SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 207,000 - 283,000 / annual
Wiz is seeking a Security Engineer for Product & Production Infrastructure to help secure the company's cloud-native products and infrastructure. You will collaborate with software development and DevOps teams to perform security reviews, manage vulnerabilities, and conduct detection and response operations in cloud environments.
Key responsibilities include:
- Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies
- Build automation, policy-as-code, and security tooling that enables development teams to shift left and integrate end-to-end security into their workflows
- Design and implement secure baselines for cloud resources and Kubernetes-based infrastructure
- Drive vulnerability management and remediation efforts, prioritizing issues and designing preventative controls across software supply chains from development through production
- Extend detection and response capabilities by building scalable solutions to identify malicious activity, triage alerts, and investigate incidents
- Collaborate with Wiz Federal team to extend DevSecOps and Product Security practices to FedRAMP environments
- Build functional partnerships with engineering and operations teams to deliver secure-by-design solutions
Requirements:
- 7+ years of experience in security engineering or security operations work in cloud environments
- Experience with AWS cloud security, or equivalent experience in Azure and GCP with some AWS experience
- Experience with cloud-native Kubernetes services (EKS, GKE, or AKS) and strong container security principles
- Experience securing IAM and cloud identities at scale
- Experience leading technical security reviews of products and architectures, conducting threat modeling exercises, and translating findings into actionable security controls
- Practical understanding of web application security concepts (OWASP Top-10 and similar)
- Experience with Infrastructure as Code (IaC) and related tools (Terraform, CloudFormation, Helm, or Pulumi)
- Experience with automation and tooling development in Python, Go, Shell, HCL, or Rego
Preferred qualifications:
- Bachelor's degree in computer science or related field, or equivalent job experience
- Experience working with remote, globally distributed teams
- Experience working in organizations that develop software or operate managed infrastructure for customers
- Experience with CNAPP, CSPM, or CIEM solutions