Apricot International Logo

Apricot International

Security Engineer

Posted 8 Days Ago
Remote
Hiring Remotely in USA
Mid level
Remote
Hiring Remotely in USA
Mid level
Assess and reduce security risks across AWS infrastructure, applications, CI/CD pipelines, containers, and AI/LLM integrations. Responsibilities include threat modeling, security reviews, integrating SAST/DAST/SCA tools, hardening cloud and Kubernetes environments, automating security and incident-response workflows, and remediating vulnerabilities from scans and bug bounty programs.
The summary above was generated by AI

This is a remote position.

Strengthen cloud, application, and AI security by embedding practical controls across infrastructure, delivery pipelines, and incident workflows.

Organization: A confidential client; further details will be shared with shortlisted candidates, subject to client confidentiality requirements
Location: Remote - open to candidates in Egypt, Jordan, and other countries nearshore to the client's operating region
Role Type: Full-time | Consultant/contractor | Fixed-term project (6-8 months)
Reports to: To be confirmed

The opportunity
Our client is looking for a Middle+ Security Engineer to assess and reduce security risk across AWS infrastructure, application delivery, containers, and LLM/AI integrations. In this role, you will combine hands-on security engineering with automation, vulnerability remediation, and cross-functional technical review.

About the organization
Our client is a UAE-based HRTech scale-up transforming workplace operations across HR, Payroll, Finance, and Insurance in the MENA region. It helps employers and employees manage the full workplace lifecycle through a unified platform.

What you will do

  • Conduct threat modeling and security reviews for cloud infrastructure and LLM/AI integrations.
  • Integrate SAST, DAST, and SCA tools directly into CI/CD pipelines.
  • Harden AWS environments, Infrastructure as Code scripts, and Kubernetes workloads and containers.
  • Automate repetitive security tasks, alerting, and incident-response workflows using custom scripts.
  • Triage, investigate, and remediate vulnerabilities identified through automated scans and Bug Bounty programs.

What you bring

  • At least 3 years of professional experience in Security Engineering, DevSecOps, or a related role.
  • Scripting proficiency in Python, Go, or Ruby.
  • Deep hands-on experience with AWS cloud security services (IAM, VPC, GuardDuty, WAF, Inspector).
  • Practical experience with AppSec tooling (Burp Suite, OWASP ZAP, Snyk, or SonarQube).
  • Experience with container and orchestration security controls (Docker, Kubernetes).
  • Knowledge of Infrastructure as Code (IaC) security reviews (Terraform or CloudFormation).
  • Familiarity with AI/LLM security risks (OWASP Top 10 for LLMs, RAG architectures, API security).

How the engagement works

Contracting party: You will contract directly with Apricot, which will manage contracting, invoicing/payroll, payments, and administrative support. Day to day, you will work closely with the client team and follow the agreed scope, deliverables, and security requirements.

You are expected to provide your own laptop and basic equipment, maintain reliable connectivity and a secure working environment, and follow required security controls, including two-factor authentication.

Planned check-ins are at month 1 to see how the engagement is working and help address issues, given the shorter 6–8 month duration.

About Apricot
Apricot is a nonprofit sourcing firm connecting displaced and underserved professionals from Palestine and the wider MENA region with global employment opportunities. We combine a clear social-impact mission with fast, high-quality recruitment delivery for international clients.


Similar Jobs

10 Hours Ago
Remote
United States
114K-142K Annually
Mid level
114K-142K Annually
Mid level
Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
Assess product and feature security risks through threat modeling, secure architecture reviews, and vulnerability remediation guidance. Partner with product managers, designers, and engineers across the technology stack; promote security culture through training, mentoring, and internal security activities; oversee security debt and explain vulnerability impacts. Build security tooling, automate security practices, develop secure coding patterns, and integrate security tools into engineering workflows.
Top Skills: CContainerizationContinuous DeliveryContinuous IntegrationGoJavaScriptOwasp Top TenRustVirtualization
10 Hours Ago
In-Office or Remote
114K-142K Annually
Mid level
114K-142K Annually
Mid level
Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
Assess product and software architecture for security risks, develop threat models, guide vulnerability remediation, and promote secure design practices. Partner with product and engineering teams across the technology stack, provide security training and mentorship, oversee security debt, and build tooling and automation that integrate security into development workflows.
Top Skills: CContainerizationContinuous DeliveryContinuous IntegrationGoJavaScriptOwasp Top TenRustVirtualized Environments
Yesterday
Remote or Hybrid
92K-164K Annually
Mid level
92K-164K Annually
Mid level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Leads Connected Device Security, Data Protection, and Insider Risk programs across healthcare environments. Develops cybersecurity roadmaps, DLP and information protection capabilities, insider threat governance, IoMT/IoT security processes, operational metrics, and investigative workflows. Partners with Security Operations, Engineering, Clinical Engineering, Privacy, Legal, HR, Compliance, and IT. Ensures alignment with HIPAA, HITECH, NIST, CIS Controls, and HITRUST while using approved AI tools to automate analytics and improve operations.
Top Skills: ArmisClarotyData Loss Prevention (Dlp)IomtIotMicrosoft Defender XdrMicrosoft Entra IdMicrosoft PurviewMicrosoft SentinelNozomiOrdrPower BIServicenow

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account