Arctic Wolf

Lead Cloud Security Developer

Remote US
Docker Elasticsearch Kafka GCP Python Go API Terraform Unity AWS Azure Kubernetes
Description

Arctic Wolf, with its unicorn valuation, is the leader in security operations in an exciting and fast-growing industry—cybersecurity. We have won countless awards for our excellence in security operations and remain dedicated to providing an industry-leading customer and employee experience.

Our mission is simple: End Cyber Risk. We’re looking for a Lead Cloud Security Developer to be part of making this happen.  

About the Role
As a Lead Cloud Security Developer, you will be an essential part of the Cloud Security team, focused on ensuring the security of the Arctic Wolf infrastructure through the continual improvement of security tooling, automation, and engagement with internal stakeholders. This is a hands-on position with a strong focus on automating cloud security (Protect and Detect) and continually raising the bar for Cloud Security. You will work largely within AWS (Azure coming soon!), and we do everything-as-code.

The focus of this role is on helping lead improvements to our ability to Protect and Detect within our product space - defining, deploying, managing and improving the use and usability of cloud and other infrastructure security tooling. This means services like GuardDuty, CloudTrail, Config, Security Hub, Detective, Inspector, SSM, Security Lake, as well as platforms like Kubernetes.

In addition, you will help lead the continuous effort to improve and simplify access control into and throughout our Cloud environments, with work largely focused on AWS IAM and CloudTrail Lake, along with custom tooling to enable least-privilege and just-in-time access.

Finally, you will help get to the root of security risks and events at Arctic Wolf - acting as an escalation point for incidents, engaging with teams to support design improvements, engaging with vendors for roadmaps, providing feedback and driving improvement, and always looking at how we can automate away toil. You will work with our security tooling and vendors to drive improvements.

This work will be heavily focused on AWS, but will also branch out to include Azure and GCP, as well as delving into moving forward security for other platforms like Kubernetes.


What you might accomplish in the first six months, based on your interests:

  • Identify a gap, then define, deploy and operationalize a new AWS security service or feature using IaC

  • Research and enable new features, operationalize, and grow usage of new and existing security tooling

  • Act as a SME in response to infrastructure security events and incidents, follow up with RCA and help stop repeats

  • Automate reporting and remediation of security findings through tools like EventBridge, Lambda, Jira, Slack, Security Hub

  • Improve automation, data collection, reporting, usability, or add features around Access Control

  • Lead the improvement of security in a problem domain (host based, containers, IAM, Lambda, APIs, etc)

  • Drive understanding and remediation of risks throughout our cloud infrastructure

  • Define and lead improvements to CI/CD to improve guardrails and gates to production

 
Your Responsibilities:

  • Take ownership of strategic problems, work with internal security teams, research and development, and product functions to deliver actionable solutions that will lower risk

  • Stay current on the cloud security landscape, advocate for useful advances, and help set and implement security direction

  • Define and maintain our security toolset, ensuring that it is scalable and automated

  • Drive improved security monitoring for platforms, infrastructure, and code

  • Support remediation of infrastructure security problems across the product landscape

  • Build significant automation to remove the operational toil for the Cloud Security and other teams

  • Help set the direction for security data, deploy, run, and improve business intelligence tools, driving a reduction in risk through the organization and pretty much anything else related to ensuring we stay ahead of bad actors 

Technical Skills

  • Multiple years and/or major projects of experience in AWS, particularly using AWS security services (GuardDuty, CloudTrail, Detective, IAM Access Analyzer, IAM, Security Hub)

  • Multiple years and/or projects focused on using IaC (CloudFormation, Terraform) to manage and deploy services

  • Significant experience with programming languages (Python, Go) and libraries (boto3, troposphere)

  • Comfortable working with security/related services like KMS, ACM, Athena, CloudWatch, SSM

  • Comfortable working with AWS Lambda - writing, deployment, operations

  • Comfort with CI/CD systems, particularly automating security checks and integrations with other tools

 
Personality and Perspective

  • Unwavering desire to automate away large portions of your work

  • Comfortable and capable of working and communicating via Slack, Zoom calls, Jira tickets, reaching across organizations and facilitating improved communications to help keep the Cloud Security Group engaged and approachable throughout the company

  • Able to work independently, know when to ask for help, and work at various levels of the business to gather useful information, requirements, and objectives

  • Unafraid of ambiguity - proficient at taking an idea, soliciting feedback and input, then figuring out how to translate an idea to workunits and then to reality

  • Lover of well written documentation

  • Understanding of all that’s required to run a service in production (ex:deployment, monitoring, metrics, logging, tracing, scaling, access controls, etc)

  • Excellent written and oral communication skills

  • Ability and desire to be prescriptive and apply your deep knowledge oftechnology to solving problems at scale

  • Comfortable working with a team, sharing knowledge, and improving us through your experience and knowledge

  • A advocate for Cloud Security 

Bonus stuff

  • Battle scars from working in a multi-region, multi-account, multi-cloudenvironment

  • Certifications in your cloud(s) of choice

  • Time spent doing Big Data or big data pipeline work, working with large data sets

  • Knowledge of networking, network security, common services and protocols (ex: DNS)

  
Technology that you may work with while you are here:

  • Cloud: GuardDuty, CloudTrail, Security Hub, CloudWatch, CloudFormation, security groups, VPC flow logs, certificate management (ACM), key management (KMS), Athena, EKS, Inspector,Lambda and other serverless technology, Terraform, Azure, GCP, WAF,Shield

  • Platforms: Kubernetes, Docker, ECS, ElasticSearch, Kafka

  • Programming: Go, Python

  • CI/CD: GitHub, Github Actions, Harness

  • Observability: Prometheus, Grafana, Alert Manager, CloudWatch

About Arctic Wolf:

At Arctic Wolf we’re cultivating a collaborative and productive work environment that welcomes a diversity of backgrounds, cultures, and ideas to make our teams even stronger as we grow globally. We’ve been named among the list of Top Workplaces in USA, Minnesota (2021-2024), and Texas (2023-2024), Best Places to Work San Antonio (2023, 2024) and Minneapolis/St. Paul (2022-2024), Great Place to Work - Canada (2021-2024), and on the list of Best Workplaces in Technology (2024) in Canada. As well as on Fortune’s Best Place to Work for Millennials (2023) and Top Technology Workplace (2023) lists.

Our Values 

Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion, and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that—by protecting people’s and organizations’ sensitive data and seeking to end cyber risk— we get to work in an industry that is fundamental to the greater good. 

We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.  

We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities. 

All wolves receive compelling compensation and benefits packages, including: 

  • Equity for all employees

  • Flexible time off, paid volunteer days, and paid parental leave

  • 401k & RRSP matching program

  • Enhanced maternity leave and fertility support services

  • Robust Employee Assistance Program (EAP) for mental health services

  • Training and career development programs

Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire employee experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodations by emailing recruiting@arcticwolf.com

Security Requirements:

  • Conducts duties and responsibilities in accordance with AWN’s Information Security policies, standards, processes and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies).

  • Background checks are required for this position. 

    Arctic Wolf
    Arctic Wolf
    Cyber Security Information Technology Network Security Software

    0 applies

    2 views

    Similar Jobs

    Senior Lead Data Engineer

    Plano, TX Richmond, VA

    Senior Platform Engineer

    Remote New York, NY

    There are more than 50,000 engineering jobs:

    Subscribe to membership and unlock all jobs

    Engineering Jobs

    60,000+ jobs from 4,500+ well-funded companies

    Updated Daily

    New jobs are added every day as companies post them

    Refined Search

    Use filters like skill, location, etc to narrow results

    Become a member

    🥳🥳🥳 452 happy customers and counting...

    Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

    To try it out

    For active job seekers

    For those who are passive looking

    Cancel anytime

    Frequently Asked Questions

    • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
    • We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
    • We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
    • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
    • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
    • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
    • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

    What Fellow Engineers Say