SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Wiz is seeking a Security Engineer to secure its products and production infrastructure. You'll collaborate with software development and DevOps teams to perform security reviews, manage vulnerabilities, and build detection and response capabilities in cloud-native environments.
Key responsibilities include leading threat modeling and security reviews across Wiz's products and cloud infrastructure to identify attack surfaces and develop scalable mitigation strategies. You'll build automation, policy-as-code, and security tooling that enables development teams to shift left and integrate end-to-end security into their workflows. Design and implement secure baselines for cloud resources and Kubernetes-based infrastructure, then drive vulnerability management and remediation efforts by prioritizing issues, implementing mitigations, and designing preventative controls across software supply chains from development through production.
You'll extend detection and response capabilities by building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents. Build deep functional partnerships with Wiz's engineering and operations teams to help them deliver secure-by-design solutions. Utilize Wiz-for-Wiz to assess, monitor, and harden environments, influencing the product roadmap.
Required qualifications include 7+ years of security engineering or security operations experience in cloud environments. You need strong AWS cloud security expertise (equivalent Azure/GCP experience considered with some AWS background), cloud-native Kubernetes services knowledge (EKS/GKE/AKS), and strong container security principles. Deep understanding of securing IAM and cloud identities at scale is essential, along with proven ability to lead technical security reviews, conduct threat modeling, and translate findings into actionable controls. Practical understanding of web application security (OWASP Top-10) and hands-on experience with IaC tools (Terraform, CloudFormation, Helm, Pulumi) required. Experience with automation and tooling development in Python, Go, Shell, HCL, or Rego is necessary.
Preferred qualifications include a Bachelor's degree in computer science or related field (or equivalent job experience), experience with remote globally distributed teams, experience in organizations developing software or operating managed infrastructure services, and familiarity with CNAPP, CSPM, or CIEM solutions.