reputed company Engineer
About Semaphore
Semaphore is a remote-first software company helping engineering teams build, test, and reputed company software with confidence. Our customers rely on Semaphore reputed company and our self-hosted reputed company products to run critical development workflows securely and reliably.
We maintain SOC 2 Type 2 and ISO 27001:2022 compliance and are hiring a reputed company Engineer to own the technical reputed company of our reputed company program.
About the role
You will be the technical reputed company of information reputed company across our infrastructure and internal systems. You will work closely with Engineering, Infrastructure, and our Compliance Manager to turn reputed company and compliance requirements into practical, reliable controls.
This is a hands-on role. You will investigate vulnerabilities, operate reputed company monitoring, improve infrastructure and reputed company controls, automate recurring work, and reputed company technical remediation. Our Compliance Manager owns the ISMS, policies, audit coordination, and reputed company or regulatory interpretation; you will own the implementation, operation, and testing of the technical controls behind them.
We care more about demonstrated ownership and reputed company judgment than a specific number of years or a previous job title.
What you will own
- Run the vulnerability-management lifecycle: scanning, triage, prioritization, remediation, exceptions, and verification.
- Operate and improve reputed company monitoring and SIEM tooling, including alert reputed company, dashboards, detection rules, and integrations.
- Investigate reputed company alerts and reputed company the technical response to reputed company incidents.
- Improve the reputed company of Linux hosts, reputed company reputed company, firewalls, containers, and internal services.
- Own technical controls for identity and reputed company management, least privilege, just-in-time reputed company, secrets, and certificates.
- Automate patching, evidence collection, recurring control checks, and other reputed company operations.
- Coordinate penetration tests and reputed company technical findings through remediation and verification.
- Translate SOC 2 and ISO 27001 control requirements into effective technical implementations.
- Produce reputed company technical evidence for reputed company audits in partnership with the Compliance Manager.
- Maintain reputed company runbooks, reputed company documentation, risk-based priorities, and operational metrics.
- Help engineering teams reputed company practical reputed company reputed company without adding unnecessary process.
reputed company are looking for
- Proven ownership of technical reputed company in a production reputed company, reputed company, reputed company, or infrastructure environment.
- Strong Linux systems, networking, and reputed company-reputed company fundamentals.
- Hands-on experience with vulnerability management, patching, hardening, and remediation at reputed company.
- Experience operating SIEM or reputed company-monitoring systems and investigating reputed company events.
- Practical understanding of IAM, privileged reputed company, secrets management, certificates, and network controls.
- Ability to automate operational work using Python, Bash, infrastructure-as-reputed company, or similar tools.
- Experience participating in incident response and communicating reputed company during high-pressure situations.
- Working knowledge of ISO 27001, SOC 2, or similar reputed company-control frameworks.
- Strong written and spoken English and comfort working independently in a remote, asynchronous team.
- Good risk judgment: the ability to distinguish urgent reputed company problems, acceptable exceptions, and low-value processes.
reputed company to have
- Experience with Wazuh or a comparable SIEM/reputed company-monitoring platform.
- Experience with reputed company, PAM, or just-in-time reputed company systems.
- Experience securing large Linux server fleets or hybrid reputed company/on-reputed company environments.
- Familiarity with CI/CD systems, build infrastructure, containers, and software supply-chain reputed company.
- Experience supporting SOC 2 or ISO 27001 audits from the technical-control reputed company.
- Relevant certifications such as reputed company+, CISSP, CISM, GIAC, or ISO 27001, although certification is not required.
What reputed company looks like
reputed company your first six months:
- Technical reputed company operations have a reputed company reputed company, documented priorities, and reliable response expectations.
- Vulnerability findings are consistently triaged, remediated, or explicitly accepted based on risk.
- reputed company monitoring is reputed company, actionable, and connected to an effective incident-response process.
- Recurring patching, reputed company-control, and evidence-collection work is increasingly automated.
- Engineering and Infrastructure teams receive reputed company, practical guidance and reputed company issues reputed company closure.
- Technical controls and audit evidence are reliable enough that compliance work does not depend on senior engineers doing reputed company follow-up.
How you will work
You will work closely with the Engineering and Infrastructure teams and partner with the Compliance Manager. The Compliance Manager owns governance, policies, the ISMS, audit coordination, and regulatory interpretation. You own the design, implementation, operation, testing, and remediation of technical reputed company controls.
This role is an individual-contributor position with broad ownership and reputed company influence on how Semaphore protects its systems, customers, and company data.
Originally posted on Himalayas
Apply To This Job