Our client is a rapidly growing, automation-led service provider specializing in IT, business process outsourcing (BPO), and consulting services. With a strong focus on digital transformation, cloud solutions, and AI-driven automation, they help businesses optimize operations and enhance customer experiences. Backed by a global workforce of over 32,000 employees, our client fosters a culture of innovation, collaboration, and continuous learning, making it an exciting environment for professionals looking to advance their careers.
Committed to excellence, our client serves 31 Fortune 500 companies across industries such as financial services, healthcare, and manufacturing. Their approach is driven by the Automate Everything, Cloudify Everything, and Transform Customer Experiences strategy, ensuring they stay ahead in an evolving digital landscape.
As a company that values growth and professional development, our client offers global career opportunities, a dynamic work environment, and exposure to high-impact projects. With 54 offices worldwide and a presence in 39 delivery centers across 28 countries, employees benefit from an international network of expertise and innovation. Their commitment to a 'customer success, first and always' philosophy ensures a rewarding and forward-thinking workplace for driven professionals.
We are currently searching for a Senior Security Engineer:
Responsibilities:
- Implement, maintain, and improve security controls aligned with major industry frameworks (NIST CSF, ISO 27001, SOC2, PCI DSS).
- Conduct comprehensive risk assessments and manage control remediation efforts for enterprise-wide compliance.
- Design, deploy, tune, and operate core security technologies, including SIEM/XDR, EDR, IAM/PAM, CASB, DLP, and advanced vulnerability scanners.
- Manage and optimize cloud security posture (CSPM/CWPP) and container security solutions across multi-cloud environments.
- Develop and mature detection and response capabilities by creating tailored use cases, incident playbooks, and advanced threat hunting methodologies.
- Collaborate with Security Operations Center (SOC) and Incident Response teams to investigate complex incidents and drive forensic analysis and timely remediation.
- Champion DevSecOps practices by embedding security into CI/CD pipelines (shift-left security).
- Perform secure code and infrastructure-as-code (IaC) reviews.
- Automate security scans, testing, and remediation workflows.
- Provide essential documentation, track security metrics, and mentor application/platform teams on secure design.
Requirements:
- 5+ years in Information Security, with 3+ years focused on Security Engineering, Cloud Security, or DevSecOps.
- Deep practical knowledge of implementing controls for ISO 27001, NIST CSF, SOC2, or PCI DSS.
- Hands-on expertise with at least two major categories: SIEM/XDR & SOAR platforms; IAM/PAM solutions (e.g., Okta, CyberArk); CSPM and CWPP.
- Proven experience securing major cloud platforms (AWS, Azure, or GCP) and strong familiarity with containerization technologies (Docker, Kubernetes).
- Experience scripting or using orchestration tools for security automation (Python, PowerShell, Bash, SOAR platforms).
Desired:
- Relevant certifications (CISSP, CISM, CCSP, OSCP, AWS/Azure Security).
- Experience in defining and measuring key security metrics (KRI/KPIs).
Languages
- Advanced Oral English.
- Native Spanish.
Note:
If you meet these qualifications and are pursuing new challenges, start your application on our website to join an award-winning employer. Explore all our job openings | Sequoia Career’s Page: https://www.sequoia-connect.com/careers/
Requirements:
- 5+ years in Information Security, with 3+ years focused on Security Engineering, Cloud Security, or DevSecOps.
- Deep practical knowledge of implementing controls for ISO 27001, NIST CSF, SOC2, or PCI DSS.
- Hands-on expertise with at least two major categories: SIEM/XDR & SOAR platforms; IAM/PAM solutions (e.g., Okta, CyberArk); CSPM and CWPP.
- Proven experience securing major cloud platforms (AWS, Azure, or GCP) and strong familiarity with containerization technologies (Docker, Kubernetes).
- Experience scripting or using orchestration tools for security automation (Python, PowerShell, Bash, SOAR platforms).