How You’ll Contribute:
In this role, you will have the opportunity to…
- Design Secure Systems: Partner with engineering teams to conduct threat modeling. You’ll ensure security is "baked-in" to new features from the first line of code, not "bolted-on" at the end.
- Drive Proactive Defense: Build and maintain automated scanning, penetration testing frameworks, and monitoring tools within our AWS CI/CD pipelines to catch vulnerabilities before they reach production.
- Own Governance & Compliance: Lead the technical implementation of controls for ISO 27001 and TX-RAMP, turning complex regulatory requirements into simple, actionable engineering standards.
- Lead Incident Response: Act with ownership during security events. You’ll lead investigations and root-cause analysis, providing the Collective Wisdom needed to prevent future occurrences.
- Mentor the Team: Champion a "security-first" mindset. You’ll host workshops that empower developers to write secure code and understand modern attack vectors.
How We Thrive:
You’ll work with a team of talented engineers with a variety of areas of expertise, from devops to design, architecture to accessibility. The team’s experience level ranges from seasoned developers with well over a decade in industry to junior developers and contractors who are growing their roles and impact.
The Foundation for Success:
- Cloud Security Mastery: You have a proven track record of securing AWS environments (IAM, Network Security, Infrastructure-as-Code) at scale.
- Code-Level Proficiency: You can read and write code (C#, Python, or similar). You don’t just find bugs; you suggest the secure code alternative.
- Automation Mindset: You prefer a script over a manual check. You have experience with SAST/DAST and vulnerability management platforms.
- Pragmatic Compliance: You understand that security must support business velocity. You’ve implemented controls in regulated environments without slowing down the mission.
- Experience: 5+ years in security engineering or software development with a security focus.
What Sets You Apart:
- Experience securing video streaming architectures or high-scale backend services.
- A history of leading incident response in a remote-first environment.
- Deep expertise in OWASP Top 10 and secure API design.
What Success Looks Like:
- Within 6 Months: You complete a security audit of our current CI/CD pipeline and establish relationships with lead developers.
- Within 1 Year: Automate one major manual security check and contribute to our TX-RAMP/ISO certification technical evidence.
- Your Legacy: Full ownership of the security roadmap; measurable reduction in "security-debt" during the architectural review phase.
Join Panopto and play a key role in shaping the security foundation of a platform used by millions. If you love threat modeling, automating defenses, guiding engineering teams, and turning compliance standards into practical, scalable security practices, you’ll feel right at home here.
🇧🇷 Essa vaga exige inglês. Você está pronto?
A DevSpeak Academy prepara desenvolvedores brasileiros para conquistar vagas internacionais. Domine o inglês técnico com professores que entendem o mundo dev.
Conheça a DevSpeak Academy