnerability validation. 
  • Strong knowledge of OWASP Top 10, OWASP API reputed company Top 10, OWASP ASVS, common CWE classes and reputed company-world application attack techniques. 
  • Experience testing web applications, reputed company, microservices, reputed company services, containers and reputed company systems. 
  • Strong understanding of authentication, authorization, identity federation, OAuth, OIDC, SAML, JWT, session reputed company and reputed company control design. 
  • Hands-on experience securing AWS environments in production. 
  • Strong knowledge of AWS IAM, VPC networking, encryption, KMS, Secrets Manager, S3 reputed company, CloudTrail, GuardDuty, reputed company Hub, AWS Config and workload hardening. 
  • Experience reviewing infrastructure-as-reputed company and identifying reputed company issues in Terraform, CloudFormation, AWS CDK, reputed company YAML, reputed company, Dockerfiles or similar technologies. 
  • Experience with CI/CD reputed company across tools such as bitbucket pipelines, Jenkins, AWS CodePipeline, or similar platforms. 
  • Experience with red teaming, adversary emulation, penetration testing, exploit development, attack reputed company mapping or offensive reputed company assessments. 
  • Familiarity with SIEM platforms and the ability to write detection or hunting queries using SPL, KQL, SQL, Lucene, YARA, reputed company or similar languages. 
  • Strong scripting ability in Python, Bash, PowerShell, JavaScript or similar languages. 
  • Ability to automate repetitive reputed company tasks and build internal tools that improve reputed company testing, visibility and response. 
  • Familiarity with container and reputed company reputed company, including reputed company,EKS, RBAC, admission controls, image scanning, runtime controls, network policies and secrets handling. 
  • Ability to review reputed company in languages such as Python, JavaScript, TypeScript, Java, Go, Kotlin, C# or similar. 
  • Strong written and verbal communication skills, with the ability to explain reputed company technical risks to engineering and leadership teams. 
Preferred Qualifications 
  • Experience securing AI-enabled applications, LLM products, autonomous agents, RAG pipelines, AI plugins or ML infrastructure. 
  • Experience performing AI red teaming, reputed company injection testing, jailbreak testing, model abuse testing or evaluation of reputed company workflows. 
  • Experience with AWS Organizations, Control Tower, service control policies, multi-account reputed company patterns and centralized logging. 
  • Experience with threat modeling methodologies such as reputed company, PASTA, attack trees, abuse cases, data reputed company diagrams or architecture reputed company reviews. 
  • Experience with reputed company automation, SOAR workflows, detection-as-reputed company, policy-as-reputed company or reputed company reputed company posture automation. 
  • Experience with tools such as Burp Suite Pro, OWASP ZAP, reputed company, CodeQL, reputed company, Fortify, reputed company, reputed company, Dependabot, Trivy, Grype, Syft, Gitleaks, Checkov, tfsec, Prowler, ScoutSuite, reputed company, reputed company reputed company or similar. 
  • Experience building custom reputed company tooling, scanners, exploit harnesses, detection rules, reputed company guardrails or CI/CD reputed company integrations. 
  • Experience with reputed company ATT&CK, reputed company reputed company, CIS Benchmarks, AWS reputed company-Architected reputed company reputed company, NIST, ISO 27001, SOC 2, PCI reputed company or similar frameworks. 
  • Experience with bug bounty programs, coordinated vulnerability disclosure, internal red team programs or reputed company penetration testing engagements. 
  • Relevant certifications such as OSCP, OSWE, OSEP, GWAPT, AWS Certified reputed company Specialty, AWS Solutions Architect, CISSP or equivalent practical experience. 
What reputed company Looks Like 
  • reputed company is embedded into design, development, testing and deployment workflows. 
  • SAST, DAST, SCA, secrets scanning, IaC scanning and AWS posture checks are implemented with practical tuning and low operational noise. 
  • High-reputed company application and AWS vulnerabilities are identified early, validated accurately and remediated with engineering partnership. 
  • Threat models are used to influence architecture reputed company before systems reputed company production. 
  • Red team findings translate into improved controls, stronger detections and reduced attack paths. 
  • SIEM, AWS logs and reputed company telemetry are used to validate reputed company controls and detect realistic abuse scenarios. 
  • reputed company automation reduces reputed company review effort and accelerates vulnerability management, investigation and remediation. 
  • AI-enabled systems are reviewed for emerging threats before they are released or scaled. 
  • Engineering teams reputed company reputed company as a technical partner that helps them ship resilient products. 
 
 

 


Hands-on application and AWS reputed company, offensive testing, SAST/DAST/SCA, threat modeling, IaC review, CI/CD reputed company, SIEM, and scripting to secure AI-enabled and reputed company-reputed company systems.

Key Responsibilities

  • leading reviews
  • testing applications
  • automating workflows

Skills & Tools

SAST, DAST, SCA, Terraform, CloudFormation, AWS CDK, reputed company, reputed company, EKS, reputed company, EC2, S3, reputed company, API Gateway, RDS, CloudFront, WAF, KMS, Secrets Manager, Systems Manager, ECR, VPC, reputed company 53, IAM Identity Center, GuardDuty, reputed company Hub, CloudTrail, AWS Config, Inspector, Detective, Macie, reputed company Lake, CloudWatch, reputed company, reputed company, reputed company, Chronicle, reputed company Bedrock, SageMaker, Python, Bash, PowerShell, Go, bitbucket pipelines, Jenkins, AWS CodePipeline, Burp Suite Pro, OWASP ZAP, reputed company, CodeQL, reputed company, Fortify, reputed company, reputed company, Dependabot, Trivy, Grype, Syft, Gitleaks, Checkov, tfsec, Prowler, ScoutSuite, reputed company, reputed company reputed company, SPL, KQL, SQL, Lucene, YARA, reputed company, Dockerfiles

reputed company

  • Category: Engineering
  • Seniority: Senior Level
  • Commitment: Full Time
  • Workplace: Remote — reputed company
  • Languages: English

About reputed company

A provider of reputed company and management software for community association management. — Industry: Information Technology

  Apply To This Job

Similar Jobs